Help - Search - Members - Calendar
Full Version: Registry Damaged + Computer Slow
Gladiator Security Forum > Malware Help Forum > HELP! Think you are Infected?
ohman123
Hi
i apologize in advance that my English is not good OMG.gif

===========================================================================
The two paragraph below is the description of the problems & what events had happened ( can be ignored maybe? )

I just reinstalled my computer after a blue screen is happened
after i reinstall ( chinese version ) windowsXP home edition
computer speed become very slow ( extremely slow .. only on internet page... when i scroll down... it takes 1.5 sec )
many message is sent to my computer saying that my Registry is Damaged
with many different website telling me to install spyware or ad-ware etc to fix my computer ( which is $$ needed )

so what's the problem... crying.gif
i installed many different tools to fix the problem (none is working after fixing)
even though i reinstall again... it is not working very well...
===========================================================================

so am i supposed to post this ? ( i am also new in computer crying.gif )

Logfile of HijackThis v1.99.1
Scan saved at 16:11:29, on 10/4/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpSvc.exe
C:\Program Files\unicode\bin\Sleipnir.exe
C:\Program Files\HJT\HijackThis\HijackThis.exe

R3 - Default URLSearchHook is missing
O3 - Toolbar: 收音機(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx

** 收音機 <- is chinese meaning radio **

10 thousand of thank you ~~ please help me ^^
Bobbi Flekman
Hi ohman123,

QUOTE
i apologize in advance that my English is not good OMG.gif
Doesn't matter. If I don't understand I'll just ask you to explain again. ;)

From what I read you have reinstalled Windows. When does the Registry is damaged message come up? If that is just about when it is installed, then I have an idea that your hard disc may be dying.

I also see that you are seriously behind in updates, which is logical when you just reinstalled Windows. Please reinstall again, and before going onto the Internet get all the possible updates you can get from Microsoft because there are many, many open security leaks in this Windows.

Also when you are doing that, note when the Registry is damaged message comes up...
ohman123
Hi Bobbi Flekman,

thank you very much for your help crying.gif

i remember that the registry damage message come out about 5 minutes after i reinstall the Windows

but before these registry damage message popup, when i browse any website and scroll the page

will become extremely slow... ( Speed : internet is ok, installation of programs is ok, opening files, pictures is ok , restart is ok )

so overall i found out that it only slow down when i go on the internet site and scroll the page down or up
( but i have not open any 3D game yet )

and the computer will automatically restart ( usually after i turn on the computer for longer than 30mins )

now i am in save mode ( the restart problem is not happening in save mode > < )

if the hard dis is dying , ( when i reinstall i need to do it twice, first time it said failed - some file from the dis is damaged, second time will be fine )

what should i do crying.gif do i reinstall again ?

======================================================================================
hope the log may help > <

Logfile of HijackThis v1.99.1
Scan saved at 8:42:11, on 11/4/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\unicode\bin\Sleipnir.exe
C:\Program Files\HJT\HijackThis\HijackThis.exe

R3 - Default URLSearchHook is missing
O4 - HKCU\..\RunOnce: [DAEMON Tools 4.03 Setup] "C:\Documents and Settings\Administrator.CHING-RRCH7ADKI\桌面\Daemon403\32位元版本\daemon403-x86.exe"

and thank you for your time, you are very nice ahah.gif
Bobbi Flekman
Yep, you'll have to reinstall once again. And once it is installed, first update Windows up until the point that there are no more updates, and than get a firewall. When Windows is installed it has lots and lots of open security holes, which the updates will close up. The firewall will check in- and outgoing traffic for you. This is considered the first defense against attacks and infections.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2009 Invision Power Services, Inc.