Quote:
|
the computer seems slower on startup. Having said that, I have installed AdAware, avast!, and ewido and other things as required.
|
If Norton is your main antivirus programs, please uninstall Avast. Ewido is okay to keep, as long you do not activate Ewido Guard. Even after the trial period has expired, Ewido can be still used.
Please read this post completely before begining the fix.
Right click on this & choose "Save As..." DelO15Domains.inf -
DelO15Domains.inf
Right click on
DelO15Domains.inf and choose Install. It will run immediately (you won't be able to see anything happen). You may delete the file afterwards.
Host.zip - Extract the contents into it's own folder. Double click
MVPS.bat & allow it to run.
Right click on this & select 'Save As' -
DNSManual.bat
Double-click
DNSManual.bat & allow it to run.
SpywareBlaster 3.5.1 - Install & update SpywareBlaster with the latest definitions.
After you have updated, click the button -
enable protection for all unprotected items
IE-SpyAD - Extract the contents to a new folder
From within the folder, double-click
install.bat
Select Option #2 -
Install the new IE-SPYAD list.
Then return to the main menu.
Select option #4 -
Add the old porn sites domain
Please download the file attached -
regdel.zip
Double-click the file within & allow it to merge with the Registry.
This will remove some malware entries from the Registry
* * * * * * RESTART WINDOWS IN SAFE MODE * * * * * * * * * *
1. Restart your computer
2. After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3. Instead of Windows loading as normal, a menu should appear
4. Select the option to run Windows in Safe Mode.
* * * * * * DELETING FILES/FOLDERS * * * * * * * * * * * * * * *
If you have not done so already, please enable the viewing of Hidden files
From Windows Explorer, go to Tools -> Folder Options -> View tab.
- Tick - 'Show hidden files and folder'
- Untick - 'Hide file extensions for known types'
- Untick - 'Hide protected operating system files'
- Click Yes to confirm & then click OK
Locate and delete the following file: (let me know if you fail to find/delete)
- C:\Documents and Settings\Owner\a.exe
Delete the contents of these folders, leaving them empty:
- C:\Documents and Settings\Owner\.housecall\Quarantine\
C:\Program Files\Microsoft AntiSpyware\Quarantine\
C:\Program Files\Yahoo!\YPSR\Quarantine\
* * * * * * PURGING TEMP FOLDERS * * * * * * * * * * * * * * *
Run
Cleanup! using the following configuration:
1. Click Options...
2. Set the slider initially to
Standard CleanUp!
3.
Uncheck the following:
- Delete Newsgroup cache
- Delete Newsgroup Subscriptions
- Scan local drives for temporary files
4. Click OK
5. Press the CleanUp! button to start the program.
* * * * * *
Reboot to Normal Mode & empty the System Volume Information folders by doing so:-
Go to Start >> Run - type
control sysdm.cpl,,4 & press Enter
- Tick on the checkbox - Turn off System Restore on all drives
- Click Apply
Turn it back 'On' by unticking the same checkbox & click OK
Please post a fresh HijackThis log & let me know how the machine is behaving now.
__________________
Question - what have you done for the community today?