Jump to content

Change Mode

NascarFan19

Anti-Spyware Brigade
  • Content Count

    910
  • Joined

  • Last visited

Everything posted by NascarFan19

  1. Needless to say I love a song with a beat that drives it. Probably one of the most famous/infamous telephone numbers in the world. http://www.youtube.com/watch?v=urZGL8FHtE8
  2. The video is kinda "out there", but the music rocks.
  3. I think Foghat should be mentioned when talking about classic rock. Those guys rocked this song. Hope you enjoy. http://www.youtube.com/watch?v=UscivHCSVgw&feature=related
  4. I will remove all the programs we loaded. I will also print and use the suggestions you listed. I thank you very much for your time and learned skills. You are an asset to the Pit!
  5. Hi Jeffce, Once we have done all we can to this system, and I suspect that we are almost there, are any of the programs I have downloaded of any use on an everday basis? I suspect not, but wanted to ask you. Thanks ComboFix 12-01-10.02 - Owner 01/10/2012 21:16:39.4.1 - x86 Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.479.141 [GMT -5:00] Running from: c:documents and settingsOwnerDesktopComboFix.exe Command switches used :: c:documents and settingsOwnerDesktopCFScript.txt AV: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF} FW:
  6. . DDS (Ver_2011-08-26.01) - NTFSx86 Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.2.1 Run by Owner at 17:34:10 on 2012-01-10 Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.479.75 [GMT -5:00] . AV: AVG Anti-Virus Free Edition 2012 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF} FW: ZoneAlarm Free Firewall *Enabled* . ============== Running Processes =============== . C:PROGRA~1AVGAVG2012avgrsx.exe C:Program FilesAVGAVG2012avgcsrvx.exe C:WINDOWSsystem32svchost.exe -k DcomLaunch svchost.exe C:WINDOWSSystem32svchost.exe -k netsvcs
  7. Hi Jeff, I downloaded JavaRa and ran it. It produced the following report. I went to the Java website and could not determine which of the download options I should get for my computer. I saw 2 for win xp, win86 and win64 ( I have 32 bit version ). I dumped Adobe and downloaded the Foxit Reader. The system seems to be a bit quicker now. JavaRa 1.16 Removal Log. Report follows after line. ------------------------------------ The JavaRa removal process was started on Mon Jan 09 18:26:46 2012 Found and removed: JavaPlugin.FamilyVersionSupport Found and removed: CLSID{CAFEEFAC-
  8. I will look into the programs you suggested after we get finalized here, and again, I thank you for the suggestions. I just now reran OTL with the 2 checks in place and after reboot, I ran it again withOUT the checks. I also copied and pasted the same text into the Custom Scan Window. Again, I appreciate your patience with me. All processes killed ========== SERVICES/DRIVERS ========== ========== OTL ========== Error: No service named NMSAccess was found to stop! ServiceDriver key NMSAccess not found. File File not found not found. Error: No service named msCMTSrvc was found to
  9. I would appreciate any suggestions, even on software. Indeed send the info. I am posting this first scan, but I just noticed that the 2nd scan (after reboot) is to be done without the LOP Check or Purity boxes checked. Before doing the 2nd scan, I wanted to be sure I was doing this correctly. I ran first scan with those boxes not checked. Will I also need to copy contents of the box for 2nd run? For what is worth, after the reboot, I was missing an icon off the desktop. Party Poker. Was not uninstalled just icon was snatched. My home page was also changed to MSN.com. Did you expect this? Than
  10. OTL Extras logfile created on: 1/8/2012 6:24:09 PM - Run 1 OTL by OldTimer - Version 3.2.31.0 Folder = C:Documents and SettingsOwnerDesktop Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 479.48 Mb Total Physical Memory | 245.84 Mb Available Physical Memory | 51.27% Memory free 1.10 Gb Paging File | 0.75 Gb Available in Paging File | 68.52% Paging File free Paging file location(s): C:pagefile.sys 720 1440 [binary data]
  11. OTL logfile created on: 1/8/2012 6:24:09 PM - Run 1 OTL by OldTimer - Version 3.2.31.0 Folder = C:Documents and SettingsOwnerDesktop Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 479.48 Mb Total Physical Memory | 245.84 Mb Available Physical Memory | 51.27% Memory free 1.10 Gb Paging File | 0.75 Gb Available in Paging File | 68.52% Paging File free Paging file location(s): C:pagefile.sys 720 1440 [binary data] %System
  12. I have noticed that each time the system reboots after running these tests, that I am told by popup that the default browser is not IE. I tell it to make it the default. I have never seen that before. The system seems to be a little faster but its hard to tell. I am sure as old as the system is and amout of ram I have here is major reason for sluggishness. I wanted to be sure that it is as clean as possible. ComboFix 12-01-07.03 - Owner 01/08/2012 11:52:51.3.1 - x86 Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.479.224 [GMT -5:00] Running from: c:documents and setting
  13. Malwarebytes Anti-Malware 1.60.0.1800 www.malwarebytes.org Database version: v2012.01.08.01 Windows XP Service Pack 3 x86 NTFS Internet Explorer 8.0.6001.18702 Owner :: YOUR-N3TY7ATHD5 [administrator] 1/7/2012 8:41:48 PM mbam-log-2012-01-07 (20-41-48).txt Scan type: Quick scan Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 178501 Time elapsed: 16 minute(s), 10 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicio
  14. ComboFix 12-01-06.03 - Owner 01/07/2012 16:48:51.2.1 - x86 Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.479.131 [GMT -5:00] Running from: c:documents and settingsOwnerDesktopComboFix.exe Command switches used :: c:documents and settingsOwnerDesktopCFScript.txt AV: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF} FW: ZoneAlarm Free Firewall *Enabled* {829BDA32-94B3-44F4-8446-F8FCFF809F8B} . FILE :: "c:docume~1ownerlocals~1tempesihdrv.sys" . . ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))
  15. whewwww Here we go. ComboFix 12-01-06.03 - Owner 01/06/2012 20:26:48.1.1 - x86 NETWORK Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.479.259 [GMT -5:00] Running from: c:documents and settingsOwnerDesktopComboFix.exe AV: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF} FW: ZoneAlarm Free Firewall *Enabled* {829BDA32-94B3-44F4-8446-F8FCFF809F8B} . . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:documents and settingsDefault UserWINDOWS c:docu
  16. Hi Jeff... I have downloaded the ComboFix.exe three times and I get the following results. First, I downloaded it to the desktop. Double clicked on the icon on desktop and it ran green print in a gray box, and then stopped. After waiting 15 minutes, I decided it was not going to show the pop-ups and accepts as described in instructions. I disabled virus and malware scans also. I have searched C: and can find nothing about a .txt file left there by combofix. My apologies for complicating your efforts to help me. thanks Will
  17. GMER 1.0.15.15641 - http://www.gmer.net Rootkit scan 2012-01-05 12:51:37 Windows 5.1.2600 Service Pack 3 Harddisk0DR0 -> DeviceIdeIdeDeviceP0T0L0-3 SAMSUNG_SV4002H rev.QP100-07 Running: gmer.exe; Driver: C:DOCUME~1OwnerLOCALS~1Tempaxwoqaoc.sys   ---- System - GMER 1.0.15 ---- SSDT SystemRootSystem32vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwConnectPort [0xF3E0D2F4] SSDT SystemRootSystem32vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwCreateFile [0xF3E075CA] SSDT SystemRootSystem32vsdatant.sys (ZoneAlarm Fi
  18. I did all the suggested things before posting here. I deleted old files and dumped temp files. I ran SuperAntispyware, CC Cleaner, EZ Cleaner, Malware Anti-malware and pretty much anything I could find. This machine is very sluggish and I would like to see if the problem is buried somewhere within. Thanks for all your help! Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 2:38:06 AM, on 1/5/2012 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winl
  19. I thought I would be in the majority with a NO vote. Shows to go ya what I know. 12 To Go
  20. Yeah Keith Did all that also. Nothing. thank you for the suggestion
  21. Thanks, INeed..and to you all. I just checked that box and it WAS unchecked. I will let it go as being a problem on Nextels end. Thanks again to you all.
  22. Yeah INeed...I tried, both at work, and at home. Add the following line at the bottom of the file, after the line: 127.0.0.1 localhost XXX.XXX.XXX.XXX yourdomain.com Obviously replacing XXX.XXX.XXX.XXX and yourdomain.com with your own IP Address and Domain Name, or that of whatever website you frequently need to go to. Bear...the above came from the text about adding a host file. How might I find out the IP address for Nextel? If I am reading that correctly, I would need to add their IP adress and domain name to bypass whatever may be blocking me? Guy, I just reset
  23. have you tried to just disable zone alarm and use another firewall or antivirus Yeah, MMe gtried all that. BTW.....I changed the password while online with Nextel. Have you tried adding it to your trusted sites ? may help. Yeah Guy...tried that also. nothing Maybe ZA is protecting you & your PC. disable ZA first by right clicking it, then select shutdown zone alarm Yup Law and INeed Totally shut ZA down. no affect try adding the url with the ip umber to your host file Yeah, Bear I coped the URL directlyinto Trusted Zone. No difference I still thin
×
×
  • Create New...