1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

Need to Clean My Comp Badly

Discussion in 'Virus & Other Malware Removal' started by annieskid25, Jan 20, 2015.

Thread Status:
Not open for further replies.
Advertisement
  1. annieskid25

    annieskid25 Thread Starter

    Joined:
    Aug 10, 2007
    Messages:
    33
    First Name:
    Nancy
    believe my comp has a worm filling it up as fast as it can. cant open system info, cant get tsg sysinfo to work, tried twice, and cant even open the document I made of system info, without having to unplug the comp. Time keeps changin back to 2006. Cant run misconfig, regedit or the thing hijack this told me to run. Comp scared me badly yesterday, so badly i turned it off for several hours and unplugged it. Tried to open a program under recently opened, and it said i couldnt because I wasnt the system administrator and it was read only. changed the read only somehow, and tried to delete the file. It started growing like crazy in size, so i uplugged the machine. Finally turned it back on, sure this thing would crash the comp. Went to CNET and downloaded COMODO Virus Scan, it found and removed 2 threats in a deep scan which took over an hour. My comp needs cleaned I know, when i finally get regedit open and its set to default because of size.
    I now something is going on, but not sure what is killing this comp. I want to clean this comp so it takes twenty minutes to do a virus scan, but no clue how to do that. Know its a dell, running windows 7 Pro. also know the battery is low since comodo found several files saying that. Dont know if its even safe to go online, since opening my homepage (msn) somehow opens 20 MBplus from what CCleaner says. I run CCleaner several times a day but feel this comp needs a really deep clean at least, and think it has a worm since yesterday, when i downloaded flash from cnet, and everything went crazy. It put twenty things on my desktop I had to uninstall, and one wont go away no matter how many times I uninstall. Also found notepad orders not to let Java run, and make runescape shutdown on startup. Spending today working on cleaning the comp, but have to pick up my daughter at 3:20. Help if you can, or let me know if this can even be fixed. thanks
     
  2. annieskid25

    annieskid25 Thread Starter

    Joined:
    Aug 10, 2007
    Messages:
    33
    First Name:
    Nancy
    Logfile of Trend Micro HijackThis v2.0.5
    Scan saved at 2:53:07 PM, on 1/20/2015
    Platform: Windows 7 SP1 (WinNT 6.00.3505)
    MSIE: Internet Explorer v11.0 (11.00.9600.17496)


    Boot mode: Normal

    Running processes:
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Windows\system32\taskhost.exe
    C:\Windows\system32\taskeng.exe
    C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
    C:\Windows\System32\igfxtray.exe
    C:\Windows\System32\hkcmd.exe
    C:\Windows\System32\igfxpers.exe
    C:\Program Files\Microsoft Security Client\msseces.exe
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\Windows\system32\igfxsrvc.exe
    C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe
    C:\Program Files\NETGEAR\WNA1000M\WNA1000M.exe
    C:\Program Files\OpenOffice.org 3\program\soffice.exe
    C:\Program Files\OpenOffice.org 3\program\soffice.bin
    C:\Windows\system32\wuauclt.exe
    C:\Program Files\COMODO\COMODO Internet Security\cis.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Users\dimension 5150\Downloads\HijackThis (1).exe
    C:\Windows\system32\SearchProtocolHost.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
    O2 - BHO: RuneScape - {a8864317-e18b-4292-99d9-e6e65ab905d3} - C:\Users\dimension 5150\AppData\LocalLow\RuneScape\prxtbRune.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
    O3 - Toolbar: RuneScape Toolbar - {a8864317-e18b-4292-99d9-e6e65ab905d3} - C:\Users\dimension 5150\AppData\LocalLow\RuneScape\prxtbRune.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
    O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
    O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
    O4 - HKLM\..\Run: [tvncontrol] "C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe" -controlservice -slave
    O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
    O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
    O4 - Global Startup: NETGEAR WNA1000M Genie.lnk = C:\Program Files\NETGEAR\WNA1000M\WNA1000M.exe
    O4 - Global Startup: Start GeekBuddy.lnk = C:\Program Files\Comodo\GeekBuddy\launcher.exe
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O17 - HKLM\System\CCS\Services\Tcpip\..\{9DF399AF-0EE1-4FD7-B0BD-733145BE3E05}: NameServer = 156.154.70.22,156.154.71.22
    O17 - HKLM\System\CCS\Services\Tcpip\..\{B691D8FB-2003-46F3-8060-A4906C770BBB}: NameServer = 156.154.70.22,156.154.71.22
    O17 - HKLM\System\CS1\Services\Tcpip\..\{9DF399AF-0EE1-4FD7-B0BD-733145BE3E05}: NameServer = 156.154.70.22,156.154.71.22
    O17 - HKLM\System\CS2\Services\Tcpip\..\{9DF399AF-0EE1-4FD7-B0BD-733145BE3E05}: NameServer = 156.154.70.22,156.154.71.22
    O20 - AppInit_DLLs:
    O23 - Service: COMODO LPS Launcher (CLPSLauncher) - Comodo Security Solutions, Inc. - C:\Program Files\Common Files\COMODO\launcher_service.exe
    O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
    O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files\Comodo\Dragon\dragon_updater.exe
    O23 - Service: GeekBuddyRSP Server (GeekBuddyRSP) - Comodo Security Solutions, Inc. - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe
    O23 - Service: Toolbar Service (TBSrv) - ClientConnect Ltd. - C:\Program Files\Tbccint\ToolbarService\ToolbarService.exe
    O23 - Service: Windows Virtual Network (WVN3) (WindowsVNT_R3) - MicroStudio - C:\Program Files\Windows Network Accelerater\v3\winvxm.exe
    O23 - Service: WlanWpsSvc - Unknown owner - C:\Program Files\NETGEAR\WNA1000M\WlanWpsSvc.exe
    O23 - Service: YouTube Downloader Services (P4) (YouTubeDownload_P4) - MicroTools - C:\Program Files\YouTube Downloader Services\P4\youtubeserv.exe

    --
    End of file - 5319 bytes
     
  3. annieskid25

    annieskid25 Thread Starter

    Joined:
    Aug 10, 2007
    Messages:
    33
    First Name:
    Nancy
    youtube downloader is the program that i keep uninstalling and it keeps coming back. Also have a website opening every time i open msn that should be gone, and hijack this cant find hosts file, and gives an error message about the registry somethin adding a value that doesnt exist and so its deleted.
     
  4. annieskid25

    annieskid25 Thread Starter

    Joined:
    Aug 10, 2007
    Messages:
    33
    First Name:
    Nancy
    Turning off the comp for two days, then back on (I HOPE) to check for a reply. Turning back off if no reply is there, checking back every day or two until someone replies.
     
  5. annieskid25

    annieskid25 Thread Starter

    Joined:
    Aug 10, 2007
    Messages:
    33
    First Name:
    Nancy
    my roommate managed to do a system restore to four days ago and that problem disappeared, YAY
     
  6. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/1141571

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice