Home | Forums | Gallery | Predictions | Twitter
 
CPFC BBS



Go Back   CPFC BBS » Off Topic » Computers, Gaming and Mobile Forum
User Name
Password
Register FAQ Subscribe Members List Calendar Mark Forums Read

Computers, Gaming and Mobile Forum All things computer, internet, mobile, tablet and video game related.

Reply
 
Thread Tools
  #1  
Old 02-07-2010, 02:07 PM
TAK's Avatar
TAK TAK is offline
Call me Captain
 
Join Date: Jan 1999
Location: Life on the ocean waves (Costa Rica)
Posts: 9,369
TAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very dark
Another slow computer thread

My PC has just completely slowed down to the point where I want to hit it every time I open an application or document.

The PC is mainly used for work so it has little on it other than office and related stuff and it's using XP64 bit operating system.

I've run Spybot and the anti virus software is constantly there in the back ground and shows nothing. It's not the anti virus because that has been on the PC since day one and this is a recent thing.

I'm really stuck so any suggestions how to discover what is going on would be greatly appreciated.

Ta
T
Reply With Quote
BBS Sponsored Links - Please login to hide

  #2  
Old 02-07-2010, 05:16 PM
Brumie Allan's Avatar
Brumie Allan Brumie Allan is offline
AWM V, W or X
 
Join Date: Jan 2001
Location: Solihull / Birmingham
Posts: 12,196
Brumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mine
Ctrl-Alt-Delete and see what processes are running if it is system Idle at 90 odd % that's ok anything else, tell us what it is.

and try this

Quote:
Originally Posted by James
DOWNLOAD and run HIJACK this and post the log file here. That should tell us exactly what is causing this on your system.

Sorry James, but I know you don't mind helping.
__________________
Although I live in BrumPalace are Number one

Sign up to Dropbox to have free on-line storage.


--------------------------------------------------------------
Reply With Quote
  #3  
Old 02-07-2010, 05:17 PM
Brumie Allan's Avatar
Brumie Allan Brumie Allan is offline
AWM V, W or X
 
Join Date: Jan 2001
Location: Solihull / Birmingham
Posts: 12,196
Brumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBrumie Allan : if all you've got to do today is find peace of mind, come round, you can take a piece of mine
BTW it was a rather slow thread, it took 3hrs for anyone to post on it.
__________________
Although I live in BrumPalace are Number one

Sign up to Dropbox to have free on-line storage.


--------------------------------------------------------------
Reply With Quote
  #4  
Old 02-07-2010, 05:21 PM
hamge's Avatar
hamge hamge is offline
We are staying up
 
Join Date: Dec 2009
Location: Salisbury
Posts: 4,614
hamge is so fast, so shiny, so sharphamge is so fast, so shiny, so sharphamge is so fast, so shiny, so sharphamge is so fast, so shiny, so sharphamge is so fast, so shiny, so sharphamge is so fast, so shiny, so sharphamge is so fast, so shiny, so sharphamge is so fast, so shiny, so sharphamge is so fast, so shiny, so sharphamge is so fast, so shiny, so sharphamge is so fast, so shiny, so sharp
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:21:43, on 02/07/2010
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v8.00 (8.00.6001.18904)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\aol\1209830922\ee\aolsoftware.exe
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe
C:\Program Files\Kontiki\KHost.exe
C:\Users\Ness\AppData\Local\Google\Update\GoogleUp date.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\Windows\system32\Taskmgr.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Steam\steam.exe
C:\Windows\system32\WerCon.exe
C:\Users\Ness\AppData\Local\Google\Chrome\Applicat ion\chrome.exe
C:\Users\Ness\AppData\Local\Google\Chrome\Applicat ion\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Ness\AppData\Local\Google\Chrome\Applicat ion\chrome.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/hypercam/{18270093-C673-42A8-95F2-BDBD203236A3}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://uk.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/hypercam/{18270093-C673-42A8-95F2-BDBD203236A3}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: AOL Toolbar Loader - {3ef64538-8b54-4573-b48f-4d34b0238ab2} - C:\Program Files\AOL Toolbar\aoltb.dll
O2 - BHO: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSoft.dll
O2 - BHO: ALOT Toolbar BHO - {5AA2BA46-9913-4dc7-9620-69AB0FA17AE7} - C:\Program Files\alot\bin\alot.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\s wg.dll
O2 - BHO: SeeToo for Justin.tv Toolbar - ***0766b46-82cf-4d08-b47e-a4b85928028b} - C:\Program Files\SeeToo_for_Justin.tv\tbSee1.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Google Gears Helper - {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: SeeToo for Justin.tv Toolbar - ***0766b46-82cf-4d08-b47e-a4b85928028b} - C:\Program Files\SeeToo_for_Justin.tv\tbSee1.dll
O3 - Toolbar: ALOT Toolbar - {5AA2BA46-9913-4dc7-9620-69AB0FA17AE7} - C:\Program Files\alot\bin\alot.dll
O3 - Toolbar: cpfc Toolbar - {24411ff6-7fd2-46ad-a0b6-9e981a0ef526} - C:\Program Files\cpfc\tbcpfc.dll (file missing)
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: AOL Toolbar - {ba00b7b1-0351-477a-b948-23e3ee5a73d4} - C:\Program Files\AOL Toolbar\aoltb.dll
O3 - Toolbar: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSoft.dll
O4 - HKLM\..\Run: [Google Quick Search Box] "C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe" /autorun
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1209830922\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe"
O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
O4 - HKCU\..\Run: [Google Update] "C:\Users\Ness\AppData\Local\Google\Update\GoogleU pdate.exe" /c
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [4shared Desktop] "C:\Program Files\4shared Desktop\desktop.exe" "startup"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll
O9 - Extra 'Tools' menuitem: &Gears Settings - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - http://h20270.www2.hp.com/ediags/gmn...tDetection.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: PtleucosCnb - {462DB222-F475-4480-B981-6546C5E019DA} - C:\Windows\system32\ptleucos.dll
O23 - Service: Folding@home-CPU-[1] - Unknown owner - C:\Folding@HomeCPU\1\Fah.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\RaMaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe

--
End of file - 9690 bytes
Reply With Quote
  #5  
Old 02-07-2010, 05:47 PM
TAK's Avatar
TAK TAK is offline
Call me Captain
 
Join Date: Jan 1999
Location: Life on the ocean waves (Costa Rica)
Posts: 9,369
TAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very dark
Quote:
Originally Posted by Brumie Allan
Ctrl-Alt-Delete and see what processes are running if it is system Idle at 90 odd % that's ok anything else, tell us what it is.

Idle 62% to 72%
svchost.exe 9% to 17%
and something just called system 9% to 17%

and try this


Quote:
Originally Posted by Brumie Allan
Sorry James, but I know you don't mind helping.

Am doing it now.

Thanks
Reply With Quote
  #6  
Old 02-07-2010, 05:53 PM
TAK's Avatar
TAK TAK is offline
Call me Captain
 
Join Date: Jan 1999
Location: Life on the ocean waves (Costa Rica)
Posts: 9,369
TAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very dark
Now what?

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 1:54:37 PM, on 02/07/2010
Platform: Windows 2003 SP2 (WinNT 5.02.3790)
MSIE: Internet Explorer v7.00 (7.00.6000.17055)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe
C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\SysWOW64\svchost.exe
C:\Program Files (x86)\Java\jre6\bin\jqs.exe
C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\WINDOWS\stsystra.exe
C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe
C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe
D:\Acrobat 9.0\Acrobat\Acrotray.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
C:\WINDOWS\SysWOW64\DllHost.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
F2 - REG:system.ini: UserInit=userinit
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files (x86)\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Sophos Web Content Scanner - {39EA7695-B3F2-4C44-A4BC-297ADA8FD235} - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SophosBHO.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.5.5126.1836\s wg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files (x86)\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [UIUCU] C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\UIUCU.EXE -CLEAN_UP -S
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "D:\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "D:\Acrobat 9.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe"
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [Nokia.PCSync] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSync2.exe" /NoDialog
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [cdloader] "C:\Documents and Settings\Administrator\Application Data\mjusbsp\cdloader2.exe" MAGICJACK
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: AutoUpdate Monitor.lnk = C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos*****/200
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open with &ZipScan - C:\PROGRA~2\ZIPSCA~1\zs_ie.htm
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: HP Clipbook - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files (x86)\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: HP Smart Select - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files (x86)\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Ladbrokes Poker - ***2A80015-C447-4dc4-82DD-AED83D6ED57E} - C:\Microgaming\Poker\ladbrokesMPP\MPPoker.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - ESC Trusted Zone: http://runonce.msn.com
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/...oUploader5.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/micr...?1208463479000
O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} (AcDcToday Control) - file:///C:/Program%20Files%20(x86)/AutoCAD%202002/AcDcToday.ocx
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/...Uploader55.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/ge...sh/swflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} (AcPreview Control) - file:///C:/Program%20Files%20(x86)/AutoCAD%202002/AcPreview.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{7946AF55-E3D9-463A-84AF-6E756CA4A167}: NameServer = 196.3.132.153,196.3.132.154
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O20 - AppInit_DLLs: C:\PROGRA~2\Sophos\SOPHOS~1\SOPHOS~1.DLL
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe (file missing)
O23 - Service: Event Log (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe (file missing)
O23 - Service: Fax - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate1c9af9dec7ea4be) (gupdate1c9af9dec7ea4be) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HTTP SSL (HTTPFilter) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: IMAPI CD-Burning COM Service (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe (file missing)
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files (x86)\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: Distributed Transaction Coordinator (MSDTC) - Unknown owner - C:\WINDOWS\system32\msdtc.exe (file missing)
O23 - Service: Net Logon (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NT LM Security Support Provider (NtLmSsp) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - Unknown owner - C:\WINDOWS\system32\nvsvc64.exe (file missing)
O23 - Service: Plug and Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe (file missing)
O23 - Service: IPSEC Services (PolicyAgent) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Protected Storage (ProtectedStorage) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Remote Desktop Help Session Manager (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe (file missing)
O23 - Service: Security Accounts Manager (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Sophos Anti-Virus status reporter (SAVAdminService) - Sophos Plc - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe
O23 - Service: Sophos Anti-Virus (SAVService) - Sophos Plc - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Sophos AutoUpdate Service - Sophos Plc - C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe
O23 - Service: Virtual Disk Service (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: Volume Shadow Copy (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe (file missing)
O23 - Service: WMI Performance Adapter (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe (file missing)
O23 - Service: Windows Search (WSearch) - Unknown owner - C:\WINDOWS\system32\SearchIndexer.exe (file missing)

--
End of file - 13417 bytes
Reply With Quote
  #7  
Old 02-07-2010, 05:57 PM
PeterH's Avatar
PeterH PeterH is offline
Registered User
 
Join Date: Feb 2000
Location: Santiago. Chile
Posts: 37,108
PeterH : if all you've got to do today is find peace of mind, come round, you can take a piece of minePeterH : if all you've got to do today is find peace of mind, come round, you can take a piece of minePeterH : if all you've got to do today is find peace of mind, come round, you can take a piece of minePeterH : if all you've got to do today is find peace of mind, come round, you can take a piece of minePeterH : if all you've got to do today is find peace of mind, come round, you can take a piece of minePeterH : if all you've got to do today is find peace of mind, come round, you can take a piece of minePeterH : if all you've got to do today is find peace of mind, come round, you can take a piece of minePeterH : if all you've got to do today is find peace of mind, come round, you can take a piece of minePeterH : if all you've got to do today is find peace of mind, come round, you can take a piece of minePeterH : if all you've got to do today is find peace of mind, come round, you can take a piece of minePeterH : if all you've got to do today is find peace of mind, come round, you can take a piece of mine
Is this ... another slow COMPUTER thread OR another slow computer THREAD.

I suppose we will have to wait on the strength of replies.
__________________
"Two things are infinite: the universe and human stupidity; and I'm not sure about the the universe." - Albert Einstein
_____________________________________________

A woman worries about the future until she gets a husband. A man never worries about the future until he gets a wife.
Reply With Quote
  #8  
Old 02-07-2010, 06:19 PM
A Wooden Fish On Wheels's Avatar
A Wooden Fish On Wheels A Wooden Fish On Wheels is offline
Los Pollos Hermanos
 
Join Date: Aug 1999
Location: See are too
Posts: 33,486
A Wooden Fish On Wheels : if all you've got to do today is find peace of mind, come round, you can take a piece of mineA Wooden Fish On Wheels : if all you've got to do today is find peace of mind, come round, you can take a piece of mineA Wooden Fish On Wheels : if all you've got to do today is find peace of mind, come round, you can take a piece of mineA Wooden Fish On Wheels : if all you've got to do today is find peace of mind, come round, you can take a piece of mineA Wooden Fish On Wheels : if all you've got to do today is find peace of mind, come round, you can take a piece of mineA Wooden Fish On Wheels : if all you've got to do today is find peace of mind, come round, you can take a piece of mineA Wooden Fish On Wheels : if all you've got to do today is find peace of mind, come round, you can take a piece of mineA Wooden Fish On Wheels : if all you've got to do today is find peace of mind, come round, you can take a piece of mineA Wooden Fish On Wheels : if all you've got to do today is find peace of mind, come round, you can take a piece of mineA Wooden Fish On Wheels : if all you've got to do today is find peace of mind, come round, you can take a piece of mineA Wooden Fish On Wheels : if all you've got to do today is find peace of mind, come round, you can take a piece of mine
Is your C: drive getting full? Can cause things to go VERY slow...
__________________
Quote:
Originally posted by Jaffa in http://forums.cpfc.org/showthread.php?s=&threadid=39614
i) If a bucket touches the flushees bottom then the flusher is flushed himself.
Reply With Quote
  #9  
Old 02-07-2010, 07:07 PM
James's Avatar
James James is online now
Legal Imbecile and BBS Prophet of Doom (Semi-Retired)
 
Join Date: Jan 1999
Location: orbiting the Sun at 18.5 miles/sec with no helmet.
Posts: 36,368
James : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mine
Hamge - Your Hijack log shows that you have a few problems. You have the SDBOT.MD WORM and alot.dll toolbar.

To remove the SDBOT worm, use THIS SOLUTION.

As for the tool-bar, Run Hijackthis again and check the entries:

O2 - BHO: ALOT Toolbar BHO - {5AA2BA46-9913-4dc7-9620-69AB0FA17AE7} - C:\Program Files\alot\bin\alot.dll

O3 - Toolbar: ALOT Toolbar - {5AA2BA46-9913-4dc7-9620-69AB0FA17AE7} - C:\Program Files\alot\bin\alot.dll

Close all applications and browser windows before you click "fix checked".

Once you have done that, reboot and run hijackthis again and post the new logfile.
Reply With Quote
  #10  
Old 02-07-2010, 07:08 PM
Barbara4003's Avatar
Barbara4003 Barbara4003 is offline
Official Sponsor of Wilf
 
Join Date: May 2005
Location: In a house, on a hill, in a galaxy far, far away
Posts: 57,369
Barbara4003 : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBarbara4003 : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBarbara4003 : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBarbara4003 : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBarbara4003 : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBarbara4003 : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBarbara4003 : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBarbara4003 : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBarbara4003 : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBarbara4003 : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBarbara4003 : if all you've got to do today is find peace of mind, come round, you can take a piece of mine
It's probably full of those Malware things. Whatever they are, but they slow down a computer I think.
__________________
Woke up, got out of bed, dragged a comb across my head, found my way downstairs and drank a cup, and looking up I noticed I was late.
Found my coat and grabbed my hat, made the bus in seconds flat, found my way upstairs and had a smoke, and Somebody spoke and I went into a dream
Reply With Quote
  #11  
Old 02-07-2010, 07:15 PM
James's Avatar
James James is online now
Legal Imbecile and BBS Prophet of Doom (Semi-Retired)
 
Join Date: Jan 1999
Location: orbiting the Sun at 18.5 miles/sec with no helmet.
Posts: 36,368
James : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mine
Quote:
Originally Posted by TAK
Now what?

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 1:54:37 PM, on 02/07/2010
Platform: Windows 2003 SP2 (WinNT 5.02.3790)
MSIE: Internet Explorer v7.00 (7.00.6000.17055)
Boot mode: Normal

Running processes:
Your log-file looks OK, but you are running an awful lot of processes.

Type msconfig in the start box and look in the startup folder.

Uncheck everything which is not connected with your virus protection software and reboot. If your system speeds up, you can reinstate individual processes one by one until it slows down again. In truth, you really don't need most of these processes running in the background. You can start them as and when you need them.
Reply With Quote
  #12  
Old 02-07-2010, 07:28 PM
Newts G's Avatar
Newts G Newts G is offline
Turning Against This Land
 
Join Date: May 2004
Location: On a bridge, by a pub
Posts: 5,388
Newts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyes
Can someone tell me if anything is wrong with my daughters Pc, it runs rubbish and does not show any problems on AVG, Defender, Spyboy or Adaware.

Cheers

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:27:13, on 02/07/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\system32\bgsvcgen.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\drivers\CDAC11BA.EXE
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0F 2.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\PRESAR~1\Presario\XPHWWRS4\plugin\bin\ PCHButton.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe
C:\Program Files\Creative\MediaSource5\MtdAcqu.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\FinePixViewer\QuickDCF2.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY... io&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Kirsty's Computer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *.local
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\s wg.dll
O2 - BHO: (no name) - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - (no file)
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [EPSON Stylus Photo R300 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0F 2.EXE /P30 "EPSON Stylus Photo R300 Series" /O6 "USB001" /M "Stylus Photo R300"
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [YeppStudioAgent] C:\Program Files\Samsung\Samsung Media Studio\SamsungMediaStudioAgent.exe
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Acme.PCHButton] C:\PROGRA~1\PRESAR~1\Presario\XPHWWRS4\plugin\bin\ PCHButton.exe
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [EPSON PictureMate PM 240] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIB CE.EXE /FU "C:\WINDOWS\TEMP\E_S55.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe"
O4 - HKCU\..\Run: [MtdAcqu] "C:\Program Files\Creative\MediaSource5\MtdAcqu.exe" /s
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKLM\..\Policies\Explorer\Run: [XW1VbaCkLb] C:\Documents and Settings\All Users\Application Data\ctqhkfyp\utohmryz.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe " -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe " -t (User 'Default user')
O4 - Global Startup: Exif Launcher 2.lnk = ?
O4 - Global Startup: Picture Package Menu.lnk = ?
O4 - Global Startup: Picture Package VCD Maker.lnk = ?
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe (file missing)
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.supanet.com/
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15026/CTSUEng.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {17D72920-7A15-11D4-921E-0080C8DA7A5E} (AimSp32 Class) - http://rimmel.ai-media.com/save/makeover.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/acti..._v1-0-3-17.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-GB/.../GAME_UNO1.cab
O16 - DPF: ***3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab56907.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15028/CTPID.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: B's Recorder GOLD Library General Service (bgsvcgen) - B.H.A Corporation - C:\WINDOWS\system32\bgsvcgen.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Google Software Updater (gusvc) - Unknown owner - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: Process Monitor (LVPrcSrv) - Unknown owner - c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe (file missing)

--
End of file - 11002 bytes
__________________
Xbox 360 Gamertag - GlennAtWork
PS3 User Name - GlennAtWork
Reply With Quote
  #13  
Old 02-07-2010, 07:28 PM
topper's Avatar
topper topper is offline
Registered User
 
Join Date: Sep 1999
Location: deepest darkest kent
Posts: 1,357
topper was in another world, a world of 20,000 girlstopper was in another world, a world of 20,000 girlstopper was in another world, a world of 20,000 girlstopper was in another world, a world of 20,000 girlstopper was in another world, a world of 20,000 girlstopper was in another world, a world of 20,000 girlstopper was in another world, a world of 20,000 girlstopper was in another world, a world of 20,000 girlstopper was in another world, a world of 20,000 girlstopper was in another world, a world of 20,000 girlstopper was in another world, a world of 20,000 girls
i agree with james, you have A LOT of stuff going on...
without looking carefully I saw 3 antimalware/antivirus programmes running...

also you seem to be running bit torrent. this can slow, especially if seeding a popular title.

I found this really cool tool. http://www.soluto.com/

it primarily displays and allows amendments to startup processes. you can also see what is slowing your pc down. I sped my vista machine startup from 5 mins to 1 min 50 secs.

give it a go.
Reply With Quote
  #14  
Old 02-07-2010, 08:07 PM
James's Avatar
James James is online now
Legal Imbecile and BBS Prophet of Doom (Semi-Retired)
 
Join Date: Jan 1999
Location: orbiting the Sun at 18.5 miles/sec with no helmet.
Posts: 36,368
James : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mineJames : if all you've got to do today is find peace of mind, come round, you can take a piece of mine
Quote:
Originally Posted by Newts G
Can someone tell me if anything is wrong with my daughters Pc, it runs rubbish and does not show any problems on AVG, Defender, Spyboy or Adaware.

Cheers
There is one very strange process running:

C:\Documents and Settings\All Users\Application Data\ctqhkfyp\utohmryz.exe

That looks nasty! Run Hijackthis again and select the entry, close your browser and click "fix checked". Then reboot.

Your daughter (Kirsty?) also has a lot of unnecessary processes working in the background, so you could also try typing 'msconfig' (without the quotes) and deselecting everything except your virus protection programme.
Reply With Quote
  #15  
Old 02-07-2010, 08:32 PM
Newts G's Avatar
Newts G Newts G is offline
Turning Against This Land
 
Join Date: May 2004
Location: On a bridge, by a pub
Posts: 5,388
Newts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyesNewts G dances before me like a million eyes
Quote:
Originally Posted by James
There is one very strange process running:

C:\Documents and Settings\All Users\Application Data\ctqhkfyp\utohmryz.exe

That looks nasty! Run Hijackthis again and select the entry, close your browser and click "fix checked". Then reboot.

Your daughter (Kirsty?) also has a lot of unnecessary processes working in the background, so you could also try typing 'msconfig' (without the quotes) and deselecting everything except your virus protection programme.

James thanks for that, without trying to sound to daft, how do I know which are my antivirus programs?
__________________
Xbox 360 Gamertag - GlennAtWork
PS3 User Name - GlennAtWork
Reply With Quote
  #16  
Old 03-07-2010, 11:22 AM
TAK's Avatar
TAK TAK is offline
Call me Captain
 
Join Date: Jan 1999
Location: Life on the ocean waves (Costa Rica)
Posts: 9,369
TAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very darkTAK sings up the sun in a dawn so very dark
Thanks Peeps will give it a go.
Reply With Quote
  #17  
Old 03-07-2010, 12:47 PM
Biggineagle's Avatar
Biggineagle Biggineagle is online now
I AM SOOO BORED !!!
 
Join Date: Nov 2007
Location: Proud Coney Hall Inhabitant.
Posts: 11,614
Biggineagle : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBiggineagle : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBiggineagle : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBiggineagle : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBiggineagle : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBiggineagle : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBiggineagle : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBiggineagle : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBiggineagle : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBiggineagle : if all you've got to do today is find peace of mind, come round, you can take a piece of mineBiggineagle : if all you've got to do today is find peace of mind, come round, you can take a piece of mine
Quote:
Originally Posted by Newts G
James thanks for that, without trying to sound to daft, how do I know which are my antivirus programs?

You have AVG, Spybot, and Adaware, and Windows Defender all running, as far as i can see.

I would just have AVG Ativirus running, and stop the others in Startup.
__________________
When you're at the end of the road
And you lost all sense of control
And your thoughts have taken their toll
When your mind breaks the spirit of your soul
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump



All times are GMT. The time now is 08:56 AM.


Home | Forums | GalleryPredictions | Twitter

Disclaimer | Forum Rules | Support the BBS | Archives

The UK's largest online football community


The UK's largest online football community.


Powered by vBulletin Version 3.5.3
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.