We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

is PC Pitstop a con please, results shown

Options
2456

Comments

  • melmar_2
    melmar_2 Posts: 209 Forumite
    Hi,no where did that come from,
  • closed
    closed Posts: 10,886 Forumite
    edited 21 August 2010 at 10:55PM
    This is usually a sign of a rogue AV infection:

    http=127.0.0.1:5555

    that's a long log, what is your commit charge in task manager, performance, and how much ram installed, 512?

    %21BrDeyzw%21mk%7E$%28KGrHqIOKiQEu3LsPc+GBLyDQcLib%20w%7E%7E_35.JPG

    this one?
    !!
    > . !!!! ----> .
  • melmar_2
    melmar_2 Posts: 209 Forumite
    sorry what is http=127.0.0.1:5555 and how do i get rid please,by the way i was looking for explanation on driver updates on here when i found an old thread by yourself.How to speed up a slow PC,just reading it now,
    it is great wish i had seen it earlier,thanks
  • melmar_2
    melmar_2 Posts: 209 Forumite
    yes thats the picture,is it possible to get rid please and yes its 512 thanks
    Commit Charge is
    total 863016
    limit 1312076
    peak 1207980
  • closed
    closed Posts: 10,886 Forumite
    edited 21 August 2010 at 11:18PM
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyServer = http=127.0.0.1:5555
    R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O24 - Desktop Component 0: (no name) - http://email01.wanadoo.co.uk/webmail...&EMBEDDED=true
    O24 - Desktop Component 1: (no name) - http://www.spicyauctiontemplates.com/images/1110HB.jpg
    O24 - Desktop Component 2: (no name) - http://i.ebayimg.com/08/!BrDeyzw!mk~$(KGrHqIOKiQEu3LsPc+GBLyDQcLib w%7E%7E_35.JPG


    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

    tick these in hijackthis and fix

    I would suggest replacing spybot, mse, and superantispyware with avast and malwarebytes as you are low on ram for the programs running at startup, and run startuplite and accept all it's changes.

    Do you use binatone internet phone, messenger, quickbooks?
    !!
    > . !!!! ----> .
  • melmar_2
    melmar_2 Posts: 209 Forumite
    i have fixed those in hijack,
    i havent used quickbooks yet so that can go,i dont use binatone as much as i used to now so i can remove that messenger now and again
    and i will replace spyware with what you recommend,thanks
    what is startuplite,please do i just put in browser and find download,
    that picture is there,haunting me,lol,will it go when i restart
    and thank you for all of this
  • closed
    closed Posts: 10,886 Forumite
    edited 21 August 2010 at 11:33PM
    O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL



    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe"
    O4 - HKCU\..\Run: [BinatoneInternetPhone] C:\Program Files\Binatone Internet Phone\BinatoneInternetPhone.exe
    O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\martyn burke\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c

    O4 - HKLM\..\Run: [PC Pitstop Optimize Reminder] C:\Program Files\PCPitstop\Optimize3\Reminder-Optimize3.exe
    O4 - HKLM\..\RunOnce: [GrpConv] grpconv.exe -o

    O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
    fix these as well
    then
    run this http://www.malwarebytes.org/startuplite.php

    then reboot, and your pic should have gone.

    download these

    http://www.malwarebytes.org/mbam.php

    http://download.cnet.com/Avast-Free-Antivirus/3000-2239_4-10019223.html?part=dl-85737&subj=dl&!!!!!button

    uninstall superantispyware, mse, spybot, reboot and install avast, malwarebytes, register avast by right clicking on the icon near the clock, update malwarebytes, do a full scan.
    !!
    > . !!!! ----> .
  • melmar_2
    melmar_2 Posts: 209 Forumite
    ok thank you for everything,it said on pitstop that 3 drivers need updating is that relevant at all
  • closed
    closed Posts: 10,886 Forumite
    no leave the drivers, start by slimming your startup.
    !!
    > . !!!! ----> .
  • melmar_2
    melmar_2 Posts: 209 Forumite
    ok,thanks again
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 350.8K Banking & Borrowing
  • 253.1K Reduce Debt & Boost Income
  • 453.5K Spending & Discounts
  • 243.8K Work, Benefits & Business
  • 598.7K Mortgages, Homes & Bills
  • 176.8K Life & Family
  • 257.1K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.