My comp is corrupted

Status
Not open for further replies.

Del

New Member
(Not sure where this goes but here seemed as good a place as any)

I have a knack for killing or causeing suicide in computers. My 'current' one (it's been unused for about 6 months) is corrupted. Silly me didn't catch on when Avast! wouldn't turn on. Oh, and the cherry, iceing and cake on the platter is that I had just moved 5-10 years of floppy files to the computer, and erased the floppies. >.<* So yes, I'm and idiot and I need to learn my lesson... but first lets fix this pile of junk to at least the extent I can take my files off-- because I can't burn them to disk. How can a computer be junk you ask? It has 64mbs of RAM for one, for two my dailup is faster than it and this dial-up barely runs, and three the date on the RAM is 1998. @.@ So it's likely hard to find and buy what ever RAM it takes, and it doesn't have that much hard drive space.

Before you say 'buy a new one' realize I have way too many files (mostly junk but still...) to just reformat or junk the thing. If I do buy a new comp it's going to have a warrenty(buying used doesn't pay off with my tech murder record), and likely an Apple(I heard they have tech support and are almost invinsible). Once I get my files THEN I'll figure out if I'll upgrade or just buy.

Summery:
>I'm an idiot
>Tons of files, mostly junk but I don't know for sure, on the comp
>below minimun RAM for almost anything
>Dialup
>Corrupted
>old, bought used
>has CD burner, but I can't burn files untill corruption is gone
> I'm an idiot
>Computer is rarly used to prevent spreading of (what I assume is a) trogan.
>This is a shared comp
>PLEASE HELP ME!



Did I leave something out? (It's late, er... early.)
 
With a computer that old you may want to just buy an external USB hard drive enclosure, (they're cheap), put your hard drive in it. Then buy a new computer. You'll have your files on the USB hardrive,... you'll want to make sure your new computer is protected and then run some anti-virus/spyware scans on that USB hardrive.
 
Great news! I think this computer is in the beginning stages of corruption! ^_^!

I know that that computer(and this one) are old and bought used and all, but I really need a warrentee, GOOD tech support and preferably an Apple(If it's true they are more infection-resisant than PCs), but I'm not sure it I can truly afford a decent one.

If this computer and my computer have the same bug, Avast! virus cleaner doesn't catch it, but Avast! (and Norton) scan found a bunch of problems in c:\WINDOWS\Temporary Internet Files\Content.IE5
I deleted most, the rest (won't totally delete) is in the delete bin.

SpyBot seems (to me) a worthless program unless you want a long and fancy way too delete some of your cache.
 
I think that whatever took over my computer is also in the files and that's why they won't burn, is that possible? If that's the case is there a way to fix the files?

[I'll download the scanner, burn it here and load it on the 'condemed'(my) computer.]



EDIT: I tested the scanner on this computer, how would I paste the results into a post? Just screen caps or is there a better way?
Also, what do you guys think of 'hijack this'? It's suppost to tell you what starts up when you turn on your computer.
 
Last edited:
I think that whatever took over my computer is also in the files and that's why they won't burn, is that possible? If that's the case is there a way to fix the files?

[I'll download the scanner, burn it here and load it on the 'condemed'(my) computer.]



EDIT: I tested the scanner on this computer, how would I paste the results into a post? Just screen caps or is there a better way?
Also, what do you guys think of 'hijack this'? It's suppost to tell you what starts up when you turn on your computer.

You can cut and paste, or to save bandwidth, you can use FastStone Capture, capture the results and then host them on ImageShack. Make the pic clickable so we can see it well.
 
The results aren't listed in such a way I can highlight and copy. It's too lage a list to get in one screen capture... I guess I'll just work some paint magic and post only the link to the image. It should only take a few minutes.
 
This is just of the computer I'm using, not the one with the reall problems. (A 'practice' for the real thing, and this comp likely needs it.) Here's the first cunk of it.
GAA chunck (6 screen shats) was too big... @.@ Okay I've put them into 4 different files, and that's not the end of it. @.@ I'll just post these and see if your help shows me a general idea of what is bad and how to get rid of the bad things. I bet anything bad on here is also on the corrupted computer, just more of it.







 
Last edited:
Okay, boy do I have a lot of install files to bun to disk and load on (my)corrupted computer. Hijack, Xoft, Avast virus cleaner, an updated Avast... @.@


Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 3:19:55 AM, on 3/14/2007
Platform: Windows ME (Win9x 4.90.3000)
Boot mode: Normal

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCEVTMGR.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCSETMGR.EXE
C:\WINDOWS\SYSTEM\KB891711\KB891711.EXE
C:\WINDOWS\SYSTEM\KB918547\KB918547.EXE
C:\PROGRAM FILES\MICROSOFT GIF ANIMATOR\ASHSERV.EXE
C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE
C:\WINDOWS\SYSTEM\RPCSS.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCPD-LC\SYMLCSVC.EXE
C:\WINDOWS\SYSTEM\LEXBCES.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCAPP.EXE
C:\WINDOWS\SYSTEM\LEXPPS.EXE
C:\PROGRAM FILES\MICROSOFT GIF ANIMATOR\ASHWEBSV.EXE
C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE\OSA.EXE
C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE\FINDFAST.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\PROGRAM FILES\TRILLIAN\TRILLIAN.EXE
C:\WINDOWS\SYSTEM\RNAAPP.EXE
C:\WINDOWS\SYSTEM\TAPISRV.EXE
C:\PROGRAM FILES\ACCESSORIES\FIREFOX\FIREFOX.EXE
C:\PROGRAM FILES\XOFTSPYSE\XOFTSPY.EXE
C:\WINDOWS\SYSTEM\STIMON.EXE
C:\WINDOWS\DESKTOP\BEC'S\HIJACKTHIS_V2.EXE
C:\WINDOWS\SYSTEM\WBEM\WINMGMT.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wishtv.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wishtv.com/
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHELPER.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 6.0\READER\ACTIVEX\ACROIEHELPER.DLL
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [PCHealth] C:\WINDOWS\PCHealth\Support\PCHSchd.exe -s
O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\Run: [Lexmark X5100 Series] "C:\Program Files\Lexmark X5100 Series\lxbabmgr.exe"
O4 - HKLM\..\Run: [LexStart] lexstart.exe
O4 - HKLM\..\Run: [Symantec Core LC] C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe start
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [NAV CfgWiz] C:\Program Files\Common Files\Symantec Shared\CfgWiz.exe /GUID NAV /CMDLINE "REBOOT"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMON.EXE /Consumer
O4 - HKLM\..\Run: [avast! Web Scanner] C:\PROGRA~1\MICROS~2\ASHWEBSV.EXE
O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\StateMgr.exe
O4 - HKLM\..\RunServices: [ScriptBlocking] "C:\Program Files\Common Files\Symantec Shared\Script Blocking\SBServ.exe" -reg
O4 - HKLM\..\RunServices: [ccEvtMgr] "C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe"
O4 - HKLM\..\RunServices: [ccSetMgr] "C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe"
O4 - HKLM\..\RunServices: [KB891711] C:\WINDOWS\SYSTEM\KB891711\KB891711.EXE
O4 - HKLM\..\RunServices: [KB918547] C:\WINDOWS\SYSTEM\KB918547\KB918547.EXE
O4 - HKLM\..\RunServices: [avast!] C:\Program Files\Microsoft GIF Animator\ashServ.exe
O4 - HKCU\..\Run: [Weather] C:\PROGRAM FILES\AWS\WEATHERBUG\WEATHER.EXE 1
O4 - HKCU\..\RunServices: [Weather] C:\PROGRAM FILES\AWS\WEATHERBUG\WEATHER.EXE 1
O4 - HKUS\.DEFAULT\..\Run: [Weather] C:\PROGRAM FILES\AWS\WEATHERBUG\WEATHER.EXE 1 (User 'Default user')
O4 - .DEFAULT Startup: Office Startup.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE (User 'Default user')
O4 - .DEFAULT Startup: Microsoft Find Fast.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE (User 'Default user')
O4 - Startup: Office Startup.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
O4 - Startup: Microsoft Find Fast.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O8 - Extra context menu item: &Google Search - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmwordtrans.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmcache.html
O8 - Extra context menu item: Similar Pages - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsimilar.html
O8 - Extra context menu item: Backward Links - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmbacklinks.html
O8 - Extra context menu item: Translate Page into English - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmtrans.html
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSEN~1\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: MSN Messenger Service - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSEN~1\MSMSGS.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRAM FILES\JAVA\JRE1.5.0_09\BIN\SSV.DLL
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRAM FILES\JAVA\JRE1.5.0_09\BIN\SSV.DLL
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://wdownload.weatherbug.com/minibug/tricklers/30AWS/MiniBugTransporter.cab?
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\SYSTEM\BROWSEUI.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\SYSTEM\BROWSEUI.DLL

--
End of file - 6826 bytes
 
Last edited:
Wierd, MSN messanger... not sure why that would be on this computer unless the computer wasn't wiped properly before my parents bought it. Gif animatior hasn't-- shouldn't have been ran for a few months now, and that was on a burnt disk.
 
I posted the hijack log, and the first just over half of the Xoft, so now what?

What needs to be gone and what idoesn't need to bee there? I know that the computer I posted those for it's the main problem but by doing them I can start the prossess myself on the corupted computer and I know that I can't post the Xoft log untill I figure out how to do so without screen caps.
 
Gah, I hate it when computers get corrupt, you've got to re-install everything, well, depending on what is corrupt.
 
The probel is I can't just reformat, I use a 'stolen' version of XP, this computer isn't compatable with my ditiatal campera, I've misplaced the memory card and the idiot I am put at least 20 floppies of info on the problem computer then erased the floppies. @.@ T_T
 
If I were you I would Buy the XoftSpySE for $39 (comes with a Reg cleaner). Quarantine those files for a couple of days to make sure the PC is running fine. Then you can delete them.

I just had to do it myself. I know how you feel, I had 360+ objects!

PS...think about putting your files on an external hard drive
 
Last edited:
I would really prefer something free, Avast finds a few each check but can't do anything with them. A bunch from content.IE5 files have problems, but it's a hidden file that it hard to delte manually.

My parents have a flashdrive and my stuff is mostly Avast, Trillian, FireFox, Hosted pics, and the occasional bad attempt at an html page. I don't have the money for a decent flashdrive, and definatly not after fixing the 64mbs RAM. I burn to disk, and I was trying to but some files couldn't burn that that's when I stopped using my computer and my regular computer.
 
Kabu, I did the Xoft scan and posted a good portion of the results. Before I do a third scan wouldn't it be wise to go though at least on of the previous scans?
 
Status
Not open for further replies.
Back
Top