Posted 24 January 2010 - 11:42 AM
hi everyone. I was given a friend's computer and have been trying to fix it all week, and have been unsuccessful. It's a Dell Inspiron 600m on Windows XP, Service Pack 3 with all the latest windows updates. It had AVG 8 free on it, then my friend installed Paretologic virus scanner on top of AVG 8. He also installed Malwarebytes. Then he gave it to me. I ran the virus scanner at security.symantec.com and that found nothing. I uninstalled the paretologic software. I tried to upgrade AVG free 8 to AVG free 9 and the install process froze, so I uninstalled both. (not sure if the uninstall for any of the virus software actually worked successfully, even though I did not get any errors.) I then installed the latest Kaspersky and it found Rootkit.Win32.TDSS.d so in my haste and not reading enough before running, I downloaded and ran ComboFix. It got to stage 32 and then froze. I eventually canceled it, reset the computer, and uninstalled it using combofix /uninstall. It looks like it did quarantine one file though, but I forget the name, it was a .sys file. I then ran a full scan with Kaspersky and that did not show any viruses. I also then ran a full scan of Malwarebytes and that found some cookies that I deleted. I thought I was in the clear, but the following issues still occur:
When I open any web browser, (IE, Firefox, and Chrome are installed on the machine) it will work fine for about a minute and then no browser can download anything and just waits when I click on any link or try to go to any page. If i restart the computer, the same thing happens. The network itself seems to work fine still as I can ping and use tracert to places like www.yahoo.com just fine. I uninstalled Chrome completey and uninstalled and re-installed Firefoxl. I have also run the command lines to reset the winsock and ip stack as found on other forums, all to no avail.
Since having this problem, I have also run super anti-spyware in safe mode and xdelbox, both of which have not seemed to find anything.
I'm not sure what to do next, but I'm all ears if anyone is willing to help.
any help is appreciated.