Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security Cleanup » HJT Log System Slow Disk Busy
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
[Trojan] Zlog.Downloader.oid, Smithfraud.C, Virus Protect & etc »
« rogue spyware icon on taskbar  
AuthorAll Replies


CalamityJane
Premium,VIP,MVM
join:2002-08-27
Eustis, FL


moderated:
April 9th, @06:22PM

reply to RJHere
Re: HJT Log System Slow Disk Busy

No hiding infection there :)

The MyWebSearch mostly likely came pre-installed on your Dell computer. It is best removed via the Control Panel under Add/Remove programs - although it is not harmful really,nor the cause of your symptoms. But the scanners did not completely remove it (possibly because you may have had your browser open during scanning). And some do not detect it because it is not harmful or malicious.

See if this is listed in your Add/Remove programs and remove it from there (with all browsed closed)
MYWEBSEARCH BAR

Then reboot the PC

After reboot, scan with HijackThis and if the following entries are still present, you can checkmark these two and press the *fix checked* button.

O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)

O4 - HKLM\..\Run: [My Web Search Bar] rundll32 C:\PROGRA~1\MYWEBS~1\bar\2.bin\MWSBAR.DLL,S


Subsequently delete the following folder, if found:

C:\PROGRAM FILES\MYWEBSEARCH BAR

...........
And on a side note (not related at to your problem) is that your Sun Java is very outdated and security risk.

Old versions left on your pc, even after updating can be vulnerable to malware exploit. Go to Start / Control Panel and look in Add/Remove programs. Remove all old versions of Sun Java.
They will appear in the "J's" something similar to:

j2re1.4.2_05 or

JAVA 2 RUNTIME ENVIROMENT SE V1.4.2_03

JAVA 2 RUNTIME ENVIROMENT SE V.14.2_06

(or similar, and there may be more than one. Remove them all)

Then go get the latest up to date version here:
http://www.java.com/en/download/manual.jsp

Here's why removing old versions of Sun Java is important:
Potential Vulnerability with Sun Java auto update
http://www.dslreports.com/forum/remark,14738046

This is a vulnerability in that Sun Java new updated versions do not remove prior vulnerable versions. You will have to remember to do that manually whenever you update your Sun Java.
............
We could take a little deeper look to ensure there is nothing hiding with this free tool. Please post the logs it makes back here for review:

Download Deckard's System Scanner (DSS)


Save the file to your Desktop.

Note: You must be logged onto an account with administrator privileges.

[*]Close all applications and windows.
[*]Double-click on dss.exe to run it, and follow the prompts.
[*]When the scan is complete, two text files will open - main.txt [color=Red]extra.txt[color=Red](Ctrl+A then Ctrl+C) and paste (Ctrl+V) the contents of main.txt and the extra.txt to your post. in your reply
--
It takes a disaster to make a woman out of a female
Microsoft MVP/Windows Security 2003-2008
Proud Member of ASAP (Alliance of Security Analysis Professionals)

RJHere

join:2004-11-17

Thanks for the help on this problem.

I was stupid, I should have checked the hardware first.
The problem is that there is a bad block on the hard drive. As you stated at the top "No hiding infection there ". This made me think about the problem and look a little deeper, but I should have done this first.

I do very much appreciate the time you took with this problem. I will also take advantage of the suggestions for updating the java runtime.

Thanks again, problem fixed.
Forums » Up and Running » Security » Security Cleanup[Trojan] Zlog.Downloader.oid, Smithfraud.C, Virus Protect & etc »
« rogue spyware icon on taskbar  


Friday, 05-Dec 11:53:11 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 9 years online! © 1999-2008 dslreports.com.
page compression OFF
Most commented news this week
· [126] AT&T Metered Billing Trial Hits Second Market
· [102] AT&T Cutting 12,000 Jobs
· [97] UDP BitTorrent Will Destroy The Interwebs!
· [94] Exclusive Screens Of Comcast's New Bandwidth Meter
· [93] Scott Cleland: Google Using 21x The Bandwidth They Pay For
· [90] EFF Challenges Telecom Immunity
· [84] Firefox Extension Leads Amazon Customers To Pirated Alternatives
· [63] Apple: Who Believes Our Ads Anyway?
· [62] Comcast Tries To Slow Verizon's Philly Entry
· [62] Comcast To Offer Bandwidth Use Tracker In January
Most people now reading
· Level 80 PVP gear info? [World of Warcraft]
· [game] Crazy Game Fun Time!!! [Pub Games]
· Always leave the Windows Firewall on? [Security]
· Coalition Government Possible? [TekSavvy]
· [WotLK] Hit Rating Cap - Hunters [World of Warcraft]
· MLPPP on OpenWRT? [TekSavvy]
· WoTLK Heriocs [World of Warcraft]
· [VoicePulse] Need troubleshooting suggestions - call routing iss [VOIP Tech Chat]
· [ Professions] Northrend Herbalism and Mining Tracks [World of Warcraft]
· Security Cleanup - useless - according to Steve Gibson [Security]