Slow Computer - Hijak Log Attached
Jul 3, 2005
My computer is running very slowly, and things like WinXP do not automatically update. I ran a trojan program, as well as Norton Antivirus, and Spy Sweeper. Can someone here please review this log Logfile of HijackThis v1.99.1 Scan saved at 4:29:52 PM, on 7/3/2005
Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2800.1106)Running processes:
C:WINDOWSSystem32smss.exe C:WINDOWSsystem32csrss.exe C:WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe C:WINDOWSsystem32lsass.exe C:WINDOWSsystem32svchost.exe C:WINDOWSsystem32svchost.exe C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe C:WINDOWSSystem32svchost.exe C:WINDOWSsystem32spoolsv.exe C:PROGRA~1COMMON~1AOLACSacsd.exe
C:Program FilesSymantec_Client_SecuritySymantec AntiVirusDefWatch.exe C:WINDOWSSystem32gearsec.exe C:Program FilesSymantec_Client_SecuritySymantec AntiVirusRtvscan.exe C:Program FilesPhotodexProShowGoldScsiAccess.exe C:WINDOWSSystem32svchost.exe
C:Program FilesWebrootSpy SweeperWRSSSDK.exe C:WINDOWSSystem32wdfmgr.exe C:WINDOWSwanmpsvc.exe C:WINDOWSSystem32MsPMSPSv.exe C:windowssystemhpsysdrv.exe C:HPKBDKBD.EXE C:WINDOWSSystem32VTTimer.exe C:PROGRA~1SYMANT~1SYMANT~1vptray.exe C:Program FilesMultimedia Card Readershwicon2k.exe C:Program FilesJavaj2re1.4.2_06injusched.exe C:WINDOWSLTMSG.exe C:WINDOWSSystem32 undll32.exe C:WINDOWSSystem32wuauclt.exe C:Program FilesWebrootSpy SweeperSpySweeper.exe C:WINDOWSexplorer.exe C:Documents and SettingsOwnerDesktopNew FolderHijackThis.exe R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://qus10.hpwis.com/
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://srch-qus10.hpwis.com/ R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.yahoo.com/ R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://qus10.hpwis.com/ R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://srch-qus10.hpwis.com/
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://srch-qus10.hpwis.com R1 -HKCUSoftware MicrosoftWindows CurrentVersionInternet Settings,ProxyOverride = localhost O1 - Hosts: 64.91.255.87 www.dcsresearch.com O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesAdobeAcrobat 6.0ReaderActiveXAcroIEHelper.dll O2 - BHO: (no name) -{53707962-6F74-2D53-2644-206D7942484F} - C:PROGRA~1SPYBOT~1SDHelper.dll O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file) O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:program filesgooglegoogletoolbar1.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file) O3 - Toolbar: PopUpCop - {DB43E4E6-FF8A-4018-8C8E-F68587A44A73} - C:PROGRA~1PopUpCopPopUpCop.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:program filesgooglegoogletoolbar1.dll
O4 - HKLM..Run: [hpsysdrv] c:windowssystemhpsysdrv.exe O4 - HKLM..Run: [KBD] C:HPKBDKBD.EXE O4 - HKLM..Run: [Recguard] C:WINDOWSSMINSTRECGUARD.EXE O4 - HKLM..Run: [PS2] C:WINDOWSsystem32ps2.exe O4 - HKLM..Run: [VTTimer] VTTimer.exe O4 - HKLM..Run: [vptray] C:PROGRA~1SYMANT~1SYMANT~1vptray.exe O4 - HKLM..Run: [Sunkist2k] C:Program FilesMultimedia Card Readershwicon2k.exe O4 - HKLM..Run: [SunJavaUpdateSched] C:Program FilesJavaj2re1.4.2_06injusched.exe O4 - HKLM..Run: [LTMSG] LTMSG.exe 7 O4 - HKLM..Run: [New.net Startup] rundll32 C:PROGRA~1NEWDOT~1NEWDOT~1.DLL,NewDotNetStartup -s O4 - HKLM..Run: [SpySweeper] "C:Program FilesWebrootSpy SweeperSpySweeper.exe" /startintray O4 - Global Startup: Adobe Gamma Loader.lnk = C:Program FilesCommon FilesAdobeCalibrationAdobe Gamma Loader.exe O4 - Global Startup: RealSecure(r) Desktop Protector.lnk = ? O8 - Extra context menu item: &AIM Search - res://C:Program FilesAIM ToolbarAIMBar.dll/aimsearch.htm O8 - Extra context menu item: &Google Search - res://c:program filesgoogleGoogleToolbar1.dll/cmsearch.html O8 - Extra context menu item: Backward Links - res://c:program filesgoogleGoogleToolbar1.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:program filesgoogleGoogleToolbar1.dll/cmcache.html O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:PROGRA~1MICROS~4OFFICE11EXCEL.EXE/3000 O8 - Extra context menu item: Open Image in New Window - res://C:Program FilesPopUpCoppopupcop.dll/imagenew O8 - Extra context menu item: Similar Pages - res://c:program filesgoogleGoogleToolbar1.dll/cmsimilar.html O8 - Extra context menu item: Translate into English - res://c:program filesgoogleGoogleToolbar1.dll/cmtrans.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavaj2re1.4.2_06in pjpi142_06.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavaj2re1.4.2_06in pjpi142_06.dll O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:Program FilesAIMaim.exe O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:Program FilesPartyPokerPartyPoker.exe (file missing) O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:Program FilesPartyPokerPartyPoker.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:Program FilesAWSWeatherBugWeather.exe (file missing) (HKCU) O10 - Hijacked Internet access by New.Net O15 - Trusted Zone: *.musicmatch.com
O15 - Trusted Zone: *.musicmatch.com (HKLM) O16 - DPF: {1D0D9077-3798-49BB-9058-393499174D5D} - file://c:counter.cab O16 - DPF: {5D9E4B6D-CD17-4D85-99D4-6A52B394EC3B} (WSDownloader Control) - http://www.webshots.com/samplers/WSDownloader.ocx O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.co...?1093219557375 O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.amazon.ofoto.com/download...1/axofupld.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2...ll/xscan53.cab O16 - DPF: {9FC5238F-12C4-454F-B1B5-74599A21DE47} (Webshots Photo Uploader) - http://community.webshots.com/html/WSPhotoUploader.CAB O16 - DPF: {E93A6FCA-C052-45DF-AC9B-B729066092F8} (Util Class) - https://isupport4.hp.com/motivedocs/...er/MotUtil.cab O20 - Winlogon Notify: igfxcui - C:WINDOWSSYSTEM32igfxsrvc.dll O20 - Winlogon Notify: NavLogon - C:WINDOWSSystem32NavLogon.dll O23 - Service: Adobe LM Service - Unknown owner - C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:PROGRA~1COMMON~1AOLACSacsd.exe O23 - Service: BlackICE - Unknown owner - C:Program FilesNetwork ICEBlackICElackd.exe (file missing) O23 - Service: DefWatch - Symantec Corporation - C:Program FilesSymantec_Client_SecuritySymantec AntiVirusDefWatch.exe
O23 - Service: Gear Security Service (GEARSecurity) - GEAR Software - C:WINDOWSSystem32gearsec.exe O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:Program FilesiPodiniPodService.exe O23 - Service: Symantec AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - C:Program FilesSymantec_Client_SecuritySymantec AntiVirusRtvscan.exe O23 - Service: RapApp - Unknown owner - C:Program FilesNetwork ICEBlackICERapApp.exe (file missing) O23 - Service: ScsiAccess - Unknown owner - C:Program FilesPhotodexProShowGoldScsiAccess.exe O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:Program FilesWebrootSpy SweeperWRSSSDK.exe O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:Program FilesTuneUp Utilities 2004WinStylerThemeSvc.exe O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:WINDOWSwanmpsvc.exe
View 9 Replies
ADVERTISEMENT
Aug 4, 2007
I've been trying with little success to get my mum's computer to run smoother. She has a Compaq Presrio 2100 running Windows XP-Home with Service Pack 2. Celeron 2.40 GHz - 448 MB RAM 37.2 Gig (using 11.9 - remaining 25.3) She is running Norton (argh) and I have put this machine through several scans for malware, adware and viruses and have found absolutely nothing. I have defragged, Dr. Watsoned, ran the Windows Error Checking Tool, and inflicted several other Windows tools on this poor machine, but I am unable to get the dang thing to speed up at start-up and shut-down. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 1:38:55 PM, on 8/4/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16473) Boot mode: Normal Runningprocesses: C:WINDOWSS ystem32smss.exe C :WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe C:WINDOWSsystem32lsass.exe C:WINDOWSsystem32svchost.exe C:Program FilesWindows DefenderMsMpEng.exe C:WINDOWSSystem32svchost.exe C:WINDOWSExplorer.EXE C:Program FilesCommon FilesSymantec SharedccSvcHst.exe C:Program Files Common FilesSymantec SharedAppCoreAppSvc32.exe C:WINDOWSsystem32spoolsv.exe C:ProgramFiles SymantecLiveUpdateALUSchedulerSvc.exe C:Program FilesCommon FilesSymantec SharedccSvcHst.exe C:Program FilesCisco SystemsVPN Clientcvpnd.exe C:WINDOWSsystem32HPConfig.exe C:Program FilesHPQNotebook UtilitiesHPWirelessMgr.exe C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32carpserv.exe C:Program FilesSynapticsSynTPSynTPLpr.exe C:Program FilesSynapticsSynTPSynTPEnh.exe C:Program FilesCommon FilesSymantec SharedccApp.exe C:Program FilesWindows DefenderMSASCui.exe C:Program FilesJavajre1.6.0_02injusched.exe C:WINDOWS system32ctfmon.exe C:Program FilesLinksysWireless-G Notebook AdapterOdHost.exe C:Program FilesLinksysWireless-G Notebook Adapter WPC54Cfg.exe C:Program FilesInternet Exploreriexplore.exe C:Program FilesInternet Exploreriexplore.exe C:Spyware ToolsHiJackThis.exe R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://channels.aimtoday.com/search/aimtoolbar.jspR1- HKLMSoftware MicrosoftInternet ExplorerMain, Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,AutoConfigURL = http://wpad/wpad.dat
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:Program FilesMicrosoft MoneySystemmnyside.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:SPYWAR~1SPYBOT~1SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-6EB-D4DAF1D92D43} - C:Program FilesJavajre1.6.0_02inssv.dll O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
O4 - HKLM..Run: [CARPService] carpserv.exe O4 - HKLM..Run: [Cpqset] C:Program FilesHPQDefault Settingscpqset.exe O4 - HKLM..Run: [ATIPTA] C:Program FilesATI TechnologiesATI Control Panelatiptaxx.exe O4 - HKLM..Run: [srmclean] C:CpqsScomsrmclean.exe O4 - HKLM..Run: [Display Settings] C:Program FilesHPQNotebook Utilitieshptasks.exe /s O4 - HKLM..Run: [SynTPLpr] C:Program FilesS ynapticsSynTPSynTPLpr.exeO4 - HKLM..Run: [SynTPEnh] C:Program FilesSynapticsSynTPSynTPEnh.exe O4 - HKLM..Run: [osCheck] "C:Program FilesNorton AntiVirusosCheck.exe" O4 - HKLM..Run: [ccApp] C:Program FilesCommon FilesSymantec SharedccApp.exe O4 - HKLM..Run: [Windows Defender] "C:Program FilesWindows DefenderMSASCui.exe" -hide O4 - HKLM..Run: [SunJavaUpdateSched] "C:Program FilesJavajre1.6.0_02injusched.exe" O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe O4 - Global Startup: Cisco Systems VPN Client.lnk = C:Program FilesCisco SystemsVPN Clientvpngui.exe O4 - Global Startup: Wireless-G Notebook Adapter Utility.lnk = C:Program FilesLinksysWireless-G Notebook AdapterStartup.exe O8 - Extra context menu item: &AIM Search - res://C:Program FilesAIM ToolbarAIMBar.dll/aimsearch.htm
O14 - IERESET.INF: START_PAGE_URL=http://qus8l.hpwis.com O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {200B3EE9-7242-4EFD-B1E4-D97EE825BA53} (VerifyGMN Class) - http://h20270.www2.hp.com/ediags/gmn...taller_gmn.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/reso...an8/oscan8.cab O16 - DPF: {9B17FE0E-51F2-4692-8B32-8EFB805FC0E7} (HPObjectInstaller Class) - http://h30155.www3.hp.com/ediags/dd/...dsolutions.cab O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://download.games.yahoo.com/game...ploader_v6.cab O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:Program FilesSymantecLiveUpdateALUSchedulerSvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccSvcHst.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccSvcHst.exe O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccSvcHst.exe O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:Program FilesCisco SystemsVPN Clientcvpnd.exe O23 - Service: HP Configuration Interface Service (HPConfig) - Hewlett-Packard - C:WINDOWSsystem32HPConfig.exe O23 - Service: HPWirelessMgr - Hewlett-Packard Co. - C:Program FilesHPQNotebook UtilitiesHPWirelessMgr.exe
O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:Program FilesNorton AntiVirusisPwdSvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:PROGRA~1SymantecLIVEUP~1LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccSvcHst.exe O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedPIF{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}PIFSvc.exe O23 - Service: NICSer_WPC54G - Unknown owner - C:Program FilesLinksysWireless-G Notebook AdapterNICServ.exe O23 - Service: Pml Driver - HP - C:WINDOWSsystem32HPHipm09.exe O23 - Service: Pml Driver HPZ12 - HP - C:WINDOWSSystem32HPZipm12.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedAppCoreAppSvc32.exe End of file - 6659 bytes
View 10 Replies
View Related
Oct 13, 2005
what I'm thinking is that I'm just going to have to pay & get this pc cleaned because after I go thru all the steps to correct it.later it starts freezing and stuff sooo bad that I always have to reset it like you do when you first by the pc because it won't let me estore pc using restore systems. So, here is my hijack this log. Logfile of HijackThis v1.99.1 Scan saved at 11:49:15 AM, on 10/13/2005
Platform: Windows XP (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 (6.00.2600.0000) Running processes:C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe C:WINDOWSsystem32lsass.exe C:WINDOWSsystem32svchost.exe C:WINDOWSSystem32svchost.exe C:WINDOWSExplorer.EXE C:WINDOWSsystem32spoolsv.exe C:windowssystemhpsysdrv.exe C:Program FilesHewlett-PackardDigital ImagingUnloadhpqcmon.exe C:Program FilesVERITAS SoftwareUpdate Managersgtray.exe C:WINDOWSsystem32dla fswctrl.exe
C:WINDOWSSystem32igfxtray.exe C:WINDOWSSystem32hkcmd.exe C:WINDOWSsystem32ps2.exe C:WINDOWSetbpokapoka75.exe C:WINDOWSSystem32w?auclt.exe
C:Program Filesapsiwtta.exe C:Program Fileshp center137903ProgramBackWeb-137903.exe c:Program FilesNorton AntiVirus avapsvc.exe
C:Program FilesInternet Exploreriexplore.exe C:Program Filesewidosecurity suiteSecuritySuite.exe C:Program FilesInternet Exploreriexplore.exe C:Program FilesHijackThisHijackThis.exe R1 - HKCUSoftwareMicrosoftInternet Explorer,SearchURL =http://www.24-7searching-and-more.com/sp2.php R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://us6.hpwis.com/
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://srch-us6.hpwis.com/ R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://www.24-7searching-and-more.com/sp2.php R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://www.24-7searching-and-more.com/sp2.php R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.yahoo.com/
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://us6.hpwis.com/ R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://srch-us6.hpwis.com/ R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://srch-us6.hpwis.com/ R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://srch-us6.hpwis.com/ R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://us6.hpwis.com/ R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = http://srch-us6.hpwis.com/ R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch = http://srch-us6.hpwis.com/ R1 - HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = http://us.rd.yahoo.com/customize/yco.../www.yahoo.com R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = localhost O4 - HKLM..Run: [hpsysdrv] c:windowssystemhpsysdrv.exe O4 - HKLM..Run: [CamMonitor] c:Program FilesHewlett-PackardDigital ImagingUnloadhpqcmon.exe O4 - HKLM..Run: [StorageGuard] "C:Program FilesVERITAS SoftwareUpdate Managersgtray.exe" /r O4 - HKLM..Run: [dla] C:WINDOWSsystem32dla fswctrl.exe
O4 - HKLM..Run: [DDCActiveMenu] "C:Program FilesWildTangentDDCActiveMenuDDCActiveMenu.exe" -boot O4 - HKLM..Run: [Recguard] C:WINDOWSSMINSTRECGUARD.EXE O4 - HKLM..Run: [IgfxTray] C:WINDOWSSystem32igfxtray.exe O4 - HKLM..Run: [HotKeysCmds] C:WINDOWSSystem32hkcmd.exe O4 - HKLM..Run: [PS2] C:WINDOWSsystem32ps2.exe O4 - HKLM..Run: [IST Service] C:Program FilesISTsvcistsvc.exe
O4 - HKLM..Run: [System service75] C:WINDOWSetbpokapoka75.exe O4 - HKCU..Run: [MSMSGS] "C:Program FilesMessengermsmsgs.exe" /background
O4 - HKCU..Run: [Mrqx] C:WINDOWSSystem32w?auclt.exe O4 - HKCU..Run: [Notn] "C:Program Filesapsiwtta.exe" -vt mt O4 - Global Startup: hp center.lnk = C:Program Fileshp center137903ProgramBackWeb-137903.exe O16 - DPF: Yahoo! Pyramids - http://download.games.yahoo.com/game...s/y/pyt1_x.cab O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com download.yaho...st20040510.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab O20 - Winlogon Notify: igfxcui - C:WINDOWSSYSTEM32igfxsrvc.dll O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - c:Program FilesNorton AntiVirus avapsvc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:WINDOWSSystem32 vsvc32.exe O23 - Service: Windows 32 Bit (Windows 32 Bit Drivers) - Unknown owner - C:WINDOWSWinVid32.exe
View 14 Replies
View Related
Apr 11, 2007
Computer seems to be slowed down, PLUS it seems to slow down its internet connection that is max 10 mips down, to a crawl, then it speeds back up. Cable claims all is okay on their end, and is something on my system. If someone can tell me if there is anything running in this HJ log that shouldn't be, or that I don't need to have running, Logfile of HijackThis v1.99.1 Scan saved at 1:21:21 PM, on 4/11/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes:
C:WINDOWSSystem32smss.exe C:WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe C:WINDOWSsystem32lsass.exe C:WINDOWSsystem32svchost.exe C:Windows DefenderMsMpEng.exe C:WINDOWSsystem32svchost.exe C:Program FilesCommon FilesSymantec SharedccProxy.exe C:Program FilesCommon FilesSymantec SharedccSetMgr.exe C:Norton Personal FirewallISSVC.exe C:Program FilesCommon FilesSymantec SharedSNDSrvc.exe C:Program FilesCommon FilesSymantec SharedSPBBCSPBBCSvc.exe C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe C:WINDOWSExplorer.EXE C:Program FilesCommon FilesSymantec SharedccEvtMgr.exe C:WINDOWSsystem32rsvc01a.exe
C:WINDOWSsystem32rss01a.exe C:WINDOWSsystem32spoolsv.exe C:Program FilesSymantecLiveUpdateALUSchedulerSvc.exe C:WINDOWSsystem32CTsvcCDA.EXE C:Norton SystemWorksNorton AntiVirusIWPNPFMntor.exe C:NORTON~1NORTON~1NPROTECT.EXE C:WINDOWSsystem32PSIService.exe C:NORTON~1NORTON~1SPEEDD~1NOPDB.EXE C:WINDOWSsystem32svchost.exe C:WINDOWSsystem32WFXSVC.EXE C:WINDOWSsystem32MsPMSPSv.exe C:WINDOWSsystem32hkcmd.exe C:Windows DefenderMSASCui.exe C:Program FilesCommon FilesSymantec SharedccApp.exe C:WINDOWSsystem32wfxsnt40.exe C:Program FilesMicrosoft IntelliType Proitype.exe C:WINDOWSsystem32ctfmon.exe C:LogitechMouseWaresystemem_exec.exe C:WinZipwinzip32.exe C:DoughijackthisHijackThis.exe R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.cnn.com/ R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyServer = ftp=localhost:8118;gopher=localhost:8118;http=localhost:8118;https=localhos t:8118;socks=localhost:8118 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesAdobeAcrobat 7.0ActiveXAcroIEHelper.dll O2 - BHO: Norton Personal Firewall - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:Program FilesCommon FilesSymantec SharedAdBlockingNISShExt.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:Norton SystemWorksNorton AntiVirusNavShExt.dll O3 - Toolbar: Norton Personal Firewall - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:Program FilesCommon FilesSymantec SharedAdBlockingNISShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:Norton SystemWorksNorton AntiVirusNavShExt.dll O4 - HKLM..Run: [IgfxTray] C:WINDOWSsystem32igfxtray.exe O4 - HKLM..Run: [HotKeysCmds] C:WINDOWSsystem32hkcmd.exe O4 - HKLM..Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM..Run: [UpdReg] C:WINDOWSUpdReg.EXE O4 - HKLM..Run: [Windows Defender] "C:Windows DefenderMSASCui.exe" -hide O4 - HKLM..Run: [QuickTime Task] "C:Program FilesQuickTimeqttask.exe" -atboottime O4 - HKLM..Run: [ccApp] "C:Program FilesCommon FilesSymantec SharedccApp.exe" O4 - HKLM..Run: [Symantec NetDriver Monitor] C:PROGRA~1SYMNET~1SNDMon.exe /Consumer O4 - HKLM..Run: [WinFaxAppPortStarter] wfxsnt40.exe O4 - HKLM..Run: [itype] "c:Program FilesMicrosoft IntelliType Proitype.exe" O4 - HKLM..RunOnce: [WIAWizardMenu] RUNDLL32.EXE C:WINDOWSsystem32sti_ci.dll,WiaCreateWizardMenu O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe
O4 - HKCU..Run: [Norton SystemWorks] "C:Norton SystemWorkscfgwiz.exe" /GUID {05858CFD-5CC4-4ceb-AAAF-CF00BF39736A} /MODE CfgWiz O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:MICROS~1OFFICE11EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Javain pjpi150_04.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Javain pjpi150_04.dll O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://www.activation.rr.com/install...ds/tgctlcm.cab O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {238F6F83-B8B4-11CF-8771-00A024541EE3} - http://a516.g.akamai.net/f/516/25175...at-no-eula.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1155682376421 O20 - Winlogon Notify: igfxcui - C:WINDOWSSYSTEM32igfxsrvc.dll O20 - Winlogon Notify: WgaLogon - C:WINDOWSSYSTEM32WgaLogon.dll O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing) O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:WINDOWSsystem32WPDShServiceObj.dll O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:Program FilesSymantecLiveUpdateALUSchedulerSvc.exe O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:WINDOWSsystem32rsvc01a.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccSetMgr.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:WINDOWSsystem32CTsvcCDA.EXE O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:Norton Personal FirewallISSVC.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:PROGRA~1SymantecLIVEUP~1LUCOMS~1.EXE O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:Norton SystemWorksNorton AntiVirus avapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:Norton SystemWorksNorton AntiVirusIWPNPFMntor.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:NORTON~1NORTON~1NPROTECT.EXE O23 - Service: ProtexisLicensing - Unknown owner - C:WINDOWSsystem32PSIService.exe O23 - Service: SAVScan - Symantec Corporation - C:Norton SystemWorksNorton AntiVirusSAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:PROGRA~1COMMON~1SYMANT~1SCRIPT~1SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedSNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedSPBBCSPBBCSvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:NORTON~1NORTON~1SPEEDD~1NOPDB.EXE O23 - Service: Symantec Core LC - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe O23 - Service: WinFax PRO (wfxsvc) - Symantec Corporation - C:WINDOWSsystem32WFXSVC.EXE
View 2 Replies
View Related
Nov 14, 2008
Lately my PC freezes up for virtually no reason. The computer is older but runs just fine besides the freezing up. Not sure if its just time to get a new computer or if its just a glitch. I've attached a hijackthis log, hopefully if there is a glitch we can find it. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 4:55:49 PM, on 11/14/2008 Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735) Boot mode: Normal Running processes: C:WINDOWSSystem32smss.exe C:WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe C:WINDOWSsystem32lsass.exe C:WINDOWSsystem32svchost.exe C:Program FilesWindows DefenderMsMpEng.exe C:WINDOWSSystem32svchost.exe C:WINDOWSsystem32svchost.exe C:WINDOWSExplorer.EXE C:WINDOWSsystem32spoolsv.exe C:PROGRA~1COMMON~1aolACSAOLacsd.exe C:Program FilesCommon FilesAppleMobile Device SupportinAppleMobileDeviceService.exe C:PROGRA~1AVGAVG8avgwdsvc.exe C:Program FilesBonjourmDNSResponder.exe C:Program FilesWIDCOMMBluetooth Softwareintwdins.exe C:WINDOWSsystem32cisvc.exe C:WINDOWSSystem32svchost.exe C:WINDOWSSystem32svchost.exe C:Program FilesViewpointCommonViewpointService.exe C:WINDOWSwanmpsvc.exe C:Program FilesAdobePhotoshop Album Starter Edition3.0Appsapdproxy.exe
C:WINDOWSsystem32ctfmon.exe C:Program FilesAWSWeatherBugWeather.exe C:Program FilesThe Weather Channel FWDesktopDesktopWeather.exe
C:Program FilesWindows Media PlayerWMPNSCFG.exe C:Program FilesNokiaNokia PC Suite 7PCSync2.exe C:Program FilesNokiaNokia PC Suite 7PCSuite.exe C:PROGRA~1AVGAVG8avgrsx.exe C:Program FilesBilleoilleo.exe C:Program FilesDigital Line DetectDLG.exe C:Program FilesYahoo!Messengerymsgr_tray.exe C:Program FilesViewpointViewpoint ManagerViewMgr.exe C:Program FilesCommon FilesNokiaMPAPIMPAPI3s.exe
C:Program FilesPC Connectivity SolutionServiceLayer.exe C:WINDOWSsystem32dlbxcoms.exe C:Program FilesPC Connectivity SolutionTransportsNclUSBSrv.exe C:Program FilesPC Connectivity SolutionTransportsNclRSSrv.exe C:WINDOWSsystem32cidaemon.exe
C:WINDOWSsystem32cidaemon.exe C:Program FilesInternet ExplorerIEXPLORE.EXE C:Program FilesNokiaNokia PC Suite 7ImageStore.exe
C:Program FilesTrend MicroHijackThisHijackThis.exe R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://red.clientapps.yahoo.com/cust...ch/search.html R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.yahoo.com/
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = *.local R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelper.dll O2 - BHO: LoginMonitorBHO Class - {23128821-FF38-4B38-82EA-FFC6DF4A7DD1} - (no file)
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:Program FilesAVGAVG8avgssie.dll O2 - BHO: Billeo - {465E08E7-F005-4389-980F-1D8764B3486C} - c:program filesilleoilleo.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:PROGRA~1SPYBOT~1SDHelper.dll O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:Program FilesYahoo!Commonyiesrvc.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:Program FilesJavajre1.6.0_05inssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: CoTGT_BHO Class - {C333CF63-767F-4831-94AC-E683D962C63C} - C:Program FilesTGTSoftStyleXPTGT_BHO.dll O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file) O3 - Toolbar: Billeo - {6ADB0F93-1AA5-4BCF-9DF4-CEA689A3C111} - c:program filesilleoilleo.dll
O3 - Toolbar: The Weather Channel Toolbar - {2E5E800E-6AC0-411E-940A-369530A35E43} - C:WINDOWSSYSTEM32TwcToolbarIe7.dll O4 - HKLM..Run: [Adobe Photo Downloader] "C:Program FilesAdobePhotoshop Album Starter Edition3.0Appsapdproxy.exe"O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe O4 - HKCU..Run: [Yahoo! Pager] "C:Program FilesYahoo!MessengerYahooMessenger.exe" -quiet O4 - HKCU..Run: [Weather] C:Program FilesAWSWeatherBugWeather.exe 1 O4 - HKCU..Run: [DW6] "C:Program FilesThe Weather Channel WDesktopDesktopWeather.exe"
O4 - HKCU..Run: [WMPNSCFG] C:Program FilesWindows Media PlayerWMPNSCFG.exe O4 - HKCU..Run: [Nokia.PCSync] "C:Program FilesNokiaNokia PC Suite 7PCSync2.exe" /NoDialog O4 - HKCU..Run: [PC Suite Tray] "C:Program FilesNokiaNokia PC Suite 7PCSuite.exe" -onlytray O4 - Global Startup: billeo.lnk = C:Program FilesBilleoilleo.exe O4 - Global Startup: Digital Line Detect.lnk = ? O4 - Global Startup: Microsoft Office.lnk = C:Program FilesMicrosoft OfficeOffice10OSA.EXE O8 - Extra context menu item: &AOL Toolbar search - res://C:Program FilesAOL Toolbar oolbar.dll/SEARCH.HTML O8 - Extra context menu item: &Yahoo! Search - file:///C:Program FilesYahoo!Common/ycsrch.htm O8 - Extra context menu item: Send To &Bluetooth - C:Program FilesWIDCOMMBluetooth Softwaretsendto_ie_ctx.htm O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:Program FilesYahoo!Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:Program FilesYahoo!Common/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///C:Program FilesYahoo!Common/ycsms.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.6.0_05inssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.6.0_05inssv.dll O9 - Extra button: The Weather Channel - {2E5E800E-6AC0-411E-940A-369530A35E43} - (no file)O9 - Extra 'Tools' menuitem: The Weather Channel - {2E5E800E-6AC0-411E-940A-369530A35E43} - (no file) O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:Program FilesYahoo!Commonyiesrvc.dll O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:Program FilesBonjourExplorerPlugin.dll O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:Program FilesWIDCOMMBluetooth Softwaretsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:Program FilesWIDCOMMBluetooth Softwaretsendto_ie.htm O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O9 - Extra button: Billeo - {97ED3A9F-CD6F-473A-8FE1-7505C1B844C3} - c:program filesilleoilleo.dll (HKCU)
O12 - Plugin for .spop: C:Program FilesInternet ExplorerPluginsNPDocBox.dll O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://usercenter.cox.net/rsuite/sdc...cx_tgctlcm.jsp O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - http://support.dell.com/systemprofiler/SysPro.CAB O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:Program FilesYahoo!Commonyinsthelper.dll O16 - DPF: {315B0BFB-2BD4-481B-80A3-A9B80727C61B} (WebIQ Engine Application Object) - http://webiq005.webiqonline.com/WebI...6-6D5536C585C9} O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.com/download/cult.cab O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} - http://www.fileplanet.com/fpdlmgr/ca...C_2.1.1.74.cab O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://appldnld.m7z.net qtinstall.in...lInstaller.exe O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/sh...1/mcinsctl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1145286197448 O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.kodakgallery.com/download...1/axofupld.cab O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/soft...ch/alaunch.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2...ll/xscan53.cab O16 - DPF: {85D1F3B2-2A21-11D7-97B9-0010DC2A6243} (SecureLogin class) - http://secure2.comned.com/signuptemp...ogin-devel.cab O16 - DPF: {8714912E-380D-11D5-B8AA-00D0B78F3D48} (Yahoo! Webcam Upload Wrapper) - http://chat.yahoo.com/cab/yuplapp.cab O16 - DPF: {88D758A3-D33B-45FD-91E3-67749B4057FA} - http://dm.screensavers.com/dm/instal...sinstaller.cab O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://68.228.1.61:7000/activex/AxisCamControl.cab O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - http://131.107.96.16/media/xp/TLIEFlash.CAB O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/Ms...Downloader.cab O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/radio/amp...1.11_en_dl.cab O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yaho...tocomplete.cab O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://download.games.yahoo.com/game...ploader_v6.cab
O16 - DPF: {E504EE6E-47C6-11D5-B8AB-00D0B78F3D48} (Yahoo! Webcam Viewer Wrapper) - http://chat.yahoo.com/cab/yvwrctl.cab O16 - DPF: {EC8C56B1-D027-4AB2-AF63-F845CCEE59B5} (DocumentAccessor Class) - https://billmanager.aol.com/billmana...oginHelper.cab O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:Program FilesAVGAVG8avgpp.dll O20 - AppInit_DLLs: C:PROGRA~1GoogleGOOGLE~2GOEC62~1.DLL,avgrsstx.dll O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:PROGRA~1COMMON~1aolACSAOLacsd.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C:Program FilesCommon FilesAppleMobile Device SupportinAppleMobileDeviceService.exe O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:PROGRA~1AVGAVG8avgwdsvc.exe O23 - Service: Bonjour Service - Apple Computer, Inc. - C:Program FilesBonjourmDNSResponder.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:Program FilesWIDCOMMBluetooth Softwareintwdins.exe O23 - Service: dlbx_device - Dell - C:WINDOWSsystem32dlbxcoms.exe O23 - Service: iPod Service - Apple Inc. - C:Program FilesiPodiniPodService.exe
O23 - Service: ServiceLayer - Nokia. - C:Program FilesPC Connectivity SolutionServiceLayer.exe O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:Program FilesViewpointCommonViewpointService.exe O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:WINDOWSwanmpsvc.exe
View 3 Replies
View Related
May 7, 2005
For two weeks I have had a constant problem with freezing and disconnects on various sites, including updates for Norton and AdAware, so I don't know if it is browser related or not. Every few minutes data in and out stop completely for about 30 seconds, then resume normally until the next freeze. The disconnects may happen every few minutes, then may not happen for several days. This is a 38kbs dial-up, with no prior major problems. My ISP is baffled, Norton has NEVER found anything, AdAware finds only the normal browser cookies, Spybot never finds ANYTHING if I run AdAware first, the free version of Registry Mechanic didn't help, CWShredder found nothing. This happens even with no other programs running. This was not a gradual thing--if was fine one day, problem the next day. I tried un and reinstalling the modem driver and got a "not configured properly" message no matter how I tried it, so had to use system restore to get it back. Occasionally IE opens with the plain screen with "browser cannot find style and presentation information", then the next time it is normal. Logfile of HijackThis v1.97.7 Scan saved at 12:33:15 AM, on 5/7/2005 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:WINDOWSSystem32smss.exe C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe C:WINDOWSsystem32lsass.exe C:WINDOWSsystem32svchost.exe C:WINDOWSSystem32svchost.exe C:WINDOWSsystem32LEXBCES.EXE C:WINDOWSsystem32spoolsv.exe C:WINDOWSsystem32LEXPPS.EXE C:WINDOWSSystem32cisvc.exe C:WINDOWSSystem32CTsvcCDA.EXE C:Program FilesCommon FilesMicrosoft SharedVS7Debugmdm.exe C:Program FilesNorton AntiVirus
avapsvc.exe C:WINDOWSSystem32 vsvc32.exe C:WINDOWSSystem32svchost.exe C:WINDOWSwanmpsvc.exe C:WINDOWSSystem32MsPMSPSv.exe C:WINDOWSExplorer.EXE C:Program FilesCommon FilesDellEUSWSupport.exe C:Program FilesCreativeSBLiveCreative Diagnostics 2.0DIAGENT.EXE
C:PROGRA~1NORTON~1 avapw32.exe C:Program FilesJavajre1.5.0_02injusched.exe C:WINDOWSSystem32devldr32.exe C:WINDOWSSystem32ctfmon.exe
C:Program FilesDellSupportAlertinNotifyAlert.exe C:WINDOWSSystem32cidaemon.exe C:WINDOWSSystem32cidaemon.exe C:Program FilesInternet Exploreriexplore.exe C:unzippedhijackthis[1]hijackthis.exe R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.dellnet.com/ R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.dellnet.com R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.dellnet.com R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.dellnet.com O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesAdobeAcrobat 6.0ReaderActiveXAcroIEHelper.dll O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - C:Program FilesMicrosoft MoneySystemmnyside.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:PROGRA~1SPYBOT~1SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:Program FilesNorton AntiVirusNavShExt.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINDOWSSystem32msdxm.ocx O3 - Toolbar: Norton AntiVirus - {42CDD1BF- FFB-4238-8AD1-7859DF00B1D6} - C:Program FilesNorton AntiVirusNavShExt.dll O4 - HKLM..Run: [DwlClient] C:Program FilesCommon FilesDellEUSWSupport.exe O4 - HKLM..Run: [DIAGENT] C:Program FilesCreativeSBLiveCreative Diagnostics 2.0DIAGENT.EXE startup O4 - HKLM..Run: [AHQInit] C:Program FilesCreativeSBLiveProgramAHQInit.exe O4 - HKLM..Run: [QuickTime Task] "C:Program FilesQuickTimeqttask.exe" -atboottime O4 - HKLM..Run: [NAV Agent] C:PROGRA~1NORTON~1 avapw32.exe O4 - HKLM..Run: [SSC_UserPrompt] C:Program FilesCommon FilesSymantec SharedSecurity CenterUsrPrmpt.exe O4 - HKLM..Run: [SunJavaUpdateSched] C:Program FilesJavajre1.5.0_02injusched.exe O4 - HKLM..Run: [NeroFilterCheck] C:WINDOWSsystem32NeroCheck.exe O4 - HKLM..Run: [Symantec NetDriver Monitor] C:PROGRA~1SYMNET~1SNDMon.exe /Consumer O4 - HKLM..Run: [MSConfig] C:WINDOWSPCHealthHelpCtrBinariesMSConfig.exe /auto O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSSystem32ctfmon.exe O4 - HKCU..Run: [Microsoft Works Update Detection] C:Program FilesMicrosoft WorksWkDetect.exe
O4 - Startup: TempCleaner.pif = C:PROGRA~1TEMPCL~1TEMPCL~1.BAT O8 - Extra context menu item: &Yahoo! Search - file:///C:Program FilesYahoo!Common/ycsrch.htm O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:Program FilesYahoo!Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:Program FilesYahoo!Common/ycdict.htm O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM) O9 - Extra button: Messenger (HKLM) O9 - Extra 'Tools' menuitem: Yahoo! Messenger (HKLM) O9 - Extra button: MoneySide (HKLM)
O9 - Extra button: Messenger (HKLM) O9 - Extra 'Tools' menuitem: Messenger (HKLM) O15 - Trusted Zone: www.forsalebyowner.com
O15 - Trusted Zone: http://play.hoylegames.com O15 - Trusted Zone: http://softwareupdates.roxio.com O15 - Trusted Zone: http://hoylegames.sierra.com O16 - DPF: ppctlcab - http://69.44.122.156/scanner/ppctlcab.cab O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/game...ts/y/st2_x.cab O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15009/CTSUEng.cab O16 - DPF: {19E28AFC-EAE3-4CE5-AC83-2407B42F57C9} (MSSecurityAdvisor Class) - http://download.microsoft.com/downlo...?1074912086675 O16 - DPF: {29B2C103-AB53-4971-B765-FC1CE5D8B2D1} - http://www.silvercrk.com/php/hwspade...07_4998516.cab O16 - DPF: {2FC9A21E-2069-4E47-8235-36318989DB13} (PPSDKActiveXScanner.MainScreen) - http://69.44.122.156/scanner/axscanner.cab O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://download.yahoo.com/dl/yinst/yinst_current.cab O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl acti..._v1-0-3-18.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2...ll/xscan53.cab O16 - DPF: {A031D222-B496-11D2-9CC8-00105A10AAF6} (WONWebLauncher Class) - http://play.hoylegames.com cab/WONWe...herControl.cab O16 - DPF: {AE1C01E3-0283-11D3-9B3F-00C04F8EF466} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15010/CTPID.cab O17 - HKLMSystemCCSServicesTcpip..{C9528AAA-94E7-49CE-A1D0-ABE5E2967B5C}: NameServer = 65.120.0.2 65.120.0.10
View 3 Replies
View Related
Mar 20, 2007
I've got win xp, recently it is running very slowly especially when I try to get on the internet. I am attaching hicjackthis log, are there any obvious problems, I have a hunch that there are some programs which I don't use which slow down the system. Any suggestions? Thanks Logfile of Trend Micro HijackThis v2.0.0 (BETA) Scan saved at 22:02:05, on 20/03/2007 Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal Running processes: C:WINDOWSSystem32smss.exe C:WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe C:WINDOWS system32lsass.exe C:WINDOWSsystem32svchost.exe C:Program FilesWindows DefenderMsMpEng.exe C:WINDOWSSystem32svchost.exe C:WINDOWS system32spoolsv.exe D:avasy anti virusaswUpdSv.exe D:avasy anti virusashServ.exe C:WINDOWSsystem32 vsvc32.exe C:WINDOWS system32svchost.exe C:WINDOWSExplorer.EXE C:Program FilesCanonCALCALMAIN.exe D:avasy anti virusashMaiSv.exe D:AVASYA~1ashDisp.exe
D:scannerHP Share-to-Webhpgs2wnd.exe C:Program FilesPicasa2PicasaMediaDetector.exe C:WINDOWSsystem32LVCOMSX.EXE C:Program Files LogitechVideoLogiTray.exe C:Program FilesThomsonSpeedTouch USBDragdiag.exe C:Program FilesCommon FilesRealUpdate_OB ealsched.exe
D:avasy anti virusashWebSv.exe C:WINDOWSsystem32RUNDLL32.EXE C:Program FilesWindows DefenderMSASCui.exe C:WINDOWSsystem32 undll32.exe
D:Javainjusched.exe C:Program FilesQuickTimeqttask.exe D:iTunesiTunesHelper.exe C:WINDOWSsystem32ctfmon.exe C:Program FilesGoogle Google ToolbarNotifier1.2.1128.5462GoogleToolbarNotifier.exe C:Program FilesWireless DeviceWireless KeyboardMagickey.exe C:Program FilesWireless DeviceWireless MouseMouseAp.exe D:scannerHP Share-to-Webhpgs2wnf.exe C:Program FilesWireless DeviceWireless Keyboardosd.exe
C:Program FilesLogitechVideoFxSvr2.exe C:Program FilesiPodiniPodService.exe C:Program FilesInternet Exploreriexplore.exe D:Program Files weak uiHiJackThis_v2.exe R0 - HKCUSoftwareMicrosoftInternet Explorer Main,Start Page = http://news.bbc.co.uk/ R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesAdobeAcrobat 7.0ActiveXAcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:Javainssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:Program FilesCommon FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:program files googlegoogletoolbar4.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:program filesgooglegoogletoolbar4.dll
O4 - HKLM..Run: [avast!] D:AVASYA~1ashDisp.exe O4 - HKLM..Run: [Share-to-Web Namespace Daemon] D:scannerHP Share-to-Webhpgs2wnd.exe
O4 - HKLM..Run: [Picasa Media Detector] C:Program FilesPicasa2PicasaMediaDetector.exe O4 - HKLM..Run: [LVCOMSX] C:WINDOWSsystem32LVCOMSX.EXE O4 - HKLM..Run: [LogitechVideoRepair] C:Program FilesLogitechVideoISStart.exe O4 - HKLM..Run: [LogitechVideoTray] C:Program FilesLogitechVideoLogiTray.exe O4 - HKLM..Run: [NeroFilterCheck] C:WINDOWSsystem32NeroCheck.exe
O4 - HKLM..Run: [NeroCheck] C:WINDOWSsystem32NeroCheck.exe O4 - HKLM..Run: [SpeedTouch USB Diagnostics] "C:Program FilesThomsonSpeedTouch USBDragdiag.exe" /icon O4 - HKLM..Run: [TkBellExe] "C:Program FilesCommon FilesRealUpdate_OB
ealsched.exe" -osboot O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup O4 - HKLM..Run: [nwiz] nwiz.exe /install O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit O4 - HKLM..Run: [Windows Defender] "C:Program FilesWindows DefenderMSASCui.exe" -hideO4 - HKLM..Run: [SunJavaUpdateSched] "D:Javainjusched.exe" O4 - HKLM..Run: [QuickTime Task] "C:Program FilesQuickTimeqttask.exe" -atboottime O4 - HKLM..Run: [iTunesHelper] "D:iTunesiTunesHelper.exe" O4 - HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe O4 - HKCU..Run: [LogitechSoftwareUpdate] "C:Program Files Logitech VideoManifestEngine.exe" boot O4 - HKCU..Run: [swg] C:Program FilesGoogleGoogleToolbarNotifier1.2.1128.5462GoogleToolbarNotifier.exe
O4 - HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'LOCAL SERVICE') O4 - HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUSS-1-5-21-1214440339-2025429265-725345543-1004..Run: [MSMSGS] "C:Program FilesMessengermsmsgs.exe" /background (User 'Mary') O4 - HKUSS-1-5-21-1214440339-2025429265-725345543-1004..Run: [swg] C:Program FilesGoogleGoogleToolbarNotifier1.2.1128.5462GoogleToolbarNotifier.exe (User 'Mary') O4 - HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'SYSTEM') O4 - HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:Program FilesAdobeAcrobat 7.0Reader eader_sl.exe O4 - Global Startup: Enable Wireless Keyboard Driver.lnk = C:Program FilesWireless DeviceWireless KeyboardMagickey.exe O4 - Global Startup: Enable Wireless Optical Mouse Driver.lnk = C:Program FilesWireless DeviceWireless MouseMouseAp.exe O4 - Global Startup: Microsoft Office.lnk = C:Program FilesMicrosoft OfficeOfficeOSA9.EXE O8 - Extra context menu item: &Google Search - res://c:program filesgoogle GoogleToolbar2.dll /cmsearch.htmlO8 - Extra context menu item: &Translate English Word - res://c:program filesgoogleGoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:program filesgoogleGoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:program filesgoogleGoogleToolbar2.dll/cmcache.html O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:MICROS~1OFFICE11EXCEL.EXE/3000 O8 - Extra context menu item: Similar Pages - res://c:program filesgoogleGoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Translate Page into English - res://c:program filesgoogleGoogleToolbar2.dll/cmtrans.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:Javainssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:Javainssv.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:MICROS~1OFFICE11REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%Network Diagnosticxpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%Network Diagnosticxpnetdiag.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O15 - Trusted Zone: http://www.boots.co.uk O15 - Trusted Zone: http://www.skl-network.com O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.co/kos/english...an_unicode.cab
O16 - DPF: {474F00F5-3853-492C-AC3A-476512BBC336} (UploadListView Class) - http://picasaweb.google.com/s/v/1f16/uploader2.cab O16 - DPF: {4E62C4DE-627D-4604-B157-4B7D6B09F02E} (AccountTracking Profile Manager Class) - https://moneymanager.egg.com/Pinsafe...nttracking.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0) - http://javadl-esd.sun.com/update/1.5...ws-i586-jc.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/Ms...Downloader.cab O16 - DPF: {C81B5180-AFD1-41A3-97E1-99E8D254DB98} (CSS Web Installer Class) - http://www.commandon demand.com/eval/cod/cabs/cssweb.cab O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://static.photobox.co.uk/sg/common/uploader.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ge...sh/swflash.cab O17 - HKLMSystemCCSServicesTcpip..{DF43DB2B-C236-4154-B334-12818626C126}: NameServer = 212.139.132.5 212.139.132.4
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:WINDOWSsystem32rowseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:WINDOWSsystem32rowseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - D:avasy anti virusaswUpdSv.exe O23 - Service: avast! Antivirus - Unknown owner - D:avasy anti virusashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - D:avasy anti virusashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - D:avasy anti virusashWebSv.exe O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:Program FilesCanonCALCALMAIN.exe O23 - Service: Google Updater Service (gusvc) - Google - C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Unknown owner - C:Program FilesCommon FilesInstallShield Driver11Intel32IDriverT.exe (file missing) O23 - Service: iPod Service - Apple Computer, Inc. - C:Program FilesiPodiniPodService.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:WINDOWSsystem32 vsvc32.exe
View 1 Replies
View Related
Nov 7, 2006
its been awhile since my last hiJack and I've notice a few things upon start up, just a quick flash of something have no idea what it is.. i've run all my AVG's, sypwear and Adwear but haven't really come up with anything.. if someone could take a look at my log it would be great.Logfile of HijackThis v1.99.1 Scan saved at 5:21:11 PM, on 07/11/2006Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes:C:WINNTSystem32smss.exe C:WINNTsystem32winlogon.exe C:WINNTsystem32services.exe C:WINNTsystem32lsass.exe C:WINNTsystem32svchost.exe C:WINNTSystem32svchost.exe C:WINNTsystem32spoolsv.exe
C:WINNTExplorer.EXE C:Program FilesDIGStreamdigstream.exe C:Program FilesMicrosoft HardwareKeyboard ype32.exe C:WINNTsystem32NVATray.exe C:PROGRA~1GrisoftAVGFRE~1avgcc.exe C:PROGRA~1GrisoftAVGFRE~1avgemc.exe C:Program FilesJavajre1.5.0_06injusched.exe C:Program FilesCommon FilesRealUpdate_OB ealsched.exe C:Program FilesE-ColorTrue Internet ColorTICIcon.exe
C:downloadslogitechmouseMouseWaresystemem_exec.exe C:PROGRA~1GrisoftAVGFRE~1avgamsvr.exe C:PROGRA~1GrisoftAVGFRE~1avgupsvc.exe
C:downloadsewidosecurity suiteewidoctrl.exe C:WINNTSystem32 vsvc32.exe C:WINNTSystem32svchost.exe C:WINNTsystem32WgaTray.exe
C:Program FilesMozilla Firefoxfirefox.exe C:WINNTsystem32wuauclt.exe C:downloadshijackthisHijackThis.exe R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://red.clientapps.yahoo.com/cust...ch/search.html R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://yahoo.com/ R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://red.clientapps.yahoo.com/cust...ch/search.html R1 - HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = http://red.clientapps.yahoo.com/cust.../www.yahoo.com N3 - Netscape 7: user_pref("browser.startup.homepage", "http:/www.yahoo.com"); (C:Documents and SettingsAdm inistratorApplication DataMozillaProfilesdefaultczxbl1g7.sltprefs.js) N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5Cdownloads%5CNetscape6%5Csearchplugins%5CSBWeb_01.src"); (C:Documents and SettingsAdministratorApplication DataMozillaProfilesdefaultczxbl1g7.sltprefs.js) O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:downloadsacrobat readerReaderActiveXAcroIEHelper.ocx O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B- 8BC-4B02-94D6-2FC0DE4A7897} - C:downloadsyahooCommonyiesrvc.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:Program FilesJavajre1.5.0_06inssv.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:downloadsyahooCompanionInstallscpn1yt.dll O4 - HKLM..Run: [Synchronization Manager] mobsync.exe /logon O4 - HKLM..Run: [LoadQM] loadqm.exe O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize O4 - HKLM..Run: [DIGStream] C:Program FilesDIGStreamdigstream.exe O4 - HKLM..Run: [Logitech Utility] Logi_MwX.Exe O4 - HKLM..Run: [IntelliType] "C:Program FilesMicrosoft HardwareKeyboard ype32.exe" O4 - HKLM..Run: [NVIDIA nForce APU1 Utilities] NVATray.exe O4 - HKLM..Run: [AVG7_CC] C:PROGRA~1GrisoftAVGFRE~1avgcc.exe /STARTUP O4 - HKLM..Run: [AVG7_EMC] C:PROGRA~1GrisoftAVGFRE~1avgemc.exe O4 - HKLM..Run: [NeroFilterCheck] C:WINNTsystem32NeroCheck.exe O4 - HKLM..Run: [SunJavaUpdateSched] C:Program FilesJavajre1.5.0_06injusched.exe
O4 - HKLM..Run: [TkBellExe] "C:Program FilesCommon FilesRealUpdate_OB ealsched.exe" -osboot O4 - HKLM..Run: [QuickTime Task] "C:downloadsquicktimeqttask.exe" -atboottime O4 - HKLM..Run: [KernelFaultCheck] %systemroot%system32dumprep 0 -k O4 - Global Startup: Adobe Gamma Loader.lnk = C:Program FilesCommon FilesAdobeCalibrationAdobe Gamma Loader.exe O4 - Global Startup: True Internet Color Icon.lnk = C:Program FilesE-ColorTrue Internet ColorTICIcon.exe O8 - Extra context menu item: &Yahoo! Search - ile:///C:downloadsyahooCommon/ycsrch.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:PROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000 O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:downloadsyahooCommon/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:downloadsyahooCommon/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///C:downloadsyahooCommon/ycsms.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.5.0_06inssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.5.0_06inssv.dll O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} C:downloadsyahooCommonyiesrvc.dll O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - C:downloadsicqICQICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:downloadsicqICQICQ.exe O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL O9 - Extra button: AOL Instant Messenger (TM) - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:downloadsAOLaim.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O12 - Plugin for .spop: C:Program FilesInternet ExplorerPluginsNPDocBox.dll O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10...I.cab40641.cab O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:downloadsyahooCommonyinsthelper.dll O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (ZoneBuddy Class) - http://zone.msn.com/BinFrameWork/v10...y.cab32846.cab O16 - DPF: {483EB14D-AF1C-4951-81B0-4E2B41829FF6} (QOLCheck Control) - https://www.qwizonline.com/cabs/QOLCheck.ocx O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) http://by2fd.bay2.hotmail.msn.com/re...s/MsnPUpld.cab O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/binframework/v10...t.cab32846.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1123916575234 O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/Ms...Downloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10...o.cab34246.cab O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} (YAddBook Class) - http://us.dl1.yimg.com/download.yaho...tocomplete.cab O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (StadiumProxy Class) - http://zone.msn.com/binframework/v10...y.cab41227.cab O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab O16 - DPF: {FF3C5A9F-5A91-4930-80E8-4709194C2AD3} (CheckersZPA Object) - http://zone.msn.com/bingame/zpagames...A.cab40641.cab O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:PROGRA~1MSNMES~1msgrapp.dll" (file missing) O20 - Winlogon Notify: WgaLogon - C:WINNTSYSTEM32WgaLogon.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:PROGRA~1GrisoftAVGFRE~1avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:PROGRA~1GrisoftAVGFRE~1avgupsvc.exe O23 - Service: ewido security suite control - ewido networks - C:downloadsewidosecurity suiteewidoctrl.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe O23 - Service: iPodService - Apple Computer, Inc. - G:LaureniPodiniPodService.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:WINNTSystem32 vsvc32.exe
View 1 Replies
View Related
Aug 19, 2006
When I start up Musicmatch Jukebbox Plus version 10.0 I get the opening screen and then nothing. I tried to uninstall it in Control Panel and Install Shield freezes. I try to install a new download for musicmatch and Install Shield also freezes. I therefore can't install or uninstall this program. My PC has been intermitantly very very slow for the last few months. Please help. I have a Dell 8200 series PC with XP Professional Below is a copy of the Hijackthis log. Logfile of HijackThis v1.99.1 Scan saved at 11:55:47 AM, on 8/19/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:WINDOWSSystem32smss.exe C:WINDOWSsystem32csrss.exe C:WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe C:WINDOWSsystem32lsass.exe C:WINDOWSsystem32svchost.exe C:WINDOWSsystem32svchost.exe C:WINDOWSSystem32svchost.exe C:WINDOWSSystem32svchost.exe C:WINDOWSSystem32svchost.exe C:Program FilesCommon FilesSymantec SharedccSetMgr.exe C:Program FilesCommon FilesSymantec SharedccEvtMgr.exe C:Program FilesCommon FilesSymantec SharedSNDSrvc.exe C:Program FilesCommon FilesSymantec SharedSPBBCSPBBCSvc.exe C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe C:WINDOWSsystem32LEXBCES.EXE C:WINDOWSsystem32LEXPPS.EXE C:WINDOWSsystem32spoolsv.exe C:WINDOWSExplorer.EXE C:Program FilesSymantecLiveUpdateALUSchedulerSvc.exe
C:Program FilesJavajre1.5.0_06injusched.exe C:Program Filesone LabsoneAlarmzlclient.exe C:Program FilesCommon FilesSymantec SharedccApp.exe C:PROGRA~1SPYWAR~1swdoctor.exe C:Program FilesPlaxo2.6.2.9PlaxoHelper.exe C:WINDOWSSystem32CTsvcCDA.exe C:Program FilesCommon FilesMicrosoft SharedVS7Debugmdm.exe C:Program FilesNorton AntiVirus avapsvc.exe C:Program FilesNorton AntiVirusIWPNPFMntor.exe C:WINDOWSSystem32 vsvc32.exe C:WINDOWSsystem32PNUpdate.exe C:Program FilesSpyware Doctorsdhelp.exe C:WINDOWSSystem32svchost.exe C:WINDOWSsystem32wdfmgr.exe C:WINDOWSsystem32oneLabsvsmon.exe C:WINDOWSSystem32MsPMSPSv.exe
C:Program FilesCommon FilesSymantec SharedSecurity ConsoleNSCSRVCE.EXE C:WINDOWSSystem32alg.exe C:Program FilesMicrosoft OfficeOffice10OUTLOOK.EXE C:Program FilesMUSICMATCHMUSICMATCH JukeboxMMDiag.exe C:WINDOWSsystem32ctfmon.exe C:Program FilesMUSICMATCHMUSICMATCH Jukeboxmim.exe C:Program FilesMicrosoft OfficeOffice10WINWORD.EXE C:Program FilesCommon FilesMicrosoft SharedSpeechsapisvr.exe C:Program FilesMozilla Firefoxfirefox.exe C:Program FilesHijackthisHijackThis.exe R0 - HKCUSoftware MicrosoftInternet ExplorerMain,Start Page = http://www.teamster.org/ O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59- 87D-784B7D6BE0B3} - C:Program FilesAdobeAcrobat 6.0AcrobatActiveXAcroIEHelper.dll O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:PROGRA~1SPYWAR~1 oolsiesdsg.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:Program FilesJavajre1.5.0_06inssv.dll O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:Program FilesViewpoint Viewpoint ToolbarViewBarBHO.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:Program FilesNorton AntiVirus NavShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:program filesgooglegoogletoolbar2.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:Program FilesAdobeAcrobat 6.0AcrobatAcroIEFavClient.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:PROGRA~1SPYWAR~1 oolsiesdpb.dll O2 - BHO: AIMSite Class - {D70E6A20-7060-4829-B3D7-B6624A1DE7C6} - C:Program FilesAIM Toolbaraimhelper.dll (file missing) O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:Program FilesAdobeAcrobat 6.0AcrobatAcroIEFavClient.dll O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:Program FilesViewpointViewpoint ToolbarViewBar.dllO3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:program filesgooglegoogletoolbar2.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:Program FilesNorton AntiVirusNavShExt.dll O4 - HKLM..Run: [MSConfig] C:WINDOWSPCHealthHelpCtrBinariesMSConfig.exe /auto O4 - HKLM..Run: [UpdReg] C:WINDOWSUpdReg.EXE O4 - HKLM..Run: [SunJavaUpdateSched] C:Program FilesJavajre1.5.0_06injusched.exe
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize O4 - HKLM..Run: [Zone Labs Client] "C:Program Filesone LabsoneAlarmzlclient.exe" O4 - HKLM..Run: [ccApp] "C:Program FilesCommon FilesSymantec SharedccApp.exe" O4 - HKCU..Run: [Spyware Doctor] C:PROGRA~1SPYWAR~1swdoctor.exe /Q O4 - HKCU..Run: [PlaxoUpdate] C:Program FilesPlaxo2.6.2.9PlaxoHelper.exe -a O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe O8 - Extra context menu item: &AIM Search - res://C:Program FilesAIM ToolbarAIMBar.dll/aimsearch.htmO8 - Extra context menu item: &Google Search - res://c:program filesgoogleGoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:program filesgoogleGoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: &Viewpoint Search - res://C:Program FilesViewpointViewpoint ToolbarViewBar.dll/CXTSEARCH.HTML O8 - Extra context menu item: Backward Links - res://c:program filesgoogleGoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:program filesgoogleGoogleToolbar2.dll/cmcache.html O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:PROGRA~1MICROS~2Office10EXCEL.EXE/3000 O8 - Extra context menu item: Similar Pages - res://c:program filesgoogleGoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Translate Page into English - res://c:program filesgoogleGoogleToolbar2.dll/cmtrans.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.5.0_06inssv.dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.5.0_06inssv.dllO9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:PROGRA~1SPYWAR~1 oolsiesdpb.dllO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe (file missing)O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) http://v5.windowsupdate.microsoft.co...?1093720813389 O16 - DPF: {ED28050F-D713-43BA-A376-DCC5C35407D5} (MsnMusicAx Class) - https://music.msn.com/client/msnmusax4017.cab O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/...ampx_en_dl.cab O20 - AppInit_DLLs: C:PROGRA~1GoogleGOOGLE~1GOEC62~1.DLL
O20 - Winlogon Notify: WgaLogon - C:WINDOWSSYSTEM32WgaLogon.dll O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:Program FilesSymantecLiveUpdateALUSchedulerSvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccEvtMgr.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccSetMgr.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:WINDOWSSystem32CTsvcCDA.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe O23 - Service: iPodService - Apple Computer, Inc. - C:Program FilesiPodiniPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:WINDOWSsystem32LEXBCES.EXE O23 - Service: LiveUpdate - Symantec Corporation - C:PROGRA~1SymantecLIVEUP~1LUCOMS~1.EXE O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:Program FilesNorton AntiVirus avapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:Program FilesNorton AntiVirusIWPNPFMntor.exe O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedSecurity ConsoleNSCSRVCE.EXE O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:WINDOWSSystem32 vsvc32.exe O23 - Service: Provision Networks Update Service (PNUpdate) - Provision Networks - C:WINDOWSsystem32PNUpdate.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:Program FilesNorton AntiVirusSAVScan.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:Program FilesSpyware Doctorsdhelp.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedSNDSrvc.exe O23 - Service: SPBBCSvc - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedSPBBCSPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:WINDOWSsystem32oneLabsvsmon.exe
View 14 Replies
View Related
Jan 6, 2008
I keep getting this error "One of the USB devices attached to this computer has malfunctioned, and Windows does not recognize it". And if I leave my PC on to long the keyboard, mouse, and sometimes even the monitor stop working. I've tried unplugging the keyboard and mouse (which are not USB) and plugging them back in, but to no avail.
View 8 Replies
View Related
May 18, 2008
I have a laptop that runs Windows XP. Recently I opened it and an error message that says that the computer is locked and only the administrator can log on appeared. But, I'm the administrator of the computer! It is not apart of any network so no one else was using it.The keyboard is also locked so I can't type anything.
View 5 Replies
View Related
May 10, 2010
Lately my computer has been extremely slow, not just internet slow but onboard slow. For example, if I click on an application from the desktop it will sit there for 10-20 seconds before anything happens. Occasionally I'll click multiple times on something and nothing will happen then 30 seconds later it will open multiple instances of things. This delay has been happening with just about anything I click on, acting like the computer's busy doing something else when nothing else should be going on. I've looked in the task manager and the applications column will be blank
View 14 Replies
View Related
Dec 23, 2008
This is a Windows XP sp3 domain connected PC with one specific user, which all of a sudden takes 2.5mins to log in to the domain, Where it used to take just about 20 seconds. Other users on the same PC is all OK 20sec login This is not the usual where it hangs at "applying computer settings" or "personal settings" it's after those two has passed that it just hangs for a couple of minutes.
All i get is the mouse pointer (not even hourglass) and the desktop wallpaper for about 2-3 minutes. When it finally logs in everything is as quick as you would expect that spec of PC to be (1,6ghz Sempron, 1gb RAM, 40gb IDE-100 HDD)
View 1 Replies
View Related
Sep 26, 2006
computer now takes half an hour to an hour to reboot. in doing so, it tells me that it does not do the startup and services. it is so slow it is unbelievable. sometimes even being so slow that the words we type take a few seconds to show up on the screen. after working for a time it will invariably hang. or it will shut itself down. in either case we have to reboot, it takes that half an hour to an hour again
View 6 Replies
View Related
Jan 4, 2006
My pc was working just fine a few days ago then last night i go on it was just dragging.Everything was loading slow despite the fact i have even firefox was loading slow which it never does.Anyway i asked my sister who was the last one on if she clicked on anything but no surprise the reply was I didn't do anything so i guess it was a ghost .I ran NAV but nothing found then again NAV doesn't seem to find anything
View 6 Replies
View Related
Sep 8, 2006
Pc taking for ever to load, mouse slow too...
View 6 Replies
View Related
Nov 22, 2009
I am running PC, Windows XP and recently had several viruses deleted from system. Problem started when running Internet Explorer and would receive an error tab every time stating IE must close. The data error was a mcsvrt.dll problem. Now when I start the computer it takes 10-15 minutes to boot completely and accessing Mozilla or any apps after about 3-4 mins takes ages. It runs so slow, something has it almost completely bogged down. I run spybot but after a while it freezes up
View 3 Replies
View Related
Oct 23, 2006
It can't even seem to keep up with my typing. Ugh. I use AVG free, and it is current and doesn't detect any problems.
View 14 Replies
View Related
Aug 30, 2007
I have an HP. Personally, I think it's a great computer but it's extremely slow and it crashes randomly. Also, I keep losing internet connection. My ISP is cox and I also have vonage so they're connected to each other
View 2 Replies
View Related
Oct 9, 2008
I am working with a Dell 2400 running Windows XP Service Pack 3 with a Pentium 4 2.8 GHz processor and 1.2 gig of ram. It still seems particularly slow. I am not sure if it some of the applications that I am running like Norton 360 or some of my settings.
View 6 Replies
View Related
Aug 7, 2005
Win XP HE SP2. Dell 8300 3.0 Ghz .PC takes minutes from startup to desktop. All programs much slower than usual.I regularly use Defrag, Have Microsoft anti spyware, Panda anti virus, Ad Aware Spybot, System Mechanic Pro.etc.Have tried everything!
View 9 Replies
View Related
Jan 23, 2009
Why is it taking my computer 3 minutes to boot to the desktop? As you can see from my signature below, I don't have exactly a slow poke machine. All drives are defragged weekly, the BIOS is set to boot off of the hard disk, and I only have the one OS installed.This thing use to boot to the desktop in 20 seconds.
View 12 Replies
View Related
Mar 3, 2005
Out of the blue, my computer started getting slow. Sometimes its ok, and then it will be on the verge of freezing.. then get itself back together. I realized, when I start up, it takes FOREVER. It also shows this screen I have never seen before. Its completely black, and has a line of grey rectangles from side to side. and slowly loads across. When it is finally finished 10-15 minutes it will slowly start up in regular fashion
View 14 Replies
View Related
Aug 29, 2007
512MB, 80GB Hard Drive, Windows XP SP2, IE 7.0. Everything runs extremely slow, even downloading HighJackThis. Some stuff on his computer I feel is highjacking and adding malware, spyware, etc. An example is PalTalk. You guys did an outstanding job on fine tuning my main computer and would appreciate any help you can give me on computer 2
View 5 Replies
View Related
Feb 8, 2010
My problem is that my internet connection is pretty slow on my main computer. It's an older (6 years) Dell. I'm still running XP and IE7. I have Comcast cable and it's connected through a Linksys modem. The problem is that the internet response on this machine is pretty slow. I have a laptop that I use and that is much better. I would figure that my "main" computer would be faster since it has a hard connection, not wireless. I know that isn't much info so ask away and I do what I can to provide all the info needed.
View 14 Replies
View Related
Aug 22, 2005
when ever I try to open up my computer it comes up and does the flaslight thing for approximatley 20 seconds.I open up Internet explorer and it opens fine but when I go to put an address into the address bar it takes the thing far to long to open the page
View 1 Replies
View Related
May 24, 2010
HP & My GHZ is 2.53 & my memory Ram is 768 and the hard drive is 120 GB @7200 RPM
Friends computer running slow. These are his stats. Don't make any since to me. Can anyone make heads or tails from this. I am thinking that maybe the computer is getting old and needs replaced
View 10 Replies
View Related
Jun 20, 2005
My XP SP2 is not detecting any new printer attached. Both parallel and USB ports are not being detected. When I connect the printer and reboot, its like nothing at all has happened. The PC sits there finished booting, calm and quiet. They were being detected and installed some time ago. I suspect it might be a window corruption.. or some registry problem. Is there any way to refresh the windows registery so that it will start picking up printers again? Other devices like memory stick, external hard disk etc. are being picked up and working fine with USB
View 1 Replies
View Related
Jan 29, 2005
Having problems with popups all of a sudden, I'v never used hijack before and not really sure of what I'm looking at. I did attach a copy of log. Logfile of HijackThis v1.99.0 Scan saved at 4:45:27 PM, on 1/29/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:WINDOWSSystem32smss.exe C:WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe C:WINDOWSsystem32lsass.exeC:WINDOWSsystem32svchost.exeC:WINDOWSSystem32svchost.exe C:WINDOWSsystem32spoolsv.exe C:WINDOWSsystem32CTsvcCDA.EXE C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE
C:WINDOWSsystem32 vsvc32.exe C:WINDOWSsystem32MsPMSPSv.exe C:WINDOWSExplorer.EXE C:Program FilesCommon FilesRealUpdate_OB ealsched.exe
C:WINDOWSsystem32CTHELPER.EXE C:Program FilesMUSICMATCHMUSICMATCH Jukeboxmmtask.exe C:WINDOWSsystem32Ubxoiw.exe C:WINDOWSsystem32ctfmon.exe C:DOCUME~1JackLOCALS~1TempTemporary Directory 1 for hijackthis.zipHijackThis.exe R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.cnn.com/ R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.cnn.com/ R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page = R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Local Page = R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:Program FilesICQToolbar oolbaru.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesAdobeAcrobat 6.0ReaderActiveXAcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:Program FilesSpybot - Search & DestroySDHelper.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:Program FilescontMediaAnatomical Atlas HRMSDXM.OCX O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:Program FilesICQToolbar oolbaru.dll O4 - HKLM..Run: [UpdReg] C:WINDOWSUpdreg.exe
O4 - HKLM..Run: [CTStartup] C:Program FilesCreativeSBAudigyProgramCTEaxSpl.EXE /run O4 - HKLM..Run: [QuickTime Task] "C:Program FilesQuickTimeqttask.exe" -atboottime O4 - HKLM..Run: [TkBellExe] "C:Program FilesCommon FilesRealUpdate_OB ealsched.exe" -osboot
O4 - HKLM..Run: [KernelFaultCheck] %systemroot%system32dumprep 0 -k O4 - HKLM..Run: [CTHelper] CTHELPER.EXE O4 - HKLM..Run: [mmtask] C:Program FilesMUSICMATCHMUSICMATCH Jukeboxmmtask.exe O4 - HKLM..Run: [version] C:WINDOWSsystem32Srkgph.exe O4 - HKLM..Run: [secure] C:WINDOWSsystem32Ubxoiw.exe O4 - HKLM..Run: [gcasServ] "C:Program FilesMicrosoft AntiSpywaregcasServ.exe" O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe O4 - HKCU..Run: [TaskTray] "C:Program FilesCreativeTaskBarCTLTray.exe" O4 - HKCU..Run: [TaskBar] "C:Program FilesCreativeTaskBarCTLTask.exe" O8 - Extra context menu item: &ICQ Toolbar Search - res://C:Program FilesICQToolbar oolbaru.dll/SEARCH.HTML O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavaj2re1.4.2_05in
pjpi142_05.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavaj2re1.4.2_05in pjpi142_05.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL
O9 - Extra button: ICQ 4 - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:Program FilesICQLiteICQLite.exe O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:Program FilesICQLiteICQLite.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2- 9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15009/CTSUEng.cab O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/S...in/AvSniff.cab O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02a.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class)- http://v5.windowsupdate.microsoft.co...?1094006758724 O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/S.../bin/cabsa.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2...ll/xscan53.cab O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://floridakeysmedia.tv/axiscam/C...CamControl.ocx O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10...o.cab33902.cab O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15010/CTPID.cab O23 - Service: Adobe LM Service - Unknown - C:Program FilesCommon FilesAdobe Systems SharedServiceAdobelmsvc.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:WINDOWSsystem32CTsvcCDA.EXE O23 - Service: NVIDIA Driver Helper Service - NVIDIA Corporation - C:WINDOWSsystem32
vsvc32.exe
View 4 Replies
View Related
Jan 20, 2005
My computer is running very slow. I know it is is spyware. Also I can't open any websites and get random advertisments.Logfile of HijackThis v1.99.0 Scan saved at 7:39:49 AM, on 1/20/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:WINDOWSSystem32smss.exe C:WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe C:WINDOWSsystem32svchost.exe C:WINDOWSSystem32svchost.exe C:WINDOWSExplorer.EXE C:WINDOWSsystem32spoolsv.exe
C:Program FilesAdmanager ControllerAdManCtl.exe C:Program FilesISTsvcistsvc.exe C:WINDOWS etkp.exe C:Program FilesAdmanager ControllerAdManKeep.exe C:PROGRA~1GrisoftAVG7avgamsvr.exe C:PROGRA~1GrisoftAVG7avgupsvc.exe C:WINDOWSsystem32addsb32.exe
C:WINDOWSsystem32wuauclt.exe C:WINDOWSsystem32wscntfy.exe C:DOCUME~1RIOCOL~1LOCALS~1TempTemporary Directory 2 for hijackthis.zipHijackThis.exe R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = res://C:WINDOWSpzgdv.dll/sp.html#28129 R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSpzgdv.dll/sp.html#28129 R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = about:blank R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = res://C:WINDOWSpzgdv.dll/sp.html#28129 R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = res://C:WINDOWSpzgdv.dll/sp.html#28129 R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSpzgdv.dll/sp.html#28129 R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSpzgdv.dll/sp.html#28129 R3 - Default URLSearchHook is missing O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesAdobeAcrobat 7.0ActiveXAcroIEHelper.dll O2 - BHO: (no name) - {7D84605B-257F-35AC-B82F-7E711C985FBD} - C:WINDOWSsystem32winvh32.dll O4 - HKLM..Run: [Admanager Controller] C:Program FilesAdmanager ControllerAdManCtl.exe O4 - HKLM..Run: [IST Service] C:Program FilesISTsvcistsvc.exe O4 - HKLM..Run: [netkp.exe] C:WINDOWS
etkp.exe O4 - HKLM..RunServices: [WindowsRegKey Autoupdate] explorer.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2- 9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O15 - Trusted Zone: *.frame.crazywinnings.com O15 - Trusted Zone: *.static.topconverting.com O15 - Trusted Zone: *.frame.crazywinnings.com (HKLM) O15 - Trusted Zone: *.static.topconverting.com (HKLM)
O23 - Service: AVG7 Alert Manager Server - GRISOFT, s.r.o. - C:PROGRA~1GrisoftAVG7avgamsvr.exe O23 - Service: AVG7 Update Service - GRISOFT, s.r.o. - C:PROGRA~1GrisoftAVG7avgupsvc.exe O23 - Service: Macromedia Licensing Service - Unknown - C:Program FilesCommon FilesMacromedia SharedServiceMacromedia Licensing.exe O23 - Service: Workstation NetLogon Service - Unknown -C:WINDOWSsystem32addsb32.exe
View 14 Replies
View Related
Mar 29, 2010
I've been getting a BSOD, and I can't seem to pin down what might be causing it. I've attached the minidump to this.
View 10 Replies
View Related