Just go to google and search for this:
combofix, and becareful, only download it from bleeping computer; run this tool , read the instructions first on the website, it does miracles for me, trust me, I fix computers on the side.
http://www.bleepingcomputer.com/combofix/
mdk2k4
Junior Poster in Training
82 posts since Oct 2008
Reputation Points: 10
Solved Threads: 8
I thought the Thread title says, Infected computer Please Help....huhhh
mdk2k4
Junior Poster in Training
82 posts since Oct 2008
Reputation Points: 10
Solved Threads: 8
I thought the Thread title says, Infected computer Please Help....huhhh
Did you see anything in the HJT or MBAM logs that warrants running Combofix?
I once had a poster tell me that a virus had turned his cursor into a dinosaur......LOL! Can't always take things at face value :)
I think Brian is on point here.
Cheers :)
PP
PhilliePhan
Central Scrutinizer
1,942 posts since Dec 2006
Reputation Points: 184
Solved Threads: 110
I also had a virus turn into Mickey Mouse once, and mbam is becoming a headache, whit that IP protection, every website’s IP are suspicious, and Hijack never work for me, at least combofix had fix me a lot of pc's.
mdk2k4
Junior Poster in Training
82 posts since Oct 2008
Reputation Points: 10
Solved Threads: 8
What is your opinion of downloading a Registry Mechanic?
Not a good idea. Registry "cleaners/fixers" very often bring on a lot more trouble than you are all ready having. Leave it alone.
For the Norton program, first go to Task Manager and look for this running;
LiveUpdate\ALUSchedulerSvc.exe
If you see it, End the Process.
Then go to Add/Remove and look for Symantec. IF you find it in there Uninstall it. That appears to be the only Symantec/Norton process still running.
Then go to Start, Search, and look for Norton, delete anything found. Then do the same for Symantec.
You have a lot of programs running unnecessarily at start and therefore running all the time. This would slow the computer considerably. Also, AVG can really be a drag on resources as it has so many needless processes. You might consider a different anti-virus program, Avira or Avast are a couple of really good free ones. Highly recommended.
Try going OFFLINE and run the computer without the AVG running and see if it makes a difference. If it does then change your anti-virus program.
We can certainly help you pare down some of those needless auto starts if you wish.
jholland1964
Posting Expert
5,785 posts since Jul 2008
Reputation Points: 725
Solved Threads: 340
It says "Infected" because that was my assumption. When your computer starts freezing up, programs crashing, the cursor getting jumping what else are you supposed to think? I'm not an IT guy, just a computer user.
If its not infected what is the problem?
Don't worry about that guy, just continue with the instructions given to remove those Norton remainders. Then run a new HJT scan and post that log, I'll go through those start ups and tell you what they are and how to stop them.
Judy
jholland1964
Posting Expert
5,785 posts since Jul 2008
Reputation Points: 725
Solved Threads: 340
I was able to delete most the Norton and Symantec stuff. I wasn't able to delete a Aluschedulersvc.exe file.
Try it this way first.
Go to Start, Control Panel, Administrative Tools, Services.
When Services opens scroll through the list until you see these files;Automatic LiveUpdate Scheduler - Symantec Corporation
LiveUpdate - Symantec Corporation. When you do double click it to bring up it's properties. First Click the Stop Button to stop the Service.
Once the service stops then click the Start Up type button and change it to Disabled.
Ok your way all the way out.
When go to C:\Program Files\Symantec\ and delete the Symantec Folder.
Next, run HiJackThis again and put check marks next to the following entries:
O2 - BHO: (no name) - {52706EF7-D7A2-49AD-A615-E903858CF284} - (no file)
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O4 - Startup: PowerReg SchedulerV2.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
Once you have placed the check marks then click the Fix Checked button. Exit HJT.
I will look through your auto starts and post back here with a list of those which are not required to auto start and can be run manually and instructions on how to turn these off.
jholland1964
Posting Expert
5,785 posts since Jul 2008
Reputation Points: 725
Solved Threads: 340
Now for your unneeded auto starting programs; All of these programs auto start when the computer starts and then generally run all the time in the back ground. None of them are needed for the smooth running of the computer. Some are totally unnecessary and some are considered "Users Choice", that is, if you want them to run all the time go ahead but they are not needed. The User Choice ones I will mark with a * so you decide. The others absolutely are not required.
To easily disable these auto starts you can use one of these programs, Mike Lin's StartUp Control Panel which, after download and install can be found in the Control Panel with a little computer icon labeled Start Ups or CodeStuff Starter. The CodeStuff program you can save anywhere you can easily find it. CodeStuff is a bit more of an "in depth" program than Mike Lin's as you can also turn off Services and also has a detailed Process manager, somewhat like the Task Manager. It just is more detailed. You can install either or both of these programs. I have them both so either are fine. Both are FREE. Mike Lin's just enables you to stop auto starting programs.
Either way, once downloaded then open which ever program you have chosen. When Mike Lin's opens you will see six tabs. Go through each tab and remove the check mark from the program you want to Stop from auto start. Once you have done that close the program and reboot.
On CodeStuff you click the Start Ups tab and go through the various listings there, removing check marks from any you want to disable at start up. Once complete then Exit the program With either program once you have done all that then reboot the computer.
Here is the list along with a description of each program:
*ATIPTA>>>>Control panel for the ATI series of video cards allowing access to such features as display resolution, colour depth, etc. Available via Start -> Settings -> Control Panel -> Display. Some users may need it if they have optimised their settings
*LSBWatcher>>>HP software which helps one create labels after a music CD is burned using LightScribe discs. If you want to use LightScribe labeling, do not prevent from starting.
eabconfg.cpl>>>Easy Access Buttons control panel on Compaq laptops. Only required if you use the extra keys
Cpqset>>>Default settings software in Hewlett Packard notebook
ISUSPM Startup>>>InstallShield Update Service Scheduler. Automatically searches for and performs any updates to the software so you’re always working with the most current version
ISUSScheduler>>>InstallShield Update Service Scheduler. Automatically searches for and performs any updates to the software so you’re always working with the most current version
**ICF-Safe Eyes>>>Internet Content Filter. Tool that allow parents to choose appropriate content for their children. (this one is truly up to you. You would have had to install it for it to be there. If you want it then leave it)
*NeroFilterCheck>>>Associated with "Nero Burning Rom" CD writing software. Checks for driver issues
Adobe Reader Speed Launcher>>>exactly what it says it is. Supposedly speeds the opening of the Adobe Reader. Actually only speeds it by a few seconds. Program works perfectly fine without this.
HP Software Update>>>HP software updates. If a shortcut doesn't exist, create your own and run it manually
QuickTime Task>>>System Tray access to Apple's "Quick Time" viewer from version 5 onwards
DW6>>>The Weather Channel's desktop weather program.
Google Update>>>This startup is used by Google products such as Picasa and Chrome, among others, to check for new updates.
HP Digital Imaging Monitor>>>can be launched manually
jholland1964
Posting Expert
5,785 posts since Jul 2008
Reputation Points: 725
Solved Threads: 340