I think I have a pc health virus because when i try to open some of my programs it wont let me and a script box pops up with pc\health\binaries\pcshell.dll
I also think i need new fans when my puter starts up the fan in the back makes a terrible noise then quiets down/but i noticed when i put my hand on the back of my cpu the air is extremly warm.and i can only stay on it for a short while before i get the blue screen of death!!! any help woul be greatly apprecieated,Thanx,Woody
Did you try boot time scan ?
http://www.digitalred.com/avast-boot-time.php
Is Avast alerting at all ?
Download these two programs,install, update and run quick scans.
http://filehippo.com/download_malwarebytes_anti_malware/
http://filehippo.com/download_superantispyware/
Also use HJT, open,choose scan and save a logfile.
Copy/paste the results from all three logs
http://filehippo.com/download_hijackthis/
Malwarebytes’ Anti-Malware 1.36
Database version: 2071
Windows 5.1.2600 Service Pack 3
5/3/2009 2:37:24 PM
mbam-log-2009-05-03 (14-37-24).txt
Scan type: Quick Scan
Objects scanned: 72542
Time elapsed: 4 minute(s), 48 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 3
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 14
Files Infected: 22
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats{af2e62b6-f9e1-4d4f-a10a-9dc8e6dcbcc0} (Adware.VideoEgg) → Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Miracle (Rogue.FixTool) → Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\VB and VBA Program Settings\Registry Defender (Rogue.Registry.Defender) → Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
C:\Program Files\Registry Defender Platinum (Rogue.RegistryDefender) → Quarantined and deleted successfully.
C:\Program Files\Registry Defender Platinum\backup (Rogue.RegistryDefender) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Backup (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Backup\Application (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Backup\Registry (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Backup\Registry\FirstBackup (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Backup\Registry\FullBackup (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Backup\Service (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Data (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Data\Service (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Res (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Temp (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Update (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
Files Infected:
C:\Program Files\Registry Defender Platinum\report.csv (Rogue.RegistryDefender) → Quarantined and deleted successfully.
C:\Program Files\Registry Defender Platinum\backup\6_3_2008.reg (Rogue.RegistryDefender) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Backup\Registry\FirstBackup\20080925125058.Reg (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Backup\Service\backup_service.bat (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Backup\Service\Default.bat (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Data\Service\campus_model.bat (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Data\Service\default_model.bat (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Data\Service\home_model.bat (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Data\Service\interner_model.bat (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Data\Service\notebook_model.bat (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Data\Service\office_model.bat (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Res\Check.png (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Res\Disk.png (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Res\Error.png (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Res\Frame.png (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Res\Progrss.bmp (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Res\SEM_RSO_BG.png (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Res\Time.png (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Res\Top.png (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Res\Uncheck.png (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\Program Files\Perfect Optimizer\Res\Win.png (Rogue.PerfectOptimzier) → Quarantined and deleted successfully.
C:\setup.exe (Trojan.Agent) → Quarantined and deleted successfully.
As you can see my puter was seriously infected but i could not run the superanti spyware because it said windows installer is not installed properly??? this system is a mess and me being a newbie really doesnt help, .
I want to thank you for the time to try to help in this matter!!!
Sincerly Woodybrush45
This is not a serious infection but one rouge application (purporting to optimize, but with other intent). So at some point you installed this in the hope that it would optimize your system. There really are so many rogue applications about that you have to exercise care installing programs. First do some research, on the program you are considering (google search, user/media reviews, PC World, etc.)
If it said windows installer not properly installed for SAS it technically should have said the same for MBAM; so this may have been a glitch, try downloading it again from www.superantispyware.com and try to install, update and run it.
If you haven’t run an avast boot-time scan after having run MBAM you should do that too.
Hello Woodybrush45, MBAM seems to have got a rogue program. As for SAS, right click on the downloaded set/install file and choose rename.Then rename for example woody.exe, then install,then try to update, then try to run SAS, if this fails,go to C/program files/Superantispyware/SUPERANTISPYWARE.EXE, and rename this file,double click the renamed file to run SAS.
Also post the HJT log