Advertisement

There's no such thing as a stupid question, but they're the easiest to answer.
Login
Search

Advertisement

Virus & Other Malware Removal Virus & Other Malware Removal
Search Search
Search for:
Tech Support Guy > > >

My computer is slowly dying

(In Progress)
(!)

ep2002's Avatar
ep2002 ep2002 is offline
Computer Specs
Member with 182 posts.
THREAD STARTER
 
Join Date: Oct 2006
Location: Windsor, Ontario (Canada)
Experience: Intermediate
11-Jul-2012, 06:17 AM #166
Quote:
Originally Posted by eddie5659 View Post

Like I said before, it may be too much running for your system to cope. Do you really need over 25 webpages open at one time?
Yes I do, I work on my computer & I do a lot of things at the same time. My point is I've always had that many before & it never caused problems until the last few months. I try to delete windows I'm not using, but I don't have time or I'm using all of them.

And my Fx is starting to crash again. It stopped after someone on the Mozilla forum told me to do something, now it's back again.


---

Quote:
Originally Posted by eddie5659 View Post
Looking in the OTL log (its okay about the other log, as sometimes it doesn't create it) your Java is out of date, which opens you to malicious websites:
Ok, so I went to do what you said about Java & there is no Java Runtime in add/remove programs. There's only Java(TM) 6 update 22 & 33. Is that what you want me to delete?

I deleted the temp files though in Control Panel -----> Java.

I didn't install the latest version of Java yet b/c I don't know what you want me to do about the ones in add/remove programs.

-------------

Quote:
Originally Posted by eddie5659 View Post
Do you know what these folders are? If you do, then I'll leave them alone
No, I have no idea what those are. I don't use Documents & Settings for anything. Anything in those folders is Windows or something else.

Brb


Michelle
ep2002's Avatar
ep2002 ep2002 is offline
Computer Specs
Member with 182 posts.
THREAD STARTER
 
Join Date: Oct 2006
Location: Windsor, Ontario (Canada)
Experience: Intermediate
11-Jul-2012, 06:29 AM #167
So I wanted to show you this as I don't know what any of these programs are.

See SS
Attachment Blocked
Attachments in the HJT forum are often designed to solve a specific issue and not meant to be used without instructions specific to your computer. If you want help specific to your computer, please post a HiJackThis Log. If you started this thread, please make sure you are logged in to be able to view attachments.
ep2002's Avatar
ep2002 ep2002 is offline
Computer Specs
Member with 182 posts.
THREAD STARTER
 
Join Date: Oct 2006
Location: Windsor, Ontario (Canada)
Experience: Intermediate
11-Jul-2012, 07:03 AM #168
Hi,

Ok, the OTL is doing the same thing it did a few months ago. It freezes the computer & I have to do a cold reboot. I tried it twice 2nd time I shut down online armor & MBAM.


Michelle
eddie5659's Avatar
Computer Specs
Moderator & Malware Removal Specialist with 28,307 posts.
 
Join Date: Mar 2001
Location: Bradford, England
12-Jul-2012, 02:20 PM #169
Quote:
Ok, so I went to do what you said about Java & there is no Java Runtime in add/remove programs. There's only Java(TM) 6 update 22 & 33. Is that what you want me to delete?
Yep, they're the ones to remove. Then, after that, install the latest version.

-------

I'm just replying to say I'm going to look over the entire thread, to see if there is something there that I missed. However, I will run a few rootkit tools at the end, but just letting you know as it may take a while to re-read tonight
__________________
Just go with the flow, like a twig on the shoulders of a mighty stream

MVP in Consumer Security
eddie5659's Avatar
Computer Specs
Moderator & Malware Removal Specialist with 28,307 posts.
 
Join Date: Mar 2001
Location: Bradford, England
12-Jul-2012, 04:24 PM #170
Okay, gone thru it all, and I have a few things to touch upon.

First, I noticed that OTL couldn't really run fully on a fix. It worked okay for the initial scan, just not the removal of entries. Having said that, some files/folders have gone over the pages, so I think it did work, even though no log was produced.

Now, I do want to make sure some of the things I was concerned about, have gone.

So, using SystemLook again, like you did before, can you run it with the following code, and post the log:

Code:
:dir
c:\windows\temp
c:\documents and settings\michelle\localsettings\temp
:filefind
*Bomgar*
:folderfind
*Bomgar*
:regfind
proxy.uconn
Bomgar
:reg
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
HKLM\System\CCS\Services\Tcpip\Parameters
HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{14C63AB7-91F2-4939-82A0-88C6628A5C31}
HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{23E4F7C4-7DC6-489A-9574-0FF705F312F3}

---------------

Now, looking in the previous installed programs, you have the following. Did you install them?

LogMeIn
TeamViewer


If you did install them, and you definatly don't have anyone prompting you to run them, then that's okay. The two programs above are used for remote viewing of computers. Totally legal tools, but some people may not want then installed.

Now, the following program was showing as installed, but not in AddRemove Programs, least not that I could see:

Bomgar Support Customer Client

This again enables remote connection of computers. What makes me single this one out, is that its not seen in your installed programs, yet it is running. Again, legit tool, but do you know anything about it?


Pretty sure you installed these two, and if so, I'll leave them be:

Domain Name Analyzer
iLinc


-------

You have a few things running from the temp folder, so I've put the search in the above SystemLook code


-------------------

If you can work on the above first, I'll make sure its all okay, then look at rootkit scanners
ep2002's Avatar
ep2002 ep2002 is offline
Computer Specs
Member with 182 posts.
THREAD STARTER
 
Join Date: Oct 2006
Location: Windsor, Ontario (Canada)
Experience: Intermediate
13-Jul-2012, 08:27 AM #171
Quote:
Originally Posted by eddie5659 View Post
Yep, they're the ones to remove. Then, after that, install the latest version.

-------

I'm just replying to say I'm going to look over the entire thread, to see if there is something there that I missed. However, I will run a few rootkit tools at the end, but just letting you know as it may take a while to re-read tonight
Thank you

Java done.
ep2002's Avatar
ep2002 ep2002 is offline
Computer Specs
Member with 182 posts.
THREAD STARTER
 
Join Date: Oct 2006
Location: Windsor, Ontario (Canada)
Experience: Intermediate
13-Jul-2012, 08:36 AM #172
Quote:
Originally Posted by eddie5659 View Post
Okay, gone thru it all, and I have a few things to touch upon.

First, I noticed that OTL couldn't really run fully on a fix. It worked okay for the initial scan, just not the removal of entries. Having said that, some files/folders have gone over the pages, so I think it did work, even though no log was produced.

Now, I do want to make sure some of the things I was concerned about, have gone.

So, using SystemLook again, like you did before, can you run it with the following code, and post the log:

Code:
:dir
c:\windows\temp
c:\documents and settings\michelle\localsettings\temp
:filefind
*Bomgar*
:folderfind
*Bomgar*
:regfind
proxy.uconn
Bomgar
:reg
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
HKLM\System\CCS\Services\Tcpip\Parameters
HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{14C63AB7-91F2-4939-82A0-88C6628A5C31}
HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{23E4F7C4-7DC6-489A-9574-0FF705F312F3}

---------------

Now, looking in the previous installed programs, you have the following. Did you install them?

LogMeIn
TeamViewer


If you did install them, and you definatly don't have anyone prompting you to run them, then that's okay. The two programs above are used for remote viewing of computers. Totally legal tools, but some people may not want then installed.

Now, the following program was showing as installed, but not in AddRemove Programs, least not that I could see:

Bomgar Support Customer Client

This again enables remote connection of computers. What makes me single this one out, is that its not seen in your installed programs, yet it is running. Again, legit tool, but do you know anything about it?


Pretty sure you installed these two, and if so, I'll leave them be:

Domain Name Analyzer
iLinc


-------

You have a few things running from the temp folder, so I've put the search in the above SystemLook code


-------------------

If you can work on the above first, I'll make sure its all okay, then look at rootkit scanners
What is system look? Is that the code I put into OTL?

I have NO idea what "Bomgar Support Customer Client" is although I may vaguely remember someone wanting to use it.

Yes I know about logmein & Teamviewer. Whenever a company needs to help me with something, they use those 2. I think we should remove Bomgar, but how do you do that if it's not in Control Panel?

I didn't know what iLinc was, but now I do. I don't remember installing it, but it looks interesting LOL

Domain name analyzer I know about & have forgotten about it

My concerns still are why is the proxy I used still showing up on the computer if I haven't used it in months? You didn't answer me when I asked that question last time (I don't think).

And yes I've been DLing shows to watch. I have no TV & I was sick of paying $60 & missing episodes & not being able to watch all I wanted to. Never thought I'd do it until someone here showed me.

I try to be careful & hope that Anti Vir is working properly.

My question is, how to avoid problems when watching that many videos AND the sound is terrible on my desktop, but if I watch the same show on my laptop it's not. So what does that mean?

Remember it's a brand new graphics card, so it can't be that, right?

Thanks


Michelle
ep2002's Avatar
ep2002 ep2002 is offline
Computer Specs
Member with 182 posts.
THREAD STARTER
 
Join Date: Oct 2006
Location: Windsor, Ontario (Canada)
Experience: Intermediate
13-Jul-2012, 08:42 AM #173
And did you get the SSs I sent you of all those programs I don't recognize that Online Armor brought up?
eddie5659's Avatar
Computer Specs
Moderator & Malware Removal Specialist with 28,307 posts.
 
Join Date: Mar 2001
Location: Bradford, England
15-Jul-2012, 01:19 PM #174
Good to see Java is updated

SystemLook, I've reposted below:

Please download SystemLook from one of the links below and save it to your Desktop.
Download Mirror #1
Download Mirror #2
  • Double-click SystemLook.exe to run it.
  • Copy the content of the following codebox into the main textfield:
    Code:
    :dir
    c:\windows\temp
    c:\documents and settings\michelle\localsettings\temp
    :filefind
    *Bomgar*
    :folderfind
    *Bomgar*
    :regfind
    proxy.uconn
    Bomgar
    :reg
    HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
    HKLM\System\CCS\Services\Tcpip\Parameters
    HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{14C63AB7-91F2-4939-82A0-88C6628A5C31}
    HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{23E4F7C4-7DC6-489A-9574-0FF705F312F3}
  • Click the Look button to start the scan.
  • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.
Note: The log can also be found at on your Desktop entitled SystemLook.txt



-------------------

As for Bomgar, if you run the above, we should be able to manually remove it

Quote:
My concerns still are why is the proxy I used still showing up on the computer if I haven't used it in months? You didn't answer me when I asked that question last time (I don't think).
Is that these?

FF - prefs.js..network.proxy.autoconfig_url: "http://proxy.uconn.edu:3000/proxy.pac"
FF - prefs.js..network.proxy.http: "http://proxy.uconn.edu:3000/proxy.pac"

If so, again the above Systemlook should help us on that issue.

------------
For the graphics, can you tell me which card you had before, and the one you have now?

Looking back thru the very first, does this ring a bell with your original card:

http://reviews.cnet.com/graphics-car...-31302971.html

For your new one, if you don't know the full name, can you do this:

Control Panel | System | Device Manager.
Under Display Adapter will be the full name of the card.

-----------

Yep, looking at the SS now

Did you install any audio/video programs lately, like VideoLanClient?

The first file in the screenshot is from the VideoLanClient program.
ep2002's Avatar
ep2002 ep2002 is offline
Computer Specs
Member with 182 posts.
THREAD STARTER
 
Join Date: Oct 2006
Location: Windsor, Ontario (Canada)
Experience: Intermediate
16-Jul-2012, 09:16 PM #175
Here you go...

SystemLook 30.07.11 by jpshortstuff
Log created at 19:37 on 16/07/2012 by Michelle
Administrator - Elevation successful

========== dir ==========

c:\windows\temp - Parameters: "(none)"

---Files---
ASPNETSetup_00000.log --a--c- 5158 bytes [00:09 13/05/2012]

[00:09 13/05/2012]
dd_clwireg.txt --a--c- 9745 bytes [00:04 13/05/2012] [00:12

13/05/2012]
dd_wcf_retCA6569.txt --a--c- 4383 bytes [00:05 13/05/2012]

[00:05 13/05/2012]
jna1035286164999603919.dll --a--c- 349255 bytes [23:30 02/07/2012]

[23:30 02/07/2012]
jna1300848490281619442.dll --a--c- 349255 bytes [06:56 31/03/2012]

[06:56 31/03/2012]
jna1328562604608111063.dll --a--c- 349255 bytes [12:10 26/05/2012]

[12:10 26/05/2012]
jna1401019872280532787.dll --a--c- 349255 bytes [21:04 04/06/2012]

[21:04 04/06/2012]
jna1616890877094421677.dll --a--c- 349255 bytes [11:51 11/07/2012]

[11:51 11/07/2012]
jna1841590441191906447.dll --a--c- 349255 bytes [08:06 05/07/2012]

[08:06 05/07/2012]
jna2280668617532265700.dll --a--c- 349255 bytes [04:00 12/06/2012]

[04:00 12/06/2012]
jna2395808405567257035.dll --a--c- 349255 bytes [22:23 15/07/2012]

[22:23 15/07/2012]
jna2403926791366746517.dll --a--c- 349255 bytes [04:39 12/04/2012]

[04:39 12/04/2012]
jna2605833092513603539.dll --a--c- 349255 bytes [05:51 11/07/2012]

[05:51 11/07/2012]
jna2890892696993522292.dll --a--c- 349255 bytes [07:33 01/06/2012]

[07:33 01/06/2012]
jna2959386983495680135.dll --a--c- 349255 bytes [11:22 11/07/2012]

[11:22 11/07/2012]
jna3643117084999477594.dll --a--c- 349255 bytes [12:53 13/07/2012]

[12:53 13/07/2012]
jna3768822003544776685.dll --a--c- 349255 bytes [06:38 12/07/2012]

[06:38 12/07/2012]
jna3874247841687538119.dll --a--c- 349255 bytes [00:16 13/05/2012]

[00:16 13/05/2012]
jna3984425350379758129.dll --a--c- 349255 bytes [12:48 13/07/2012]

[12:48 13/07/2012]
jna4769882994419214613.dll --a--c- 349255 bytes [12:45 06/04/2012]

[12:45 06/04/2012]
jna5474747815781263304.dll --a--c- 349255 bytes [04:37 29/05/2012]

[04:37 29/05/2012]
jna5560643405563175755.dll --a--c- 349255 bytes [20:33 08/05/2012]

[20:33 08/05/2012]
jna5969641177408322854.dll --a--c- 349255 bytes [08:41 08/06/2012]

[08:41 08/06/2012]
jna6035235879020909246.dll --a--c- 349255 bytes [09:11 12/04/2012]

[09:11 12/04/2012]
jna604582390827366587.dll --a--c- 349255 bytes [05:51 25/04/2012]

[05:51 25/04/2012]
jna6068563128547858051.dll --a--c- 349255 bytes [06:04 11/07/2012]

[06:04 11/07/2012]
jna6567816578241060312.dll --a--c- 349255 bytes [17:34 14/06/2012]

[17:34 14/06/2012]
jna6826882641334816887.dll --a--c- 349255 bytes [02:37 16/07/2012]

[02:37 16/07/2012]
jna7110311927977861955.dll --a--c- 349255 bytes [04:22 20/06/2012]

[04:22 20/06/2012]
jna8255216308663472822.dll --a--c- 349255 bytes [02:19 05/07/2012]

[02:19 05/07/2012]
jna8311135563077444519.dll --a--c- 349255 bytes [21:24 30/06/2012]

[21:25 30/06/2012]
jna8381302035370069848.dll --a--c- 349255 bytes [12:58 13/07/2012]

[12:58 13/07/2012]
jna8600567076188823742.dll --a--c- 349255 bytes [07:51 15/06/2012]

[07:51 15/06/2012]
jna917504981320219843.dll --a--c- 349255 bytes [21:34 30/06/2012]

[21:34 30/06/2012]
Perflib_Perfdata_164.dat --a--c- 16384 bytes [06:57 31/03/2012]

[06:57 31/03/2012]
Perflib_Perfdata_1df8.dat --a--c- 16384 bytes [00:10 13/05/2012]

[00:10 13/05/2012]
Perflib_Perfdata_410.dat --a--c- 16384 bytes [21:35 30/06/2012]

[21:35 30/06/2012]
Perflib_Perfdata_440.dat --a--c- 16384 bytes [22:30 15/07/2012]

[22:30 15/07/2012]
Perflib_Perfdata_4e4.dat --a--c- 16384 bytes [17:37 14/06/2012]

[17:37 14/06/2012]
Perflib_Perfdata_4fc.dat --a--c- 16384 bytes [08:06 05/07/2012]

[08:06 05/07/2012]
Perflib_Perfdata_504.dat --a--c- 16384 bytes [06:42 12/07/2012]

[06:42 12/07/2012]
Perflib_Perfdata_7e8.dat --a--c- 16384 bytes [08:44 08/06/2012]

[08:44 08/06/2012]
Perflib_Perfdata_894.dat --a--c- 16384 bytes [05:52 11/07/2012]

[05:52 11/07/2012]
Perflib_Perfdata_95c.dat --a--c- 16384 bytes [18:59 20/04/2012]

[18:59 20/04/2012]
Perflib_Perfdata_9b8.dat --a--c- 16384 bytes [07:52 15/06/2012]

[07:52 15/06/2012]
Perflib_Perfdata_9bc.dat --a--c- 16384 bytes [20:42 26/04/2012]

[20:42 26/04/2012]
Perflib_Perfdata_a4.dat --a--c- 16384 bytes [23:30 02/07/2012]

[23:30 02/07/2012]
Perflib_Perfdata_a94.dat --a--c- 16384 bytes [04:02 12/06/2012]

[04:02 12/06/2012]
Perflib_Perfdata_b20.dat --a--c- 16384 bytes [21:17 26/03/2012]

[21:17 26/03/2012]
Perflib_Perfdata_b68.dat --a--c- 16384 bytes [21:25 30/06/2012]

[21:25 30/06/2012]
Perflib_Perfdata_bb8.dat --a--c- 16384 bytes [21:05 04/06/2012]

[21:05 04/06/2012]
Perflib_Perfdata_c18.dat --a--c- 16384 bytes [04:39 29/05/2012]

[04:39 29/05/2012]
Perflib_Perfdata_c30.dat --a--c- 16384 bytes [04:41 12/04/2012]

[04:41 12/04/2012]
Perflib_Perfdata_cc4.dat --a--c- 16384 bytes [12:47 06/04/2012]

[12:47 06/04/2012]
Perflib_Perfdata_ccc.dat --a--c- 16384 bytes [08:13 26/05/2012]

[08:13 26/05/2012]
Perflib_Perfdata_d0c.dat --a--c- 16384 bytes [12:10 26/05/2012]

[12:10 26/05/2012]
Perflib_Perfdata_d40.dat --a--c- 16384 bytes [12:54 13/07/2012]

[12:54 13/07/2012]
Perflib_Perfdata_d7c.dat --a--c- 16384 bytes [06:05 11/07/2012]

[06:05 11/07/2012]
Perflib_Perfdata_d8c.dat --a--c- 16384 bytes [21:27 30/06/2012]

[21:27 30/06/2012]
Perflib_Perfdata_d98.dat --a--c- 16384 bytes [11:52 11/07/2012]

[11:52 11/07/2012]
Perflib_Perfdata_dac.dat --a--c- 16384 bytes [02:38 16/07/2012]

[02:38 16/07/2012]
Perflib_Perfdata_e50.dat --a--c- 16384 bytes [11:23 11/07/2012]

[11:23 11/07/2012]
Perflib_Perfdata_e70.dat --a--c- 16384 bytes [08:07 05/07/2012]

[08:07 05/07/2012]
Perflib_Perfdata_e9c.dat --a--c- 16384 bytes [07:34 01/06/2012]

[07:34 01/06/2012]
Perflib_Perfdata_ea0.dat --a--c- 16384 bytes [00:20 13/05/2012]

[00:20 13/05/2012]
Perflib_Perfdata_ec.dat --a--c- 16384 bytes [02:37 16/07/2012]

[02:37 16/07/2012]
Perflib_Perfdata_f7c.dat --a--c- 16384 bytes [02:23 05/07/2012]

[02:23 05/07/2012]
Perflib_Perfdata_ffc.dat --a--c- 16384 bytes [04:24 20/06/2012]

[04:24 20/06/2012]
WGAErrLog.txt --a--c- 483 bytes [06:54 31/03/2012] [22:48

16/07/2012]

---Folders---
CitrixLogs d----c- [06:55 31/03/2012]
hsperfdata_SYSTEM d----c- [06:56 31/03/2012]
Low d----c- [16:22 22/06/2012]

c:\documents and settings\michelle\localsettings\temp - Unable to find

folder.

========== filefind ==========

Searching for "*Bomgar*"
No files found.

========== folderfind ==========

Searching for "*Bomgar*"
No folders found.

========== regfind ==========

Searching for "proxy.uconn"
No data found.

Searching for "Bomgar"
No data found.

========== reg ==========

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion

\Run]
"BrMfcWnd"="C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe

/AUTORUN"
"ControlCenter3"="C:\Program

Files\Brother\ControlCenter3\brctrcen.exe /autorun"
"LogMeIn GUI"=""D:\Notes\LogMeIn\x86\LogMeInSystray.exe""
"BrStsMon00"="C:\Program Files\Browny02\Brother\BrStMonW.exe

/AUTORUN"
"KodakShareButtonApp"="C:\Program Files\Kodak\KODAK Share

Button App\Listener.exe"
"avgnt"=""C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min"
"RTHDCPL"="RTHDCPL.EXE"
"SkyTel"="SkyTel.EXE"
"Adobe Reader Speed Launcher"=""C:\Program Files\Adobe\Reader

9.0\Reader\Reader_sl.exe""
"Adobe ARM"=""C:\Program Files\Common

Files\Adobe\ARM\1.0\AdobeARM.exe""
"@OnlineArmor GUI"=""C:\Program Files\Online Armor\OAui.exe""
"StartCCC"=""C:\Program Files\ATI

Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun"
"SysTrayApp"="%ProgramFiles%\IDT\WDM\sttray.exe"
"APSDaemon"=""C:\Program Files\Common Files\Apple\Apple

Application Support\APSDaemon.exe""
"QuickTime Task"=""C:\Program Files\QuickTime\QTTask.exe"

-atboottime"
"Wondershare Helper Compact.exe"="C:\Program Files\Common

Files\Wondershare\Wondershare Helper Compact\WSHelper.exe"
"Malwarebytes' Anti-Malware"=""C:\Program Files\Malwarebytes'

Anti-Malware\mbamgui.exe" /starttray"
"SunJavaUpdateSched"=""C:\Program Files\Common Files\Java\Java

Update\jusched.exe""

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion

\Run\OptionalComponents]


[HKEY_LOCAL_MACHINE\System\CCS\Services\Tcpip\Parameters]
(Unable to open key - key not found)

[HKEY_LOCAL_MACHINE\System\CCS\Services\Tcpip\Parameters\Int

erfaces\{14C63AB7-91F2-4939-82A0-88C6628A5C31}]
(Unable to open key - key not found)

[HKEY_LOCAL_MACHINE\System\CCS\Services\Tcpip\Parameters\Int

erfaces\{23E4F7C4-7DC6-489A-9574-0FF705F312F3}]
(Unable to open key - key not found)

-= EOF =-
ep2002's Avatar
ep2002 ep2002 is offline
Computer Specs
Member with 182 posts.
THREAD STARTER
 
Join Date: Oct 2006
Location: Windsor, Ontario (Canada)
Experience: Intermediate
16-Jul-2012, 09:18 PM #176
Quote:
Originally Posted by eddie5659 View Post
Is that these?

FF - prefs.js..network.proxy.autoconfig_url: "http://proxy.uconn.edu:3000/proxy.pac"
FF - prefs.js..network.proxy.http: "http://proxy.uconn.edu:3000/proxy.pac"

If so, again the above Systemlook should help us on that issue.
No, I don't even know what those are. It's the other one called Ultra surf.
ep2002's Avatar
ep2002 ep2002 is offline
Computer Specs
Member with 182 posts.
THREAD STARTER
 
Join Date: Oct 2006
Location: Windsor, Ontario (Canada)
Experience: Intermediate
16-Jul-2012, 10:19 PM #177
Quote:
Originally Posted by eddie5659 View Post
-----------

For the graphics, can you tell me which card you had before, and the one you have now?

Looking back thru the very first, does this ring a bell with your original card:

http://reviews.cnet.com/graphics-car...-31302971.html

For your new one, if you don't know the full name, can you do this:

Control Panel | System | Device Manager.
Under Display Adapter will be the full name of the card.

-----------
Ok, I managed to find the stats prior to reinstalling the new video card & MB.

http://speccy.piriform.com/results/j...T41HfnQ13IQvLl

Here's the new stats - http://speccy.piriform.com/results/p...Yo0BtjIQNfjMS4


Michelle
ep2002's Avatar
ep2002 ep2002 is offline
Computer Specs
Member with 182 posts.
THREAD STARTER
 
Join Date: Oct 2006
Location: Windsor, Ontario (Canada)
Experience: Intermediate
16-Jul-2012, 10:20 PM #178
Quote:
Originally Posted by eddie5659 View Post

Did you install any audio/video programs lately, like VideoLanClient?

The first file in the screenshot is from the VideoLanClient program.
Hmm, I have no clue what that is. What does it do?

I don't have a webcam on my desktop, only my laptop & I never use it.

Michelle
eddie5659's Avatar
Computer Specs
Moderator & Malware Removal Specialist with 28,307 posts.
 
Join Date: Mar 2001
Location: Bradford, England
18-Jul-2012, 05:09 PM #179
Thanks for all the replies

So, lets go thru each. You have these in the temp folder. Have a feeling they're harmless, but can you run a scan on a few as follows:


Jotti File Submission:
  • Please go to Jotti's malware scan
  • Copy and paste the following file path into the "File to upload & scan"box on the top of the page:
    • c:\windows\temp\jna1035286164999603919.dll
  • Click on the submit button
  • Please post the results in your next reply.

Also, do the same for these:

c:\windows\temp\jna1300848490281619442.dll
c:\windows\temp\jna4769882994419214613.dll



--------

Now, the proxy I was removing isn't showing up anymore, but we'll triple-check in a bit. As for Ultra surf, I can't see it in your Addons, nor in your installed programs.

--------

Graphics:

This was your old one: 128MB ASUS Extreme AX300 Series

Which I think was this one:

http://reviews.cnet.com/graphics-car...-31302971.html

Can you remember if it was an ATI or Nvidia card?

new one is this: 1024MB ATI Radeon HD 5450

So, this one is an ATI. The reason I'm asking if it was a Nvidia, is that the old software may still be installed, which can conflict with each other.

Can you tell me which driver version you have? To find out, do this:

Control Panel | System | Device Manager.
Under Display Adapter will be the full name of the card.
Right-click and select Properties, then Driver tab.

---

For the VideoLanClient program, this is the main site:

http://www.videolan.org/index.html

Can you remember getting something from here?

------------------------

To check all was removed okay, can you run OTL again, as you did before;
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • Click the Quick Scan button.Select All Users. The scan wont take long.
    • When the scan completes, it will open a notepad window. OTL.Txt. These are saved in the same location as OTL.
    • Please copy (Edit->Select All, Edit->Copy) the contents of these files and post them in your topic
ep2002's Avatar
ep2002 ep2002 is offline
Computer Specs
Member with 182 posts.
THREAD STARTER
 
Join Date: Oct 2006
Location: Windsor, Ontario (Canada)
Experience: Intermediate
21-Jul-2012, 06:34 AM #180
Ok, you can't copy & paste the path, I had to go search for it.

And I don't know how to give you the info, so I just had to copy it.

File size: 349255 bytes
Filetype: PE32 executable for MS Windows (DLL) (console) Intel 80386 32-bit
MD5: 28e4d67db8f5a83a47ca92f931d7d5eb
SHA1: 464143281e7cb43270f26249d9f3fa05bba24557




Scanners
[ArcaVir]
2012-07-21 Found nothing
[Frisk F-Prot Antivirus]
2012-07-20 Found nothing
[Avast! antivirus]
2012-07-21 Found nothing
[F-Secure Anti-Virus]
2012-07-21 Found nothing
[Grisoft AVG Anti-Virus]
2012-07-21 Found nothing
[G DATA]
2012-07-21 Found nothing
[Avira AntiVir]
2012-07-21 Found nothing
[Ikarus]
2012-07-21 Found nothing
[Softwin BitDefender]
2012-07-21 Found nothing
[Kaspersky Anti-Virus]
2012-07-21 Found nothing
[ClamAV]
2012-07-21 Found nothing
[Panda Antivirus]
2012-07-20 Found nothing
[CPsecure]
2012-07-20 Found nothing
[Quick Heal]
2012-07-21 Found nothing
[Dr.Web]
2012-07-21 Found nothing
[Sophos]
2012-07-21 Found nothing
[Emsisoft Anti-Malware]
2012-07-21 Found nothing
[VirusBlokAda VBA32]
2012-07-20 Found nothing
[ESET]
2012-07-20 Found nothing
[VirusBuster]
2012-07-20 Found nothing
As Seen On

BBC, Reader's Digest, PC Magazine, Today Show, Money Magazine
WELCOME TO TECH SUPPORT GUY!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.


(clock)
THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Search Tech Support Guy

Find the solution to your
computer problem!




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools


WELCOME
You Are Using: Server ID
Trusted Website Back to the Top ↑