Check On My Hijack This Log File - Infected Computer
Jul 31, 2005who can tell what to check on my hijack this log file, my computer is infected bad.
View 5 Replieswho can tell what to check on my hijack this log file, my computer is infected bad.
View 5 RepliesThis is from my own computer ,it seems to have got slower and slower in starting up.
View 11 Replies View RelatedLogfile of HijackThis v1.99.0 Scan saved at 2:30:42 PM, on 01/14/2005 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe............
i don`t think why the computer`s running slow again.. please check the HijackThis file...
Logfile of HijackThis v1.99.0
Scan saved at 2:32:39 PM, on 12/30/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
every 2 minutes i have the message on my desktop "windows security potential spyware operation . your computer is making unauthorized copies of your system and internet files . run full scan now to pervent any unathorised access to your files click here to download spyware remover..."
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:38:16 PM, on 9/11/2007
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe........
dont know how to reviewing and cleaning Hijack this log file?
View 11 Replies View RelatedI am getting an error message from AOL safety. It reads "We found and were not able to clean or block a virus infected file. (C:windowssystem32winlogon.exe) My operating system is Windows XP.
View 4 Replies View RelatedPrograms closing out on their own or just hanging up.
Below are two logs you might need to help me. I've tried a system restore but it does not have any dates prior to Feb 4th which is also odd because it's always been on. I've run Spybot and Ad-Aware and AVG with no luck.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:27:32 PM, on 2/18/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSSystem32Ati2evxx.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32Ati2evxx.exe
C:Program FilesLavasoftAd-Aware 2007aawservice.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSSystem32PackethSvc.exe
C:Program FilesCommon FilesAOLACSAOLAcsd.exe
C:PROGRA~1GrisoftAVG7avgamsvr.exe
C:PROGRA~1GrisoftAVG7avgupsvc.exe
C:PROGRA~1GrisoftAVG7avgemc.exe
C:WINDOWSSystem32svchost.exe
c:PROGRA~1mcafee.comvsomcvsrte.exe
C:WINDOWSSystem32
vsvc32.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesViewpointCommonViewpointService.exe
C:Program Filesmcafee.comVSOmcshield.exe
C:windowssystemhpsysdrv.exe
C:HPKBDKBD.EXE
C:Program FilesWildTangentDDCDDCManagerDDCMan.exe
C:Program FilesRealRealPlayerRealPlay.exe
C:Program FilesCommon FilesAOL1192911245eeAOLSoftware.exe
C:Program FilesSeagateSystemTrayStxMenuMgr.exe
C:Program FilesBellSouthAMBellSouthAlertManager.exe
C:Program FilesBellsouthHelpCenter40binsprtcmd.exe
C:PROGRA~1GrisoftAVG7avgcc.exe
C:Program FilesJavajre1.6.0_03injusched.exe
C:Program FilesCommon FilesAOLLoaderaolload.exe
C:Program FilesMacrogamingSweetIMSweetIM.exe
C:PROGRA~1EROKN~1FreedomFreedom.exe
C:Program FilesSpybot - Search & DestroyTeaTimer.exe
C:Program FilesCreativeSync Manager UnicodeCTSyncU.exe
C:Program FilesWindows Media PlayerWMPNSCFG.exe
C:Program FilesAOL 9.1waol.exe
C:Program FilesCommon FilesAOLLoaderaolload.exe
C:WINDOWSexplorer.exe
C:Program FilesAOL 9.1shellmon.exe
C:Program FilesMozilla Firefoxfirefox.exe
C:WINDOWSsystem32wuauclt.exe
C:Documents and SettingsHijack thisHijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://us4.hpwis.com/
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://srch-us4.hpwis.com/
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://hometab.bellsouth.net/
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://srch-us4.hpwis.com/
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://srch-us4.hpwis.com/
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://srch-us4.hpwis.com/
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://home.sweetim.com
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant =
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch = http://srch-us4.hpwis.com/
R3 - URLSearchHook: AOLTBSearch Class - {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - C:Program FilesAOLAOL Toolbar 5.0aoltb.dll
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:PROGRA~1Yahoo!CompanionInstallscpnyt.dll (file missing)
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:PROGRA~1Yahoo!CompanionInstallscpnyt.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesAdobeAcrobat 5.0ReaderActiveXAcroIEHelper.ocx
O2 - BHO: AT&T Toolbar - {4E7BD74F-2B8D-469E-8CBD-FD60BB9AAE2E} - C:PROGRA~1BLSTOO~1BLSTOO~1.DLL
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:PROGRA~1SPYBOT~1SDHelper.dll
O2 - BHO: Freedom BHO - {56071E0D-C61B-11D3-B41C-00E02927A304} - C:Program Filesero KnowledgeFreedomFreeBHOR.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:Program FilesYahoo!Commonyiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:Program FilesJavajre1.6.0_03inssv.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:Program FilesAOLAOL Toolbar 5.0aoltb.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:Program FilesCommon FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:Program FilesWindows Live Toolbarmsntb.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - c:Program FilesMicrosoft MoneySystemmnyviewer.dll
O3 - Toolbar: &Zero-Knowledge Freedom - {FA91B828-F937-4568-82C1-843627E63ED7} - C:Program Filesero KnowledgeFreedomBandObjs.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:Program FilesAOLAOL Toolbar 5.0aoltb.dll
O3 - Toolbar: AT&T Toolbar - {4E7BD74F-2B8D-469E-8CBD-FD60BB9AAE2E} - C:PROGRA~1BLSTOO~1BLSTOO~1.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:PROGRA~1Yahoo!CompanionInstallscpnyt.dll (file missing)
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:Program FilesWindows Live Toolbarmsntb.dll
O4 - HKLM..Run: [hpsysdrv] c:windowssystemhpsysdrv.exe
O4 - HKLM..Run: [KBD] C:HPKBDKBD.EXE
O4 - HKLM..Run: [DDCM] "C:Program FilesWildTangentDDCDDCManagerDDCMan.exe" -Background
O4 - HKLM..Run: [DDCActiveMenu] "C:Program FilesWildTangentDDCActiveMenuDDCActiveMenu.exe" -boot
O4 - HKLM..Run: [Recguard] C:WINDOWSSMINSTRECGUARD.EXE
O4 - HKLM..Run: [IgfxTray] C:WINDOWSSystem32igfxtray.exe
O4 - HKLM..Run: [HotKeysCmds] C:WINDOWSSystem32hkcmd.exe
O4 - HKLM..Run: [S3TRAY2] S3tray2.exe
O4 - HKLM..Run: [PS2] C:WINDOWSsystem32ps2.exe
O4 - HKLM..Run: [VirusScan Online] C:Program Filesmcafee.comVSOmcvsshld.exe
O4 - HKLM..Run: [MCAgentExe] C:Program Filesmcafee.comAgentmcagent.exe
O4 - HKLM..Run: [MCUpdateExe] C:Program Filesmcafee.comAgentmcupdate.exe /embedding
O4 - HKLM..Run: [RealTray] C:Program FilesRealRealPlayerRealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM..Run: [HostManager] C:Program FilesCommon FilesAOL1192911245eeAOLSoftware.exe
O4 - HKLM..Run: [StxTrayMenu] "C:Program FilesSeagateSystemTrayStxMenuMgr.exe"
O4 - HKLM..Run: [BellSouthAlertManager.exe] "C:Program FilesBellSouthAMBellSouthAlertManager.exe" /AUTORUN
O4 - HKLM..Run: [HelpCenter4.1] C:Program FilesBellsouthHelpCenter40binsprtcmd.exe /P HelpCenter4.1
O4 - HKLM..Run: [AVG7_CC] C:PROGRA~1GrisoftAVG7avgcc.exe /STARTUP
O4 - HKLM..Run: [SunJavaUpdateSched] "C:Program FilesJavajre1.6.0_03injusched.exe"
O4 - HKLM..Run: [FastAccess Help] C:Program FilesBellSouth Application Managementcontent..Start.exe
O4 - HKLM..Run: [SweetIM] C:Program FilesMacrogamingSweetIMSweetIM.exe
O4 - HKLM..Run: [googletalk] C:Program FilesGoogleGoogle Talkgoogletalk.exe /autostart
O4 - HKLM..RunOnce: [*Restore] C:WINDOWSsystem32
estore
strui.exe -i
O4 - HKCU..Run: [Zero Knowledge Freedom] C:PROGRA~1EROKN~1FreedomFreedom.exe
O4 - HKCU..Run: [Microsoft Works Update Detection] c:Program FilesMicrosoft WorksWkDetect.exe
O4 - HKCU..Run: [SweetIM] C:Program FilesMacrogamingSweetIMSweetIM.exe
O4 - HKCU..Run: [SpybotSD TeaTimer] C:Program FilesSpybot - Search & DestroyTeaTimer.exe
O4 - HKCU..Run: [MsnMsgr] "C:Program FilesWindows LiveMessengerMsnMsgr.Exe" /background
O4 - HKCU..Run: [CTSyncU.exe] "C:Program FilesCreativeSync Manager UnicodeCTSyncU.exe"
O4 - HKCU..Run: [AOL Fast Start] "C:Program FilesAOL 9.1AOL.EXE" -b
O4 - HKCU..Run: [WMPNSCFG] C:Program FilesWindows Media PlayerWMPNSCFG.exe
O4 - HKUSS-1-5-19..Run: [AVG7_Run] C:PROGRA~1GrisoftAVG7avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUSS-1-5-20..Run: [AVG7_Run] C:PROGRA~1GrisoftAVG7avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUSS-1-5-18..Run: [AVG7_Run] C:PROGRA~1GrisoftAVG7avgw.exe /RUNONCE (User 'SYSTEM')
O4 - HKUS.DEFAULT..Run: [AVG7_Run] C:PROGRA~1GrisoftAVG7avgw.exe /RUNONCE (User 'Default user')
O4 - .DEFAULT User Startup: AutoPlay.exe (User 'Default user')
O8 - Extra context menu item: &AOL Toolbar Search - c:program filesaolaol toolbar 5.0
esourcesen-USlocalsearch.html
O8 - Extra context menu item: &Windows Live Search - res://C:Program FilesWindows Live Toolbarmsntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.6.0_03inssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.6.0_03inssv.dll
O9 - Extra button: MktBrowser - {17A27031-71FC-11d4-815C-005004D0F1FA} - C:Program FilesMarketBrowserlmtMarketBrowser_Launch.xpy
O9 - Extra 'Tools' menuitem: MarketBrowser - {17A27031-71FC-11d4-815C-005004D0F1FA} - C:Program FilesMarketBrowserlmtMarketBrowser_Launch.xpy
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:Program FilesWindows LiveWriterWriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:Program FilesWindows LiveWriterWriterBrowserExtension.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:Program FilesAOLAOL Toolbar 5.0aoltb.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:Program FilesYahoo!Commonyiesrvc.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:WINDOWSSystem32Shdocvw.dll
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:Documents and SettingsOwnerStart MenuProgramsIMVURun IMVU.lnk
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:PROGRA~1SPYBOT~1SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:PROGRA~1SPYBOT~1SDHelper.dll
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:Program FilesMicrosoft MoneySystemmnyviewer.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe
O12 - Plugin for .spop: C:Program FilesInternet ExplorerPluginsNPDocBox.dll
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:Program FilesYahoo!CommonYinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/wind...?1193621932743
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/micr...?1193622525202
O17 - HKLMSystemCCSServicesTcpip..{9FE0C803-14C4-45C9-A72D-398BC835A8D4}: NameServer = ,
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:PROGRA~1COMMON~1SkypeSKYPE4~1.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:Program FilesLavasoftAd-Aware 2007aawservice.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:Program FilesCommon FilesAOLACSAOLAcsd.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:WINDOWSSystem32Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:PROGRA~1GrisoftAVG7avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:PROGRA~1GrisoftAVG7avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:PROGRA~1GrisoftAVG7avgemc.exe
O23 - Service: McAfee.com McShield (McShield) - Unknown owner - C:Program Filesmcafee.comVSOmcshield.exe
O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Mcafee.com Corporation - c:PROGRA~1mcafee.comvsomcvsrte.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:WINDOWSSystem32
vsvc32.exe
O23 - Service: Virtual NIC Service (PackethSvc) - America Online, Inc. - C:WINDOWSSystem32PackethSvc.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:Program FilesViewpointCommonViewpointService.exe
--
End of file - 12660 bytes
could someone check this HJT log please?
Logfile of HijackThis v1.99.0
Scan saved at 19:48:20, on 13/01/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
the hijackthis log and tell me why my computer is running slow?
Logfile of HijackThis v1.99.1
Scan saved at 10:31:23 PM, on 2/19/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
I used spybot and removed 111 objects, adware 48 and Microsoft Antispyware tool 20 objects. However my computer is still running slow. My hijackthis log is attached please help.
Logfile of HijackThis v1.98.2
Scan saved at 4:23:49 PM, on 5/10/2005
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
what I'm thinking is that I'm just going to have to pay & get this pc cleaned because after I go thru all the steps to correct it.later it starts freezing and stuff sooo bad that I always have to reset it like you do when you first by the pc because it won't let me estore pc using restore systems. So, here is my hijack this log. Logfile of HijackThis v1.99.1 Scan saved at 11:49:15 AM, on 10/13/2005
Platform: Windows XP (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 (6.00.2600.0000) Running processes:C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe C:WINDOWSsystem32lsass.exe C:WINDOWSsystem32svchost.exe C:WINDOWSSystem32svchost.exe C:WINDOWSExplorer.EXE C:WINDOWSsystem32spoolsv.exe C:windowssystemhpsysdrv.exe C:Program FilesHewlett-PackardDigital ImagingUnloadhpqcmon.exe C:Program FilesVERITAS SoftwareUpdate Managersgtray.exe C:WINDOWSsystem32dla fswctrl.exe
C:WINDOWSSystem32igfxtray.exe C:WINDOWSSystem32hkcmd.exe C:WINDOWSsystem32ps2.exe C:WINDOWSetbpokapoka75.exe C:WINDOWSSystem32w?auclt.exe
C:Program Filesapsiwtta.exe C:Program Fileshp center137903ProgramBackWeb-137903.exe c:Program FilesNorton AntiVirus avapsvc.exe
C:Program FilesInternet Exploreriexplore.exe C:Program Filesewidosecurity suiteSecuritySuite.exe C:Program FilesInternet Exploreriexplore.exe C:Program FilesHijackThisHijackThis.exe R1 - HKCUSoftwareMicrosoftInternet Explorer,SearchURL =http://www.24-7searching-and-more.com/sp2.php R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://us6.hpwis.com/
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://srch-us6.hpwis.com/ R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://www.24-7searching-and-more.com/sp2.php R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://www.24-7searching-and-more.com/sp2.php R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.yahoo.com/
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://us6.hpwis.com/ R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://srch-us6.hpwis.com/ R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://srch-us6.hpwis.com/ R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://srch-us6.hpwis.com/ R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://us6.hpwis.com/ R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = http://srch-us6.hpwis.com/ R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch = http://srch-us6.hpwis.com/ R1 - HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = http://us.rd.yahoo.com/customize/yco.../www.yahoo.com R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = localhost O4 - HKLM..Run: [hpsysdrv] c:windowssystemhpsysdrv.exe O4 - HKLM..Run: [CamMonitor] c:Program FilesHewlett-PackardDigital ImagingUnloadhpqcmon.exe O4 - HKLM..Run: [StorageGuard] "C:Program FilesVERITAS SoftwareUpdate Managersgtray.exe" /r O4 - HKLM..Run: [dla] C:WINDOWSsystem32dla fswctrl.exe
O4 - HKLM..Run: [DDCActiveMenu] "C:Program FilesWildTangentDDCActiveMenuDDCActiveMenu.exe" -boot O4 - HKLM..Run: [Recguard] C:WINDOWSSMINSTRECGUARD.EXE O4 - HKLM..Run: [IgfxTray] C:WINDOWSSystem32igfxtray.exe O4 - HKLM..Run: [HotKeysCmds] C:WINDOWSSystem32hkcmd.exe O4 - HKLM..Run: [PS2] C:WINDOWSsystem32ps2.exe O4 - HKLM..Run: [IST Service] C:Program FilesISTsvcistsvc.exe
O4 - HKLM..Run: [System service75] C:WINDOWSetbpokapoka75.exe O4 - HKCU..Run: [MSMSGS] "C:Program FilesMessengermsmsgs.exe" /background
O4 - HKCU..Run: [Mrqx] C:WINDOWSSystem32w?auclt.exe O4 - HKCU..Run: [Notn] "C:Program Filesapsiwtta.exe" -vt mt O4 - Global Startup: hp center.lnk = C:Program Fileshp center137903ProgramBackWeb-137903.exe O16 - DPF: Yahoo! Pyramids - http://download.games.yahoo.com/game...s/y/pyt1_x.cab O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com download.yaho...st20040510.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab O20 - Winlogon Notify: igfxcui - C:WINDOWSSYSTEM32igfxsrvc.dll O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - c:Program FilesNorton AntiVirus avapsvc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:WINDOWSSystem32 vsvc32.exe O23 - Service: Windows 32 Bit (Windows 32 Bit Drivers) - Unknown owner - C:WINDOWSWinVid32.exe
Computer seems to be slowed down, PLUS it seems to slow down its internet connection that is max 10 mips down, to a crawl, then it speeds back up. Cable claims all is okay on their end, and is something on my system. If someone can tell me if there is anything running in this HJ log that shouldn't be, or that I don't need to have running, Logfile of HijackThis v1.99.1 Scan saved at 1:21:21 PM, on 4/11/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes:
C:WINDOWSSystem32smss.exe C:WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe C:WINDOWSsystem32lsass.exe C:WINDOWSsystem32svchost.exe C:Windows DefenderMsMpEng.exe C:WINDOWSsystem32svchost.exe C:Program FilesCommon FilesSymantec SharedccProxy.exe C:Program FilesCommon FilesSymantec SharedccSetMgr.exe C:Norton Personal FirewallISSVC.exe C:Program FilesCommon FilesSymantec SharedSNDSrvc.exe C:Program FilesCommon FilesSymantec SharedSPBBCSPBBCSvc.exe C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe C:WINDOWSExplorer.EXE C:Program FilesCommon FilesSymantec SharedccEvtMgr.exe C:WINDOWSsystem32rsvc01a.exe
C:WINDOWSsystem32rss01a.exe C:WINDOWSsystem32spoolsv.exe C:Program FilesSymantecLiveUpdateALUSchedulerSvc.exe C:WINDOWSsystem32CTsvcCDA.EXE C:Norton SystemWorksNorton AntiVirusIWPNPFMntor.exe C:NORTON~1NORTON~1NPROTECT.EXE C:WINDOWSsystem32PSIService.exe C:NORTON~1NORTON~1SPEEDD~1NOPDB.EXE C:WINDOWSsystem32svchost.exe C:WINDOWSsystem32WFXSVC.EXE C:WINDOWSsystem32MsPMSPSv.exe C:WINDOWSsystem32hkcmd.exe C:Windows DefenderMSASCui.exe C:Program FilesCommon FilesSymantec SharedccApp.exe C:WINDOWSsystem32wfxsnt40.exe C:Program FilesMicrosoft IntelliType Proitype.exe C:WINDOWSsystem32ctfmon.exe C:LogitechMouseWaresystemem_exec.exe C:WinZipwinzip32.exe C:DoughijackthisHijackThis.exe R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.cnn.com/ R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyServer = ftp=localhost:8118;gopher=localhost:8118;http=localhost:8118;https=localhos t:8118;socks=localhost:8118 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesAdobeAcrobat 7.0ActiveXAcroIEHelper.dll O2 - BHO: Norton Personal Firewall - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:Program FilesCommon FilesSymantec SharedAdBlockingNISShExt.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:Norton SystemWorksNorton AntiVirusNavShExt.dll O3 - Toolbar: Norton Personal Firewall - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:Program FilesCommon FilesSymantec SharedAdBlockingNISShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:Norton SystemWorksNorton AntiVirusNavShExt.dll O4 - HKLM..Run: [IgfxTray] C:WINDOWSsystem32igfxtray.exe O4 - HKLM..Run: [HotKeysCmds] C:WINDOWSsystem32hkcmd.exe O4 - HKLM..Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM..Run: [UpdReg] C:WINDOWSUpdReg.EXE O4 - HKLM..Run: [Windows Defender] "C:Windows DefenderMSASCui.exe" -hide O4 - HKLM..Run: [QuickTime Task] "C:Program FilesQuickTimeqttask.exe" -atboottime O4 - HKLM..Run: [ccApp] "C:Program FilesCommon FilesSymantec SharedccApp.exe" O4 - HKLM..Run: [Symantec NetDriver Monitor] C:PROGRA~1SYMNET~1SNDMon.exe /Consumer O4 - HKLM..Run: [WinFaxAppPortStarter] wfxsnt40.exe O4 - HKLM..Run: [itype] "c:Program FilesMicrosoft IntelliType Proitype.exe" O4 - HKLM..RunOnce: [WIAWizardMenu] RUNDLL32.EXE C:WINDOWSsystem32sti_ci.dll,WiaCreateWizardMenu O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe
O4 - HKCU..Run: [Norton SystemWorks] "C:Norton SystemWorkscfgwiz.exe" /GUID {05858CFD-5CC4-4ceb-AAAF-CF00BF39736A} /MODE CfgWiz O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:MICROS~1OFFICE11EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Javain pjpi150_04.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Javain pjpi150_04.dll O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://www.activation.rr.com/install...ds/tgctlcm.cab O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {238F6F83-B8B4-11CF-8771-00A024541EE3} - http://a516.g.akamai.net/f/516/25175...at-no-eula.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1155682376421 O20 - Winlogon Notify: igfxcui - C:WINDOWSSYSTEM32igfxsrvc.dll O20 - Winlogon Notify: WgaLogon - C:WINDOWSSYSTEM32WgaLogon.dll O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing) O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:WINDOWSsystem32WPDShServiceObj.dll O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:Program FilesSymantecLiveUpdateALUSchedulerSvc.exe O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:WINDOWSsystem32rsvc01a.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedccSetMgr.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:WINDOWSsystem32CTsvcCDA.EXE O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:Program FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:Norton Personal FirewallISSVC.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:PROGRA~1SymantecLIVEUP~1LUCOMS~1.EXE O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:Norton SystemWorksNorton AntiVirus avapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:Norton SystemWorksNorton AntiVirusIWPNPFMntor.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:NORTON~1NORTON~1NPROTECT.EXE O23 - Service: ProtexisLicensing - Unknown owner - C:WINDOWSsystem32PSIService.exe O23 - Service: SAVScan - Symantec Corporation - C:Norton SystemWorksNorton AntiVirusSAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:PROGRA~1COMMON~1SYMANT~1SCRIPT~1SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedSNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedSPBBCSPBBCSvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:NORTON~1NORTON~1SPEEDD~1NOPDB.EXE O23 - Service: Symantec Core LC - Symantec Corporation - C:Program FilesCommon FilesSymantec SharedCCPD-LCsymlcsvc.exe O23 - Service: WinFax PRO (wfxsvc) - Symantec Corporation - C:WINDOWSsystem32WFXSVC.EXE
Lately my PC freezes up for virtually no reason. The computer is older but runs just fine besides the freezing up. Not sure if its just time to get a new computer or if its just a glitch. I've attached a hijackthis log, hopefully if there is a glitch we can find it. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 4:55:49 PM, on 11/14/2008 Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735) Boot mode: Normal Running processes: C:WINDOWSSystem32smss.exe C:WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe C:WINDOWSsystem32lsass.exe C:WINDOWSsystem32svchost.exe C:Program FilesWindows DefenderMsMpEng.exe C:WINDOWSSystem32svchost.exe C:WINDOWSsystem32svchost.exe C:WINDOWSExplorer.EXE C:WINDOWSsystem32spoolsv.exe C:PROGRA~1COMMON~1aolACSAOLacsd.exe C:Program FilesCommon FilesAppleMobile Device SupportinAppleMobileDeviceService.exe C:PROGRA~1AVGAVG8avgwdsvc.exe C:Program FilesBonjourmDNSResponder.exe C:Program FilesWIDCOMMBluetooth Softwareintwdins.exe C:WINDOWSsystem32cisvc.exe C:WINDOWSSystem32svchost.exe C:WINDOWSSystem32svchost.exe C:Program FilesViewpointCommonViewpointService.exe C:WINDOWSwanmpsvc.exe C:Program FilesAdobePhotoshop Album Starter Edition3.0Appsapdproxy.exe
C:WINDOWSsystem32ctfmon.exe C:Program FilesAWSWeatherBugWeather.exe C:Program FilesThe Weather Channel FWDesktopDesktopWeather.exe
C:Program FilesWindows Media PlayerWMPNSCFG.exe C:Program FilesNokiaNokia PC Suite 7PCSync2.exe C:Program FilesNokiaNokia PC Suite 7PCSuite.exe C:PROGRA~1AVGAVG8avgrsx.exe C:Program FilesBilleoilleo.exe C:Program FilesDigital Line DetectDLG.exe C:Program FilesYahoo!Messengerymsgr_tray.exe C:Program FilesViewpointViewpoint ManagerViewMgr.exe C:Program FilesCommon FilesNokiaMPAPIMPAPI3s.exe
C:Program FilesPC Connectivity SolutionServiceLayer.exe C:WINDOWSsystem32dlbxcoms.exe C:Program FilesPC Connectivity SolutionTransportsNclUSBSrv.exe C:Program FilesPC Connectivity SolutionTransportsNclRSSrv.exe C:WINDOWSsystem32cidaemon.exe
C:WINDOWSsystem32cidaemon.exe C:Program FilesInternet ExplorerIEXPLORE.EXE C:Program FilesNokiaNokia PC Suite 7ImageStore.exe
C:Program FilesTrend MicroHijackThisHijackThis.exe R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://red.clientapps.yahoo.com/cust...ch/search.html R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.yahoo.com/
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = *.local R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesCommon FilesAdobeAcrobatActiveXAcroIEHelper.dll O2 - BHO: LoginMonitorBHO Class - {23128821-FF38-4B38-82EA-FFC6DF4A7DD1} - (no file)
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:Program FilesAVGAVG8avgssie.dll O2 - BHO: Billeo - {465E08E7-F005-4389-980F-1D8764B3486C} - c:program filesilleoilleo.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:PROGRA~1SPYBOT~1SDHelper.dll O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:Program FilesYahoo!Commonyiesrvc.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:Program FilesJavajre1.6.0_05inssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: CoTGT_BHO Class - {C333CF63-767F-4831-94AC-E683D962C63C} - C:Program FilesTGTSoftStyleXPTGT_BHO.dll O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file) O3 - Toolbar: Billeo - {6ADB0F93-1AA5-4BCF-9DF4-CEA689A3C111} - c:program filesilleoilleo.dll
O3 - Toolbar: The Weather Channel Toolbar - {2E5E800E-6AC0-411E-940A-369530A35E43} - C:WINDOWSSYSTEM32TwcToolbarIe7.dll O4 - HKLM..Run: [Adobe Photo Downloader] "C:Program FilesAdobePhotoshop Album Starter Edition3.0Appsapdproxy.exe"O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe O4 - HKCU..Run: [Yahoo! Pager] "C:Program FilesYahoo!MessengerYahooMessenger.exe" -quiet O4 - HKCU..Run: [Weather] C:Program FilesAWSWeatherBugWeather.exe 1 O4 - HKCU..Run: [DW6] "C:Program FilesThe Weather Channel WDesktopDesktopWeather.exe"
O4 - HKCU..Run: [WMPNSCFG] C:Program FilesWindows Media PlayerWMPNSCFG.exe O4 - HKCU..Run: [Nokia.PCSync] "C:Program FilesNokiaNokia PC Suite 7PCSync2.exe" /NoDialog O4 - HKCU..Run: [PC Suite Tray] "C:Program FilesNokiaNokia PC Suite 7PCSuite.exe" -onlytray O4 - Global Startup: billeo.lnk = C:Program FilesBilleoilleo.exe O4 - Global Startup: Digital Line Detect.lnk = ? O4 - Global Startup: Microsoft Office.lnk = C:Program FilesMicrosoft OfficeOffice10OSA.EXE O8 - Extra context menu item: &AOL Toolbar search - res://C:Program FilesAOL Toolbar oolbar.dll/SEARCH.HTML O8 - Extra context menu item: &Yahoo! Search - file:///C:Program FilesYahoo!Common/ycsrch.htm O8 - Extra context menu item: Send To &Bluetooth - C:Program FilesWIDCOMMBluetooth Softwaretsendto_ie_ctx.htm O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:Program FilesYahoo!Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:Program FilesYahoo!Common/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///C:Program FilesYahoo!Common/ycsms.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.6.0_05inssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.6.0_05inssv.dll O9 - Extra button: The Weather Channel - {2E5E800E-6AC0-411E-940A-369530A35E43} - (no file)O9 - Extra 'Tools' menuitem: The Weather Channel - {2E5E800E-6AC0-411E-940A-369530A35E43} - (no file) O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:Program FilesYahoo!Commonyiesrvc.dll O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:Program FilesBonjourExplorerPlugin.dll O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:Program FilesWIDCOMMBluetooth Softwaretsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:Program FilesWIDCOMMBluetooth Softwaretsendto_ie.htm O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe O9 - Extra button: Billeo - {97ED3A9F-CD6F-473A-8FE1-7505C1B844C3} - c:program filesilleoilleo.dll (HKCU)
O12 - Plugin for .spop: C:Program FilesInternet ExplorerPluginsNPDocBox.dll O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://usercenter.cox.net/rsuite/sdc...cx_tgctlcm.jsp O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - http://support.dell.com/systemprofiler/SysPro.CAB O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:Program FilesYahoo!Commonyinsthelper.dll O16 - DPF: {315B0BFB-2BD4-481B-80A3-A9B80727C61B} (WebIQ Engine Application Object) - http://webiq005.webiqonline.com/WebI...6-6D5536C585C9} O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.com/download/cult.cab O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} - http://www.fileplanet.com/fpdlmgr/ca...C_2.1.1.74.cab O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://appldnld.m7z.net qtinstall.in...lInstaller.exe O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/sh...1/mcinsctl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1145286197448 O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.kodakgallery.com/download...1/axofupld.cab O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/soft...ch/alaunch.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2...ll/xscan53.cab O16 - DPF: {85D1F3B2-2A21-11D7-97B9-0010DC2A6243} (SecureLogin class) - http://secure2.comned.com/signuptemp...ogin-devel.cab O16 - DPF: {8714912E-380D-11D5-B8AA-00D0B78F3D48} (Yahoo! Webcam Upload Wrapper) - http://chat.yahoo.com/cab/yuplapp.cab O16 - DPF: {88D758A3-D33B-45FD-91E3-67749B4057FA} - http://dm.screensavers.com/dm/instal...sinstaller.cab O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://68.228.1.61:7000/activex/AxisCamControl.cab O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - http://131.107.96.16/media/xp/TLIEFlash.CAB O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/Ms...Downloader.cab O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/radio/amp...1.11_en_dl.cab O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yaho...tocomplete.cab O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://download.games.yahoo.com/game...ploader_v6.cab
O16 - DPF: {E504EE6E-47C6-11D5-B8AB-00D0B78F3D48} (Yahoo! Webcam Viewer Wrapper) - http://chat.yahoo.com/cab/yvwrctl.cab O16 - DPF: {EC8C56B1-D027-4AB2-AF63-F845CCEE59B5} (DocumentAccessor Class) - https://billmanager.aol.com/billmana...oginHelper.cab O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:Program FilesAVGAVG8avgpp.dll O20 - AppInit_DLLs: C:PROGRA~1GoogleGOOGLE~2GOEC62~1.DLL,avgrsstx.dll O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:PROGRA~1COMMON~1aolACSAOLacsd.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C:Program FilesCommon FilesAppleMobile Device SupportinAppleMobileDeviceService.exe O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:PROGRA~1AVGAVG8avgwdsvc.exe O23 - Service: Bonjour Service - Apple Computer, Inc. - C:Program FilesBonjourmDNSResponder.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:Program FilesWIDCOMMBluetooth Softwareintwdins.exe O23 - Service: dlbx_device - Dell - C:WINDOWSsystem32dlbxcoms.exe O23 - Service: iPod Service - Apple Inc. - C:Program FilesiPodiniPodService.exe
O23 - Service: ServiceLayer - Nokia. - C:Program FilesPC Connectivity SolutionServiceLayer.exe O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:Program FilesViewpointCommonViewpointService.exe O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:WINDOWSwanmpsvc.exe
my computer is running a little too slow for my likeing, I have installed and run hijack-this and here is my log.
I tired doing a windows update yesterday, computer would not let me perfom the action.
The error message read: Network policy settings prevent you from using Windows Update to download and install updates. This error may occur if the Remove access to use all Windows Update features group policy has been enabled by your system administrator and comes up with a windows error 0x8DDD0003 and have done a lot of the recommended fixes but nothing has worked.
My computer has been running pretty slow lately, i have looked at my hijack log, and let me know if there's anything there that should not be.
View 2 Replies View RelatedMy computer is very slow. Please take a look and see if there is anything
View 4 Replies View RelatedMy computer has been running slower than usual lately.
View 5 Replies View RelatedWould someone mind taking a look at my hijack this log and let me know if there's a problem. My computer has been running awfully slow and hanging quite a bit lately.
Logfile of HijackThis v1.99.1
Scan saved at 1:07:36 PM, on 9/21/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
My computer takes over an hour to load when it is first turned on and after that programs run extremely slowly. It is a Hp Pavilion, with an Intel Celeron Processor. It has 256 MB DDR SDRAM Memory and a 60GB Ultra DMA hard drive.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:06:49 PM, on 3/10/2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16981)
Boot mode: Normal
im using windows xp. it has been infected by more than 1000 worms! i now have to use task manager to do stuff.. i used trend micro online virus scanner and remover to remove these worms. im not sure whether all of them were deleted. i didnt have anti virus. so now i wanna know how to fix my computer. can i just use an anti virus(that i can borrow from a friend) to fix my computer?. i want it to be back to normal or do i HAVE to format my com for the 100th time?
View 7 Replies View RelatedThere is an unwanted background on my desktop.It is a warning that my computer might be infected with a virus and I suspect that the virus or pop up program actually switched to this file from my previous background, which I would like to restore.I have tried but when I go into Display and Desktop and Background, I can not choose any of the selections. This is a vexing problem, the security warning currently set as the background is ugly.
View 8 Replies View RelatedComputer is suddenly running chk disk at bootup - anyone know why that would suddenly start to happen. I don't know how to even enable it - and really want to disable it. How do I do that? No errors are reported when it finishes. Also if I go to error checking when windows finally boots, it won't run because certain system files cannot be accessed.
View 9 Replies View RelatedA week after updating to most current Windows SP1critical updates (its only change I can think of) I happen to notice that I cannot run a disk error check, I am told that its a NTFS file system and Win cannot open volume for check. Also when I start computer I have to log on with my password every. I have tried to eliminate the password requirement to no avail. I cannot return to pre-update status with System Restore because its been a week and there is too much new data in the system. This is a free standing desktop PC. Can anyone help with these two things? I hope so as I do my error check regularly and find it frustrating to have to log on every time I restart .
View 8 Replies View Relatedcomputer is infected from a malicious program which always prompt to download a antimalware program. it happened when my friend tried to browse a porno site, nfortunately, my pc doesn't have antivirus or any internet protection... what should i do? when i open my internet explorer, it gives me a new defualt home page which informs me that my computer is infected and i have to buy their software to eliminate the problem. i believe my internet explorer is infected with a malware virus
View 5 Replies View RelatedMy son was downloading something on the computer last night and he said all these pop ups came up and now on the task bar there is an icon , a shield with a x in the center that says your computer is infected. When I click on ok it says would you like to update your security software and install registry cleaner? Once in a while it keeps popping up from that icon that my computer has detected spyware infection and has corrupted the registry. Virus program shows nothing, well it showed threat of bloodhound and said it cleaned it but that is it. How do I get this off my taskbar and how do I get all the icons off that I dont want to run.
View 14 Replies View RelatedI hava a PC with Windows XP Proffesional 1.6GHz P4 with 384 Mb RAM. I have 2 harddrivers 1) 40Gb Total 10Gb Free 2) 120 Gb total 92Gb Free. It has worked very very well for a couple of years but in the latest month it has become so slow. I have been infected with spyware and as everyone else that used IE been hijacked but I have removed all those programs and adds regarding "Hijack"
What happens everytime I, for example, end a program is that all the icons on my desktop disapear and one after one is coming back first with a "system icon" then it get its natural look. Another example is that it takes so long time to start the webbrowser (FireFox). I really don't know what can be wrong,
A friend of mine called me moments ago to tell me that she got a message from Windows Security Center on her desktop that the computer has been infected with spyware and to take necessary actions by downloading the latest Windows updates. She told me she saw win32res.exe was the cause of this.
View 14 Replies View RelatedI am servicing computers everyday for both business and home users and the vast amount of computers are infected with this whole family of viruses by names like Personal Security, Window Anti-virus, Antivirus7, Security Guard etc.I see these ransom-ware infections getting past everything from the free Anti-virus programs to the most expensive anti-virus programs, especially with home computers that are use for Entertainment Purposes and always because the users were browsing the Internet and are tricked into clicking on a fake warning of infection or security risk. Once they are tricked into that initial click, life goes downhill rapidly as the infection installs itself and then takes deeper root as the user clicks on subsequent fake screens. If they don't register the fake program, it will proceed to convince them to register by progressively turning off more and more Windows features.My question to the knowledgeable users of this forum is:Does anyone know of an antivirus/spyware program or combination of programs that can catch these infections as they initially try to install from that first ill-fated click while browsing the Internet?I have tried all the Big names to varying degrees of disappointing success.Would registered versions of MalWarebytes or Super AntiSpyware be effective?
View 23 Replies View RelatedI've been in a on-going battle against spyware, trojans, and mean little things that won't leave me alone. Currently using Norton Antivirus
View 14 Replies View Related