Tech Support Guy banner
Status
Not open for further replies.
1 - 20 of 20 Posts

·
Registered
Joined
·
32 Posts
Discussion Starter · #1 ·
Okay, I've done what people have asked and below I will post my new hijackthis log. I turned the resource meter on and, right now, with just hijackthis open and the Netcape browser window I'm using, my resources are listed as follows:

System: 58%
User: 58%
GDI: 74%

This is driving me crazy. Also, when I double clicked to open up my Netscape browser, another browser window opened that was encouraging me to download Hotbar (browser window took me to hotbar.com). Up until the last couple of days, I'd never had a problem with Netscape opening up the extra windows, just IE. HELP!!

Okay, enough whining, here's my most recent log:

Logfile of HijackThis v1.97.7
Scan saved at 9:49:11 AM, on 3/23/04
Platform: Windows 98 Gold (Win9x 4.10.1998)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\SYMTRAY.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCEVTMGR.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCSETMGR.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON UTILITIES\NPROTECT.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON CLEANSWEEP\CSINJECT.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON GOBACK\GBPOLL.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\RUNDLL32.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\SYSTEM\ATICWD32.EXE
C:\WINDOWS\SYSTEM\ATITASK.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCPD-LC\SYMLCSVC.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCAPP.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\PASSWORD MANAGER\ACCTMGR.EXE
C:\WINDOWS\SYSTEM\HPZTSB02.EXE
C:\PROGRAM FILES\ACCELERATION SOFTWARE\ANTI-VIRUS\DEFSCANGUI.EXE
C:\PROGRAM FILES\AIM\AIM.EXE
C:\PROGRAM FILES\MSWORKS\CALENDAR\WKCALREM.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON GOBACK\GBTRAY.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON CLEANSWEEP\CSINSM32.EXE
C:\PROGRAM FILES\SONY HANDHELD\HOTSYNC.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON CLEANSWEEP\Monwow.exe
C:\WINDOWS\DESKTOP\HIJACKTHIS.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.newsday.com/
N3 - Netscape 7: user_pref("browser.startup.homepage", "http://www.newsday.com/news/nationworld/wire/"); (C:\WINDOWS\Application Data\Mozilla\Profiles\default\zpct2oal.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CPROGRAM%20FILES%5CNETSCAPE%5CNETSCAPE%5Csearchplugins%5CSBWeb_02.src"); (C:\WINDOWS\Application Data\Mozilla\Profiles\default\zpct2oal.slt\prefs.js)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton SystemWorks\Norton Antivirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [ScanRegistry] c:\windows\scanregw.exe /autorun
O4 - HKLM\..\Run: [TaskMonitor] c:\windows\taskmon.exe
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\Run: [AtiCwd32] Aticwd32.exe
O4 - HKLM\..\Run: [AtiKey] Atitask.exe
O4 - HKLM\..\Run: [SoundFusion] RunDll32 cwcprops.cpl,CrystalControlWnd
O4 - HKLM\..\Run: [Symantec Core LC] C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe start
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [NPROTECT] c:\Program Files\Norton SystemWorks\Norton Utilities\Nprotect.exe
O4 - HKLM\..\Run: [AcctMgr] c:\Program Files\Norton SystemWorks\Password Manager\AcctMgr.exe /startup
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\SYSTEM\hpztsb02.exe
O4 - HKLM\..\Run: [WebScan] C:\PROGRAM FILES\ACCELERATION SOFTWARE\ANTI-VIRUS\DEFSCANGUI.EXE -k
O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [SymTray - Norton SystemWorks] c:\Program Files\Common Files\Symantec Shared\SymTray.exe "Norton SystemWorks"
O4 - HKLM\..\RunServices: [ScriptBlocking] "C:\Program Files\Common Files\Symantec Shared\Script Blocking\SBServ.exe" -reg
O4 - HKLM\..\RunServices: [ccEvtMgr] "c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe"
O4 - HKLM\..\RunServices: [ccSetMgr] "c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe"
O4 - HKLM\..\RunServices: [NPROTECT] c:\Program Files\Norton SystemWorks\Norton Utilities\Nprotect.exe
O4 - HKLM\..\RunServices: [CSINJECT.EXE] c:\Program Files\Norton SystemWorks\Norton CleanSweep\csinject.exe
O4 - HKLM\..\RunServices: [GoBack Polling Service] c:\Program Files\Norton SystemWorks\Norton GoBack\GBPoll.exe
O4 - HKCU\..\Run: [AIM] C:\PROGRAM FILES\AIM\aim.exe -cnetwait.odl
O4 - Startup: Microsoft Works Calendar Reminders.lnk = C:\Program Files\MSWorks\Calendar\WKCALREM.EXE
O4 - Startup: Norton GoBack.lnk = C:\Program Files\Norton SystemWorks\Norton GoBack\GBTray.exe
O4 - Startup: CleanSweep Smart Sweep-Internet Sweep.lnk = C:\Program Files\Norton SystemWorks\Norton CleanSweep\csinsm32.exe
O4 - Startup: HotSync Manager.lnk = C:\Program Files\Sony Handheld\HOTSYNC.EXE
O4 - Global Startup: stamp.dat
O8 - Extra context menu item: &Google Search - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsearch.html
O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmcache.html
O8 - Extra context menu item: Si&milar Pages - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsimilar.html
O8 - Extra context menu item: Backward &Links - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmbacklinks.html
O8 - Extra context menu item: Translate into English - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmtrans.html
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O9 - Extra button: AIM (HKLM)
O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?37933.4333912037
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {0000000A-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/download/d/4/4/d446e8a9-3a86-4b59-bb19-f5bd11b40367/wmavax.CAB
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 - DPF: {70647AB5-18FD-4142-82B0-5852478DD0D4} (Vividence Connector Launcher) - http://task.vividence.com/download/ConnectorLauncher.cab
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
 

·
Trusted Advisor
Joined
·
85,517 Posts
Cammianne:

You've got way too many programs loading during startup and running in the background, which is what's sapping system resources and bogging down your computer's performance. Click the link below and read the article on MSCONFIG.

As soon as you start up your computer and before you open any programs, right-click My Computer, then click Properties - Performance(tab). What's the percentage of system resources showing? If it's noticably less than 90%, your startup load is sapping system resources before you even start opening programs.

I'll let someone else deal with your HijackThis log.
 

·
Registered
Joined
·
32 Posts
Discussion Starter · #6 ·
I've deleted everything everyone has suggested, but it still doesn't appear to be helping. After the latest deletions and restarting my computer, it now says my system resources are at 68%! How can I be going lower, LOL, I've gotten rid of stuff (and yes, that was before opening any windows. With just this window open I'm at 64% now).

Anyway, someone said I needed to get rid of more stuff at startup, but I'm not sure what. I know AIM and hotsync aren't required, but I'd rather not mess with dh's hotsync (plus, we've had it on here for about 3 years and it's never caused a problem before). What else can I get rid of??? :confused:
 

·
Registered
Joined
·
32 Posts
Discussion Starter · #7 ·
Also, after looking at my hijackthis log, someone suggested to get rid of the 04-Global startup: stamp.dat entry. It will just not go away. When I try, it says: Unable to delete. The file may be in use. Use a process killer like ProcView to shutdown the program and run HiJackThis again to delete the file.

Any suggestions?

Cammi
 

·
Retired Moderator
Joined
·
72,109 Posts
First thing to do is move hijackthis into a folder, don't run it from your desktop, it makes backup files. Make a folder on your hard drive, like c:\hjt and move hijackthis.exe into that folder.

Run HJT again and put a check in this item:

O4 - Global Startup: stamp.dat

Close all applications and browser windows before you click "fix checked".
 

·
Trusted Advisor
Joined
·
85,517 Posts
Cammianne:

Write down everything listed in the leftmost column alongside the square boxes in the MSCONFIG startup tab, then post the list here so I can look at it. Make sure to post them exactly as they are spelled and do not spell them incorrectly. Other than ScanRegistry, SystemTray, your antivirus program, and your firewall program(if you have one), very little else needs to remain checked.
 

·
Registered
Joined
·
32 Posts
Discussion Starter · #10 ·
Okay, here's the list:

ScanRegistry
TaskMonitor
SystemTray
LoadPowerProfile
AtiCwd32
AtiKey
SoundFusion
Symantec Core LC
ccApp
NPROTECT
AcctMgr
HPDJ Taskbar Utility
LoadPowerProfile
Scheduling Agent
SymTray - Norton SystemWorks
Script Blocking
ccEvtMgr
ccSetMgr
NPROTECT
CSINJECT.EXE
GoBack Polling Service
stamp
Microsoft Works Calendar Reminders
Norton GoBack Tray Icon
CleanSweep Smart Sweep-Internet Sweep
HotSync Manager




Cammi
 

·
Retired Moderator
Joined
·
72,109 Posts
Boot to Safe Mode and run HijackThis, try to fix that stamp.dat entry. If it still won't let you, try to rename the Stamp.dat file while in Safe Mode to Stamp.bak then try to have HijackThis fix it again.
 

·
Trusted Advisor
Joined
·
85,517 Posts
Cammianne:

I've done some research on these startup programs and this is what I recommend you do. If anyone else has any suggestions as to whether any of these need to be checked or unchecked, I'm sure that they'll respond. Make sure to reboot after making the changes. You'll be prompted to do it anyway.

-----------------------------------------------------------------------------------
ScanRegistry (Leave checked)

TaskMonitor (Uncheck)

SystemTray (Leave checked)

LoadPowerProfile (Leave checked, only if you're using the advanced power management options, such as standby, suspend, hibernate, etc.. Personally, your computer will run better with the APM options disabled. If you decide to do it, you can uncheck both LoadPowerProfile listings)

AtiCwd32 (Uncheck, unless you're using the "TV out" function of the video card)

AtiKey (Uncheck)

SoundFusion (Leave checked)

Symantec Core LC (Leave checked)

ccApp (Leave checked)

NPROTECT (Leave checked)

AcctMgr (Leave checked)

HPDJ Taskbar Utility (Leave checked)

LoadPowerProfile (Same as above)

Scheduling Agent (Leave checked, only if you're using Task Scheduler for scheduling maintenance)

SymTray - Norton SystemWorks (Leave checked)

Script Blocking (Leave checked)

ccEvtMgr (Leave checked)

ccSetMgr (Leave checked)

NPROTECT (Same as above)

CSINJECT.EXE (Leave checked)

GoBack Polling Service (Leave checked)

stamp (Leave checked. Unable to find any data on it)

Microsoft Works Calendar Reminders (Uncheck, unless you're using this function)

Norton GoBack Tray Icon (Leave checked. Unable to find any data on it)

CleanSweep Smart Sweep-Internet Sweep (Uncheck)

HotSync Manager (Uncheck)
-----------------------------------------------------------------------------------

Good luck!
 

·
Registered
Joined
·
32 Posts
Discussion Starter · #14 ·
Okay, here's my newest updated hijackthis log after unchecking the above, running spybot 2 or 3 more times (I had one thing that even though I'd remove it on spybot, when I'd rerun spybot it was there again. I finally got rid of it after deleting it from the registry), and now after I do the reboot, I'm at either 79 or 80% system resources. Any more suggestions??? I'll do anything at this point, LOL.

Cammi

Logfile of HijackThis v1.97.7
Scan saved at 10:47:52 AM, on 3/24/04
Platform: Windows 98 Gold (Win9x 4.10.1998)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\SYMTRAY.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCEVTMGR.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCSETMGR.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON UTILITIES\NPROTECT.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON CLEANSWEEP\CSINJECT.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON GOBACK\GBPOLL.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\RUNDLL32.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCPD-LC\SYMLCSVC.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCAPP.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\PASSWORD MANAGER\ACCTMGR.EXE
C:\WINDOWS\SYSTEM\HPZTSB02.EXE
C:\WINDOWS\WAST.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON GOBACK\GBTRAY.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\PROGRAM FILES\NETSCAPE\NETSCAPE\NETSCP.EXE
C:\WINDOWS\DESKTOP\HIJACKTHIS.EXE

N3 - Netscape 7: user_pref("browser.startup.homepage", "http://www.newsday.com/news/nationworld/wire/"); (C:\WINDOWS\Application Data\Mozilla\Profiles\default\zpct2oal.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CPROGRAM%20FILES%5CNETSCAPE%5CNETSCAPE%5Csearchplugins%5CSBWeb_02.src"); (C:\WINDOWS\Application Data\Mozilla\Profiles\default\zpct2oal.slt\prefs.js)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton SystemWorks\Norton Antivirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [ScanRegistry] c:\windows\scanregw.exe /autorun
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [SoundFusion] RunDll32 cwcprops.cpl,CrystalControlWnd
O4 - HKLM\..\Run: [Symantec Core LC] C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe start
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [NPROTECT] c:\Program Files\Norton SystemWorks\Norton Utilities\Nprotect.exe
O4 - HKLM\..\Run: [AcctMgr] c:\Program Files\Norton SystemWorks\Password Manager\AcctMgr.exe /startup
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\SYSTEM\hpztsb02.exe
O4 - HKLM\..\Run: [WAST] C:\WINDOWS\WAST
O4 - HKLM\..\RunServices: [SymTray - Norton SystemWorks] c:\Program Files\Common Files\Symantec Shared\SymTray.exe "Norton SystemWorks"
O4 - HKLM\..\RunServices: [ScriptBlocking] "C:\Program Files\Common Files\Symantec Shared\Script Blocking\SBServ.exe" -reg
O4 - HKLM\..\RunServices: [ccEvtMgr] "c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe"
O4 - HKLM\..\RunServices: [ccSetMgr] "c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe"
O4 - HKLM\..\RunServices: [NPROTECT] c:\Program Files\Norton SystemWorks\Norton Utilities\Nprotect.exe
O4 - HKLM\..\RunServices: [CSINJECT.EXE] c:\Program Files\Norton SystemWorks\Norton CleanSweep\csinject.exe
O4 - HKLM\..\RunServices: [GoBack Polling Service] c:\Program Files\Norton SystemWorks\Norton GoBack\GBPoll.exe
O4 - Startup: Norton GoBack.lnk = C:\Program Files\Norton SystemWorks\Norton GoBack\GBTray.exe
O8 - Extra context menu item: &Google Search - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsearch.html
O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmcache.html
O8 - Extra context menu item: Si&milar Pages - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsimilar.html
O8 - Extra context menu item: Backward &Links - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmbacklinks.html
O8 - Extra context menu item: Translate into English - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmtrans.html
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?37933.4333912037
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {0000000A-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/download/d/4/4/d446e8a9-3a86-4b59-bb19-f5bd11b40367/wmavax.CAB
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 - DPF: {70647AB5-18FD-4142-82B0-5852478DD0D4} (Vividence Connector Launcher) - http://task.vividence.com/download/ConnectorLauncher.cab
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
 

·
Registered
Joined
·
32 Posts
Discussion Starter · #15 ·
Ugh! I haven't received a reply from my last post, but I just needed to add this:

I just checked and right now I only have 36% system resources!!! That is with just my Netscape browser open and my Netscape email. I know the system's going to lock up any minute now, preferably after I post this message! Any ideas????

Cammi
 

·
Registered
Joined
·
32 Posts
Discussion Starter · #17 ·
UGH! Nope, I have no idea what it is. This is really driving me crazy. Usually, when something goes wrong, it's always been a relatively quick fix. This time, it seems like no matter what I do, it still doesn't seem to work. I've tried using different browsers, etc., and nothing's seeming to work. Right now, with just Netscape and my mail open, I'm at 66%.

Cammi
 

·
Retired Moderator
Joined
·
72,109 Posts
Go here and submit that for checking. See what it comes back with.

The Ancient Art of War at Sea, do you have this installed? If so that might be what it is, however I wouldn't expect to see it in the Windows folder.
 

·
Registered
Joined
·
32 Posts
Discussion Starter · #19 ·
YIKES!!! It came back with the following:

Current object: Wast.exe
Wast.exe Infected: TrojanDownloader.Win32.VB.ah
Wast.exe Infected: TrojanDownloader.Win32.VB.ah

Statistics:
Known viruses: 84633 Updated: 25.03.2004
File size (Kb): 68 Scan time: 00:00:01
Speed (Kb/sec): 69 Virus bodies: 2
Archives: 0 Packed: 0
Folders: 0 Files: 1
Suspicious: 0 Warnings: 0


Now what do I do??????????????

Cammi
 
1 - 20 of 20 Posts
Status
Not open for further replies.
Top