Author Topic: [Resolved] My Hijack this log. Thanks for help.  (Read 1996 times)

0 Members and 1 Guest are viewing this topic.

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 22701
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: [In Progress] My Hijack this log. Thanks for help.
« Reply #15 on: August 28, 2009, 05:02:26 PM »
Try disabling skype and then reboot and see if it happens. I don't know much about skype, but I suspect it is calling home to check for updates.

Are you satisfied with your startup times, or is there still something happening that concerns you? If you attach your event viewer files, I can check to see if there are any other problems with startup.

I need you to go to the administration tools in XP. They are in the Control Panel. Open the Admin tools, then open the event viewer. Over on the left hand side and click on System. Then up at the top click on Action and then click on Save Events As, type in system as the file name,  make sure file type EVT is selected, and then navigate so it will save the file to your desktop, then click save. Over on the left hand side and click on Application. Then up at the top click on Action and then click on Save Events As, type in application as the file name,  make sure file type EVT is selected, and then navigate so it will save the file to your desktop, then click save. Zip them both up into a single zip file, post them back here in your next reply as attachments.

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline Normandx

  • Bronze Member
  • Posts: 12
Re: [In Progress] My Hijack this log. Thanks for help.
« Reply #16 on: August 30, 2009, 03:11:58 AM »
Ah, I didn't notice we were onto page 2 of replies.

Here are my events.

I will be here til 0700 GMT 31 August, then away from this computer for a week, Back on 7 Sept

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 22701
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: [In Progress] My Hijack this log. Thanks for help.
« Reply #17 on: August 30, 2009, 09:45:46 AM »
go to the start button and then to all programs and then to accessories and then start a command prompt. Type in the following line and then hit enter. Let me know the results.

netstat -no | find "SYN"

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline Normandx

  • Bronze Member
  • Posts: 12
Re: [In Progress] My Hijack this log. Thanks for help.
« Reply #18 on: August 30, 2009, 11:47:34 AM »
I hope I have this right.

In the black window, it looked like this:

C:\Documents and Settings\NORMAN>netstat -no | find "SYN"

C:\Documents and Settings\NORMAN>

So it looks like nothing is happening.

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 22701
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: [In Progress] My Hijack this log. Thanks for help.
« Reply #19 on: August 30, 2009, 12:43:59 PM »
I didn't think it would. Your logs have very few errors, and almost no reoccurring errors or problems. There is one that you may be able to help with though. Download and install the User Profile Hive Cleanup Service from MS. Once its installed it will run as a service, and there is nothing you have to do with it.

Other than that you look good. Do you have any other questions or concerns?

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline Normandx

  • Bronze Member
  • Posts: 12
Re: [In Progress] My Hijack this log. Thanks for help.
« Reply #20 on: August 30, 2009, 12:46:36 PM »
For the moment no other questions.

I'll see how this runs over the next weeks when I get back, and then let you know if there are problems.

Many thanks once again.

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 22701
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: [In Progress] My Hijack this log. Thanks for help.
« Reply #21 on: August 30, 2009, 02:35:37 PM »
Now  there are something's you need to do to fully clean your system and keep it secure.

Cleaning out Temporary Files etc. There are several different products that you can use for this. You can go thru the Internet Options in the windows Control Panel. There are several programs that also do the job better than windows does it, in my opinion. There is System Security Suite, EasyCleaner, Ccleaner. Also sometimes other program sometimes do it as well as what you originally got it for like ZoneAlarm Security Suite. Just make sure to keep them updated and use them regularly.

Disable and Enable System Restore.
If you are using Windows Vista or XP, then I recommend you turn off System restore, and then turn it back on so that you will not be able to restore your problems to a clean computer.

Here are some good tutorials for that.

Windows XP System Restore Guide
Reboot
Re-enable system restore with instructions from tutorial above

Create a System Restore Point
Go to all programs, then to accessories, then to system tools, then to system restore. Check the box for create restore point (not select a restore point), then click next and follow the instructions.

Make your Internet Explorer more secure - This can be done by following these simple instructions: (unless you are using ZoneAlarm Security Suite or something similar, then you would secure the browser thru the firewall).

From within Internet Explorer click on the Tools menu and then click on Options.
Click once on the Security tab
        Click once on the Internet icon so it becomes highlighted.
        Click once on the Custom Level button.
                Change the Download signed ActiveX controls to Prompt
                Change the Download unsigned ActiveX controls to Disable
               Change the Initialize and script ActiveX controls not marked as safe to Disable
               Change the Installation of desktop items to Prompt
               Change the Launching programs and files in an IFRAME to Prompt
               Change the Navigate sub-frames across different domains to Prompt
               When all these settings have been made, click on the OK button.
               If it prompts you as to whether or not you want to save the settings, press the Yes button.
        Next press the Apply button and then the OK to exit the Internet Properties page.
Also see the following:  Securing Your Web Browser
Working with Internet Explorer 6 Security

Use a different browser other than  IE (most exploits are pointed towards IE). One of them is
Firefox.
It is also worth trying Thunderbird for controlling spam in your e-mail.


Always use an UPDATED anti-virus program Make sure you update this at least weekly, if not more often. This is one thing that may Ave you more than anything else.

Run malware scanners. Three free ones are Spybot Search and Destroy, and AdAware and Malwarebytes' Anti-Malware


 Always use a firewall.
Any firewall is better than none, and you should pick a firewall that you will use, as even the best firewall is worthless if you turn it off.
 
Learn how to use your firewall Only programs that need it should have access to the net. But these are specific to the firewall you use, so you will need to learn how. Several firewalls have support forums here. My page will help you with ZoneAlarm if that is what you choose. 


Never run two Antivirus programs or two Firewalls  at the same time. They can interfere with each other and cause problems. Some people swear that more protection is provided, but the reverse is true. They tend to argue amongst themselves and end up leaving holes. Now I have more than 1 AV installed on my computer, and I keep them up to date. I only run one at a time, but each program has weakness's, so I keep a backup in case my computer starts acting up.


 MOST IMPORTANT : Windows and IE, and whatever other software that you have that connects to the net, needs to be kept updated. The reason is, these programs connect to the net, and if there is an internal security problem, you have already told your firewall to allow the communication, and thus you will have allowed a hole. UPDATES are important. I suggest that you make sure that Windows Updates and the updates for your antivirus and antimalware programs are set for automatic updates.

Don't ever use P2P or filesharing software Even the safest P2P file sharing programs that do not contain bundled spyware, still expose you to risks because of the very nature of the P2P file sharing process. By default, most P2P file sharing programs are configured to automatically launch at startup. They are also configured to allow other P2P users on the same network open access to a shared directory on your computer. The reason for this is simple. File sharing relies on its members giving and gaining unfettered access to computers across the P2P network. However, this practice can make you vulnerable to data and identity theft. Even if you change those risky default settings to a safer configuration, the act of downloading files from an anonymous source greatly increases your exposure to infection. That is because the files you are downloading may actually contain a disguised threat. Many very malicious worms and trojans, such as the Storm Worm, target and spread across P2P files sharing networks because of their known vulnerabilities.

Before using any malware detection / removal software Check with Rogue/Suspect Spyware List and Rogue Applications List That way you will know if the program you are looking at is on the up and up. If you want to know how it stacks up against other programs check out SpywareWarrior

We have a good guide here at Spyware Hammer on how to prevent Malware in the Future. You might want to peruse this and follow the recommendations in there.
PLEASE READ IT AND FOLLOW THE RECOMMENDATIONS TO PROTECT YOURSELF.

Let us know if you have any more problems, either new or old.
Have a good time surfing the net, but stay safe.
If you have no more problems, let me know and I will mark this as resolved. Or if you have more questions, ask away, that is why I am here.




Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline Normandx

  • Bronze Member
  • Posts: 12
Re: [In Progress] My Hijack this log. Thanks for help.
« Reply #22 on: August 30, 2009, 03:08:19 PM »
Wow! I'll get through all this when I get back.
Lets treat it as resolved.
If I have something new I will come back again.

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 22701
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: [In Progress] My Hijack this log. Thanks for help.
« Reply #23 on: August 30, 2009, 03:26:37 PM »
OK. Have a good one!

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!