1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

help my comp freezes after a few mins after startup

Discussion in 'Windows Vista' started by tmalbrecht77, Feb 24, 2013.

Thread Status:
Not open for further replies.
Advertisement
  1. tmalbrecht77

    tmalbrecht77 Thread Starter

    Joined:
    Feb 24, 2013
    Messages:
    4
    I have been having this problem for a while now

    My laptop will go through the startup fine then the desktop pops up fine and then I can open something right away and then after a few mins the curser will do its thinking thing and thats it! It never opens and it says not responding in the box on top.

    So My wife had problems in the past like this so I asked her and I opened in safe mode, then I downloaded malewarebyes and it detected 3 problems 1 was a trojan, 1 was hijack, and 1 was adware.
    So I removed them and also removed the expired trend micro titanium thinking that might be it also and then I thought it will work yea.... NOPE it didnt! so Ive been reading problems and what they did to fix it and I have no clue what to do. I do think its with the programs at startup but idk please help!ASAP
     
  2. blues_harp28

    blues_harp28 Trusted Advisor Spam Fighter

    Joined:
    Jan 9, 2005
    Messages:
    18,712
    Hi and welcome.
    If you can - start Malwarebytes again.
    Click on the Logs Tab.
    Highlight the scan log entry.
    Click - Open.
    The scan log will appear in Notepad.
    Copy and paste it in your next post.
    ------
    Download Security Check by screen317
    http://screen317.spywareinfoforum.org/
    Save it to your Desktop.

    Double click the install icon.
    If using Vista - Win 7 - right click the install icon and select "Run as Administrator"
    A command Prompt window will open.
    Let it scan the Pc - press any key when asked.
    It should now open in Notepad - and will save a log called checkup.txt.
    Post the result of the scan here.
     
  3. tmalbrecht77

    tmalbrecht77 Thread Starter

    Joined:
    Feb 24, 2013
    Messages:
    4
    heres the reports you requested.
    Oh and thank you for responding.



    Malwarebytes Anti-Malware (Trial) 1.70.0.1100
    www.malwarebytes.org
    Database version: v2013.02.25.02
    Windows Vista Service Pack 2 x86 NTFS (Safe Mode/Networking)
    Internet Explorer 9.0.8112.16421
    Bob :: BOB-PC [administrator]
    Protection: Disabled
    2/25/2013 8:19:11 PM
    mbam-log-2013-02-25 (20-19-11).txt
    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 223144
    Time elapsed: 6 minute(s), 47 second(s)
    Memory Processes Detected: 0
    (No malicious items detected)
    Memory Modules Detected: 0
    (No malicious items detected)
    Registry Keys Detected: 0
    (No malicious items detected)
    Registry Values Detected: 0
    (No malicious items detected)
    Registry Data Items Detected: 0
    (No malicious items detected)
    Folders Detected: 0
    (No malicious items detected)
    Files Detected: 0
    (No malicious items detected)
    (end)




    Results of screen317's Security Check version 0.99.59
    Windows Vista Service Pack 2 x86 (UAC is enabled)
    Internet Explorer 9
    ``````````````Antivirus/Firewall Check:``````````````
    Windows Security Center service is not running! This report may not be accurate!
    Windows Firewall Enabled!
    Trend Micro Titanium
    Antivirus up to date! (On Access scanning disabled!)
    `````````Anti-malware/Other Utilities Check:`````````
    Malwarebytes Anti-Malware version 1.70.0.1100
    Java(TM) 6 Update 31
    Java(TM) SE Runtime Environment 6 Update 1
    Java version out of Date!
    Adobe Flash Player 11.5.502.146
    Adobe Reader 9 Adobe Reader out of Date!
    Adobe Reader 10.1.5 Adobe Reader out of Date!
    Mozilla Firefox 18.0.1 Firefox out of Date!
    Google Chrome 24.0.1312.52
    Google Chrome 24.0.1312.56
    ````````Process Check: objlist.exe by Laurent````````
    `````````````````System Health check`````````````````
    Total Fragmentation on Drive C: %
    ````````````````````End of Log``````````````````````
     
  4. blues_harp28

    blues_harp28 Trusted Advisor Spam Fighter

    Joined:
    Jan 9, 2005
    Messages:
    18,712
    If you can find the log file from Malwarebytes it would help us.

    Download SuperAntiSpyware to your desktop.
    Download the Free version.
    SuperAntiSpyware

    Once they are downloaded to your desktop.
    Close all open browser windows.

    SuperAntiSpyware
    Click on the install icon - allow it to update during the install process.
    Select the Quick Scan option.
    Click Scan your Computer.
    Any infections or problems will be highlighted in red.
    After the scan is finished.
    Click Continue.
    Check that everything is listed.
    Click Remove Threats.
    Click OK - then click Finish
    You may be prompted to restart to finish the removal process.
    If Yes - restart your Pc.

    Start SuperAntiSpyware again.
    Click View Scan Logs.
    Highlight the scan log entry.
    Click - View Selected Log.
    The scan log will appear in Notepad.
    Copy and paste in your next post.
    ------
    Post a Hjt log - to see what is running on your system.
    Hijack this 2.04
    • Save HJTInstall.exe to your desktop.
    • Doubleclick on the HJTInstall.exe icon on your desktop.
    • By default it will install to C:\Program Files\Trend Micro\HijackThis .
    • Click on Install.
    • It will create a HijackThis icon on the desktop.
    • Once installed, it will launch Hijackthis.
    • Click on the Do a system scan and save a logfile button. It will scan and the log should open in notepad.
    • Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
    • Come back here to this thread and Paste the log in your next reply.
    • DO NOT use the AnalyseThis button, its findings are dangerous if misinterpreted.
    • DO NOT have Hijackthis fix anything yet. Most of what it finds will be harmless or even required.

    Also post the uninstall log from Hjt log
    Start HiJackThis.
    At the bottom right - Other Stuff
    Click on Config > Misc Tools.
    Click > Open Uninstall Manager.
    Click > Save List.
    Save the uninstall list file on your desktop.
    It will then open in Notepad.
    Click Edit > Select All > Edit > Copy-and-Paste the uninstall list in the reply box.
    ----
    Should the Hjt log not be accessible - you may need to disable UAC.
    Go to Control Panel - User Accounts, then turn off and disable the User Account Control[UAC]
    Apply the change > restart your computer.
    Make sure that you turn on User Accounts - once we have checked your system.
     
  5. tmalbrecht77

    tmalbrecht77 Thread Starter

    Joined:
    Feb 24, 2013
    Messages:
    4
    I wanted to start by thanking you for your help through this, if we fix it or not. I now dont have to go crazy trying to read posts and see if its the same problem and try what they did, I was going in a thousand differant directions, thanks for giving me easy to follow directions so even I could do it.
    Here are the logs you asked for. I hope that me deleting the bugs from the quarentine wont mess it up.
    Malwarebytes Anti-Malware (Trial) 1.70.0.1100
    www.malwarebytes.org
    Database version: v2013.02.24.06
    Windows Vista Service Pack 2 x86 NTFS (Safe Mode/Networking)
    Internet Explorer 9.0.8112.16421
    Bob :: BOB-PC [administrator]
    Protection: Disabled
    2/24/2013 12:49:18 PM
    mbam-log-2013-02-24 (12-49-18).txt
    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 220021
    Time elapsed: 7 minute(s), 30 second(s)
    Memory Processes Detected: 0
    (No malicious items detected)
    Memory Modules Detected: 0
    (No malicious items detected)
    Registry Keys Detected: 1
    HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} (Trojan.Vundo) -> Quarantined and deleted successfully.
    Registry Values Detected: 0
    (No malicious items detected)
    Registry Data Items Detected: 1
    HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced|Start_ShowSearch (PUM.Hijack.StartMenu) -> Bad: (0) Good: (1) -> Quarantined and repaired successfully.
    Folders Detected: 0
    (No malicious items detected)
    Files Detected: 1
    C:\Users\Bob\Downloads\EpicPlaySetup.exe (Adware.Gamevance) -> Quarantined and deleted successfully.
    (end)


    Malwarebytes Anti-Malware (Trial) 1.70.0.1100
    www.malwarebytes.org
    Database version: v2013.02.24.06
    Windows Vista Service Pack 2 x86 NTFS (Safe Mode/Networking)
    Internet Explorer 9.0.8112.16421
    Bob :: BOB-PC [administrator]
    Protection: Disabled
    2/24/2013 2:45:34 PM
    mbam-log-2013-02-24 (14-45-34).txt
    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 219752
    Time elapsed: 5 minute(s), 8 second(s)
    Memory Processes Detected: 0
    (No malicious items detected)
    Memory Modules Detected: 0
    (No malicious items detected)
    Registry Keys Detected: 0
    (No malicious items detected)
    Registry Values Detected: 0
    (No malicious items detected)
    Registry Data Items Detected: 0
    (No malicious items detected)
    Folders Detected: 0
    (No malicious items detected)
    Files Detected: 0
    (No malicious items detected)
    (end)



    SUPERAntiSpyware Scan Log
    http://www.superantispyware.com
    Generated 02/26/2013 at 00:55 AM
    Application Version : 5.6.1014
    Core Rules Database Version : 10052
    Trace Rules Database Version: 7864
    Scan type : Quick Scan
    Total Scan Time : 00:06:44
    Operating System Information
    Windows Vista Home Premium 32-bit, Service Pack 2 (Build 6.00.6002)
    UAC Off - Administrator
    Memory items scanned : 374
    Memory threats detected : 0
    Registry items scanned : 30442
    Registry threats detected : 15
    File items scanned : 7491
    File threats detected : 140
    PUP.MyWebSearch/FunWebProducts
    HKU\S-1-5-21-2266857340-96792736-2833287584-1000\SOFTWARE\FunWebProducts
    HKLM\Software\FocusInteractive
    HKLM\Software\FocusInteractive\bar
    HKLM\Software\FocusInteractive\bar\Switches
    HKLM\Software\FocusInteractive\bar\Switches#au
    HKLM\Software\FocusInteractive\bar\Switches#ps
    HKLM\Software\FocusInteractive\bar\Switches#ok
    HKLM\Software\FocusInteractive\bar\Switches#od
    HKLM\Software\FocusInteractive\bar\Switches#nk
    HKLM\Software\FocusInteractive\bar\Switches#nd
    HKLM\Software\FocusInteractive\Email-IM
    HKLM\Software\FocusInteractive\Email-IM\0
    HKLM\Software\FocusInteractive\Outlook
    Adware.Tracking Cookie
    C:\Users\Bob\AppData\Roaming\Microsoft\Windows\Cookies\CEMOA4NH.txt [ /liveperson.net ]
    C:\Users\Bob\AppData\Roaming\Microsoft\Windows\Cookies\NJYN43SL.txt [ /server.iad.liveperson.net ]
    C:\Users\Bob\AppData\Roaming\Microsoft\Windows\Cookies\NO2JB7LT.txt [ /liveperson.net ]
    C:\USERS\BOB\Cookies\CEMOA4NH.txt [ Cookie:[email protected]/ ]
    C:\USERS\BOB\Cookies\NJYN43SL.txt [ Cookie:[email protected]/ ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .yieldmanager.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .tribalfusion.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .apmebf.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .ad.mlnadvertising.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    track.adform.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .apmebf.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .burstnet.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .www.burstnet.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .burstnet.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .realmedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .realmedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    network.realmedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .fastclick.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .c.atdmt.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .c.atdmt.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .lfstmedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .lfstmedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .lfstmedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    statse.webtrendslive.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .lfstmedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .lucidmedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .at.atwola.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    www.burstnet.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .lfstmedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\USERS\BOB\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HX65M787.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .amazon-adsystem.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atdmt.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .atdmt.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .advertising.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .advertising.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .advertising.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .advertising.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .advertising.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .apmebf.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .mediaplex.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .mediaplex.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    ad.yieldmanager.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .serving-sys.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .serving-sys.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .serving-sys.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .lfstmedia.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .lfstmedia.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .lfstmedia.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    .lfstmedia.com [ C:\USERS\BOB\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
    PUP.MyWebSearch
    HKU\S-1-5-21-2266857340-96792736-2833287584-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser#{07B18EA9-A523-4961-B6BB-170DE4475CCA}
    HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}
    Trojan.Agent/Gen-Weirdon
    C:\WINDOWS\SYSTEM32\MFC45.DLL

    I tried the Hijack this 2.04 and it said that I cant do it in safe mode, and when I try to boot the computer normally it still freezes. So what should I do?
     
  6. blues_harp28

    blues_harp28 Trusted Advisor Spam Fighter

    Joined:
    Jan 9, 2005
    Messages:
    18,712
    I am concerned about this entry showing in the Superantispyware scan - Trojan.Agent/Gen-Weirdon - I will ask one of our Malware Experts to check the log files above
     
  7. Mark1956

    Mark1956

    Joined:
    May 7, 2011
    Messages:
    14,142
    Hi Tmalbrecht77, Please run these two scans and post the logs:

    They should both run ok in Safe Mode.

    SCAN 1
    Click on this link to download : ADWCleaner and save it to your desktop.

    NOTE: If using Internet Explorer and you get an alert that stops the program downloading click on Tools > Smartscreen Filter > Turn off Smartscreen Filter then click on OK in the box that opens. Then click on the link again.

    Close your browser and click on this icon on your desktop: [​IMG]

    You will then see the screen below, click on the Delete button (as indicated), accept any prompts that appear and allow it to reboot the PC. When the PC has rebooted you will be presented with the report, copy & paste it into your next post.

    [​IMG]



    SCAN 2
    Download RogueKiller (by tigzy) and save direct to your Desktop.
    On the web page select the 32bit or 64bit button to match the bit rate of your version of Windows.

    • Quit all running programs.
    • Start RogueKiller.exe by double clicking on the icon.
    • Wait until Prescan has finished.
    • Ensure all boxes are ticked under "Report" tab.
    • Click on Scan.
    • Click on Report when complete. Copy/paste the contents of the report and paste into your next reply.
    • NOTE: DO NOT attempt to remove anything that the scan detects.

    [​IMG]
     
  8. tmalbrecht77

    tmalbrecht77 Thread Starter

    Joined:
    Feb 24, 2013
    Messages:
    4
    I just wanted to tell you guys that I haven't been at home for a couple days. I will run those reports as soon as I get back to that computer. Thank you for being patient with me.:eek::D
     
  9. blues_harp28

    blues_harp28 Trusted Advisor Spam Fighter

    Joined:
    Jan 9, 2005
    Messages:
    18,712
    No problem - post back when you are ready.
     
  10. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/1090871

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice