![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| Resolved HJT Threads Resolved spyware and popup issues. |
|
|
LinkBack | Thread Tools |
|
|
#1 (permalink) |
|
Registered User
Join Date: Jul 2007
Location: MIDWEST
Posts: 22
OS: Windows XP home edition
|
My computer freezes and crashes randomly, and is excruciatingly slow to boot up...I am at my wit's end (of course, that wasn't far to go) trying to fix it. I hope you can help, but I appreciate the effort either way!
I read the 5-step instructions; here are the results: I completed Step 1. No applicable programs. My computer crashes about halfway through virus scans, with my program or online scans--I crashed with Panda,too. I installed Spyblaster but not IESpypad as I use Firefox all of the time. Skipped Step 4 as I have Service Pack 2. Step 5: Deckard's System Scanner v20070711.54 Run by Owner on 2007-07-20 at 01:42:46 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- System Restore -------------------------------------------------------------- System Restore is disabled; attempting to re-enable...success. -- Last 1 Restore Point(s) -- 1: 2007-07-20 06:42:53 UTC - RP1 - System Checkpoint Backed up registry hives. Performed disk cleanup. -- HijackThis (run as Owner.exe) ----------------------------------------------- Logfile of HijackThis v1.99.1 Scan saved at 1:48:15 AM, on 7/20/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\a-squared Free\a2service.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\WINDOWS\system32\drivers\KodakCCS.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\S3apphk.exe C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Winamp\winampa.exe C:\PROGRA~1\MUSICM~1\MUSICM~1\MMDiag.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\windows\system\hpsysdrv.exe C:\WINDOWS\System32\hkcmd.exe C:\WINDOWS\System32\igfxtray.exe C:\Program Files\Picasa2\PicasaMediaDetector.exe C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mim.exe C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe C:\Program Files\Google\Google Updater\GoogleUpdater.exe C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe C:\Program Files\Broderbund\Mavis Beacon Teaches Typing 12 Standard\MiniMavis.exe C:\Program Files\MostFun\Bin\MostFun.exe C:\WINDOWS\System32\wbem\unsecapp.exe C:\Documents and Settings\Owner\Desktop\dss.exe C:\PROGRA~1\HIJACK~1\Owner.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://us5.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-us5.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.peoplepc.com/search R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-us5.hpwis.com/ R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://us5.hpwis.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = c:\WINDOWS\PCHEALTH\HELPCTR\System\panels\blank.htm R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = c:\WINDOWS\PCHEALTH\HELPCTR\System\panels\blank.htm O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll O2 - BHO: (no name) - {A8FB8EB3-183B-4598-924D-86F0E5E37085} - (no file) O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.5672\swg.dll O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - c:\Program Files\Microsoft Money\System\mnyviewer.dll O3 - Toolbar: &hp toolkit - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - C:\HP\EXPLOREBAR\HPTOOLKT.DLL O4 - HKLM\..\Run: [PreloadApp] c:\hp\drivers\printers\photosmart\hphprld.exe c:\hp\drivers\printers\photosmart\setup.exe -d O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE O4 - HKLM\..\Run: [S3apphk] S3apphk.exe O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe O4 - HKLM\..\Run: [MMTray] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE O4 - Startup: MostFun.lnk = C:\Program Files\MostFun\Bin\MostFun.exe O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O4 - Global Startup: MiniMavis.lnk = C:\Program Files\Broderbund\Mavis Beacon Teaches Typing 12 Standard\MiniMavis.exe O8 - Extra context menu item: Send Image to Photo Library - file://C:\Program Files\Broderbund\The Print Shop Photo Pro\Temp\MGI00000.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing) O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing) O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyviewer.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?Link...04&clcid=0x409 O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/S...in/AvSniff.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.com/scan8/oscan8.cab O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/S.../bin/cabsa.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab O16 - DPF: {F09BFD07-20B5-46D8-A6D5-BE4EF22F1F4D} (DGTx.uc1) - http://members.driverguide.com/direc...e=toolkit_lite O18 - Filter: text/html - (no CLSID) - (no file) O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe -- HijackThis Fixed Entries (C:\PROGRA~1\HIJACK~1\backups\) -------------------- backup-20070719-230617-911 O16 - DPF: {FFFFFFFF-CACE-BABE-BABE-00AA0055595A} - http://www.trueswitch.com/peoplepc/T...llPeoplePC.exe -- File Associations ----------------------------------------------------------- All associations okay. -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------- R2 BrPar - c:\windows\system32\drivers\brpar.sys <Not Verified; Brother Industries Ltd.; Brother Parallel Class Driver> R2 MASPINT - c:\windows\system32\drivers\maspint.sys <Not Verified; MicroStaff Co.,Ltd.; Aspi32 Driver for WinNT> R3 pfc (Padus ASPI Shell) - c:\windows\system32\drivers\pfc.sys <Not Verified; Padus, Inc.; Padus(R) ASPI Shell> S3 DCamUSBSQTECH (Dual-Mode DSC(2770)) - c:\windows\system32\drivers\sqcaptur.sys <Not Verified; Service & Quality Technology.; SQ913> S3 Freedom (FREEDOM Miniport) - c:\windows\system32\drivers\freedom.sys (file missing) S3 PCDRDRV (Pcdr CPU Helper Driver) - c:\windows\system32\drivers\pcdrdrv.sys (file missing) S3 PcdrNt - c:\windows\system32\drivers\pcdrnt.sys (file missing) -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled -------------------- All services whitelisted. -- Files created between 2007-06-20 and 2007-07-20 ----------------------------- 2007-07-20 01:35:01 0 d-------- C:\Program Files\SpywareBlaster 2007-07-20 00:09:30 0 d-------- C:\WINDOWS\system32\ActiveScan 2007-07-19 22:50:16 0 d-------- C:\Program Files\hijack this 2007-07-19 19:41:28 0 d-------- C:\Program Files\a-squared Free 2007-07-19 13:35:36 0 d-------- C:\Program Files\Birdie 2007-07-19 11:46:01 0 d-------- C:\Documents and Settings\Owner\Application Data\PlayFirst 2007-07-19 11:46:01 0 d-------- C:\Documents and Settings\All Users\Application Data\PlayFirst 2007-07-19 03:09:27 0 d-------- C:\Program Files\Virtual Villagers 2007-07-19 03:08:28 0 d-------- C:\Program Files\ReflexiveArcade 2007-07-18 22:50:58 0 d-------- C:\Program Files\Common Files\ODBC 2007-07-18 20:46:20 110 --a------ C:\Documents and Settings\All Users\Application Data\MostFunGameId.bin 2007-07-18 16:57:06 0 d-------- C:\Documents and Settings\All Users\Application Data\Sandlot Games 2007-07-18 16:50:18 0 d-------- C:\Documents and Settings\All Users\Application Data\Trymedia 2007-07-18 16:42:58 0 d-------- C:\Documents and Settings\All Users\Application Data\MostFun 2007-07-18 16:42:18 0 d-------- C:\Program Files\MostFun 2007-07-18 16:38:51 0 d-------- C:\WINDOWS\system32\URTTemp 2007-07-18 11:44:25 0 d-------- C:\Documents and Settings\Owner\Application Data\My Games 2007-07-17 21:37:44 0 d-------- C:\Documents and Settings\All Users\Application Data\NannyMania 2007-07-11 12:04:59 0 d-------- C:\Program Files\Virtools 2007-07-11 01 11 0 d-------- C:\Program Files\Easy MEMO2007-07-08 20:37:47 0 d-------- C:\Program Files\Touch Puf v1.5 2007-07-08 20:36:59 0 d-------- C:\Program Files\Typing Invaders 2007-07-08 20:35:47 0 d-------- C:\Program Files\aXiebalWinter 2007-07-08 20:34:59 0 d-------- C:\Program Files\History Quiz 2007-07-08 18:25:08 2071847 --a------ C:\Program Files\snowcraft.exe <Not Verified; Macromedia, Inc.; Macromedia Director> 2007-07-07 17:13:50 0 d-a------ C:\Documents and Settings\All Users\Application Data\TEMP 2007-07-07 17:12:47 0 d-------- C:\Program Files\Common Files\Oberon Media 2007-07-07 17:12:46 0 d-------- C:\Program Files\Kaboose Games 2007-07-07 17:11:49 0 d-------- C:\Program Files\Runtimeware.com 2007-07-07 03:44:19 0 d-------- C:\Program Files\Hot Lines -- Find3M Report --------------------------------------------------------------- 2007-07-19 21:45:32 0 d-------- C:\Program Files\Startup 2007-07-18 21:50:49 0 d-------- C:\Program Files\WINASTRO 2007-07-18 21:50:49 0 d-------- C:\Program Files\NCBuy 2007-07-18 21:50:48 0 d-------- C:\Program Files\TaxCut05 2007-07-18 21:50:47 0 d-------- C:\Program Files\DK Multimedia 2007-07-18 21:47:49 0 d-------- C:\Program Files\123 Free Puzzle 2007-07-13 14:31:31 76128 --a------ C:\Documents and Settings\Owner\Application Data\GDIPFONTCACHEV1.DAT 2007-07-11 12:05:06 4128 --a------ C:\WINDOWS\mozver.dat 2007-07-08 15:07:31 0 d-------- C:\Program Files\Alwil Software 2007-07-08 15:04:38 0 d-------- C:\Program Files\Agent Chewer Free 2007-07-08 14:56:58 0 d-------- C:\Program Files\eGames 2007-07-03 13:27:08 0 d-------- C:\Program Files\Picasa2 2007-07-02 12:56:31 0 d-------- C:\Program Files\Java 2007-06-23 02:50:18 0 d-------- C:\Program Files\QUICKENW 2007-06-22 19:07:50 0 d--h----- C:\Program Files\InstallShield Installation Information 2007-06-19 13:26:42 0 d-------- C:\Documents and Settings\Owner\Application Data\Adobe 2007-06-19 11:31:05 0 d-------- C:\Program Files\Common Files\Adobe 2007-06-02 20:54:06 477 --a------ C:\WINDOWS\EReg077.dat 2007-05-23 22:05:29 0 d-------- C:\Documents and Settings\Owner\Application Data\AdobeUM 2007-05-16 18:03:24 42 --a------ C:\WINDOWS\popcinfo.dat -- Registry Dump --------------------------------------------------------------- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects] {53707962-6F74-2D53-2644-206D7942484F} C:\PROGRA~1\SPYBOT~1\SDHelper.dll {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.5672\swg.dll {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} c:\Program Files\Microsoft Money\System\mnyviewer.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] "PreloadApp"="c:\\hp\\drivers\\printers\\photosmart\\hphprld.exe c:\\hp\\drivers\\printers\\photosmart\\setup.exe -d" "Recguard"="C:\\WINDOWS\\SMINST\\RECGUARD.EXE" "S3apphk"="S3apphk.exe" "MimBoot"="C:\\PROGRA~1\\MUSICM~1\\MUSICM~1\\mimboot.exe" "MMTray"="\"C:\\Program Files\\MUSICMATCH\\MUSICMATCH Jukebox\\mm_tray.exe\"" "QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "WinampAgent"="\"C:\\Program Files\\Winamp\\winampa.exe\"" "NvCplDaemon"="RUNDLL32.EXE NvQTwk,NvCplDaemon initialize" "avast!"="C:\\PROGRA~1\\ALWILS~1\\Avast4\\ashDisp.exe" "hpsysdrv"="c:\\windows\\system\\hpsysdrv.exe" "HotKeysCmds"="C:\\WINDOWS\\System32\\hkcmd.exe" "IgfxTray"="C:\\WINDOWS\\System32\\igfxtray.exe" "Picasa Media Detector"="C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe" "Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\"" "SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.6.0_01\\bin\\jusched.exe" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer] "NoCDBurning"=dword:00000000 HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa Authentication Packages REG_MULTI_SZ msv1_0\0\0 Security Packages REG_MULTI_SZ kerberos\0msv1_0\0schannel\0wdigest\0\0 Notification Packages REG_MULTI_SZ scecli\0\0 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "nwiz"="nwiz.exe /install" [HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost] LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0 NetworkService REG_MULTI_SZ DnsCache\0\0 rpcss REG_MULTI_SZ RpcSs\0\0 imgsvc REG_MULTI_SZ StiSvc\0\0 termsvcs REG_MULTI_SZ TermService\0\0 HTTPFilter REG_MULTI_SZ HTTPFilter\0\0 DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0 -- End of Deckard's System Scanner: finished at 2007-07-20 at 01:49:37 --------- |
|
|
| Important Information |
|
Join the #1 Tech Support Forum Today - It's Totally Free!
TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free. Join TechSupportforum.com Today - Click Here |
|
|
#2 (permalink) |
|
Registered User
Join Date: Jul 2007
Location: MIDWEST
Posts: 22
OS: Windows XP home edition
|
Re: Slow Startup, Crashing Computer
Since I posted my original log on 7-19, here's a new HJT copy, run today:
Deckard's System Scanner v20070711.54 Run by Owner on 2007-07-23 at 18:50:11 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- HijackThis (run as Owner.exe) ----------------------------------------------- Logfile of HijackThis v1.99.1 Scan saved at 6:51:48 PM, on 7/23/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\a-squared Free\a2service.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\WINDOWS\system32\drivers\KodakCCS.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\S3apphk.exe C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Winamp\winampa.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\PROGRA~1\MUSICM~1\MUSICM~1\MMDiag.exe C:\Program Files\Picasa2\PicasaMediaDetector.exe C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mim.exe C:\Program Files\Google\Google Updater\GoogleUpdater.exe C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe C:\Program Files\Broderbund\Mavis Beacon Teaches Typing 12 Standard\MiniMavis.exe C:\Program Files\MostFun\Bin\MostFun.exe C:\Documents and Settings\Owner\Desktop\dss.exe C:\PROGRA~1\HIJACK~1\Owner.exe C:\WINDOWS\System32\rundll32.exe c:\windows\microsoft.net\framework\v1.1.4322\csc.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-us5.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-us5.hpwis.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = c:\WINDOWS\PCHEALTH\HELPCTR\System\panels\blank.htm R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = c:\WINDOWS\PCHEALTH\HELPCTR\System\panels\blank.htm O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll O2 - BHO: (no name) - {A8FB8EB3-183B-4598-924D-86F0E5E37085} - (no file) O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.5672\swg.dll O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - c:\Program Files\Microsoft Money\System\mnyviewer.dll O3 - Toolbar: &hp toolkit - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - C:\HP\EXPLOREBAR\HPTOOLKT.DLL O4 - HKLM\..\Run: [PreloadApp] c:\hp\drivers\printers\photosmart\hphprld.exe c:\hp\drivers\printers\photosmart\setup.exe -d O4 - HKLM\..\Run: [S3apphk] S3apphk.exe O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe O4 - HKLM\..\Run: [MMTray] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE O4 - Startup: MostFun.lnk = C:\Program Files\MostFun\Bin\MostFun.exe O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O4 - Global Startup: MiniMavis.lnk = C:\Program Files\Broderbund\Mavis Beacon Teaches Typing 12 Standard\MiniMavis.exe O8 - Extra context menu item: Send Image to Photo Library - file://C:\Program Files\Broderbund\The Print Shop Photo Pro\Temp\MGI00000.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing) O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing) O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyviewer.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?Link...04&clcid=0x409 O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} - http://security.symantec.com/sscv6/S...in/AvSniff.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.com/scan8/oscan8.cab O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} - http://security.symantec.com/sscv6/S.../bin/cabsa.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} - http://acs.pandasoftware.com/actives...ree/asinst.cab O16 - DPF: {F09BFD07-20B5-46D8-A6D5-BE4EF22F1F4D} - http://members.driverguide.com/direc...e=toolkit_lite O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe -- Files created between 2007-06-23 and 2007-07-23 ----------------------------- 2007-07-22 23:24:18 0 d-------- C:\Documents and Settings\All Users\Templates 2007-07-21 11:28:39 26 --a------ C:\WINDOWS\winstart.bat 2007-07-21 11:28:39 122 --a------ C:\WINDOWS\tmpdelis.bat 2007-07-21 11:28:39 151 --a------ C:\WINDOWS\tmpcpyis.bat 2007-07-21 11:27:13 0 d-------- C:\Program Files\Barbie (R) 2007-07-21 11:27:10 444928 --a------ C:\WINDOWS\system32\MSVCR40D.DLL <Not Verified; Microsoft Corporation; Microsoft® Visual C++> 2007-07-20 01:35:01 0 d-------- C:\Program Files\SpywareBlaster 2007-07-20 00:09:30 0 d-------- C:\WINDOWS\system32\ActiveScan 2007-07-19 22:50:16 0 d-------- C:\Program Files\hijack this 2007-07-19 19:41:28 0 d-------- C:\Program Files\a-squared Free 2007-07-19 13:35:36 0 d-------- C:\Program Files\Birdie 2007-07-19 11:46:01 0 d-------- C:\Documents and Settings\Owner\Application Data\PlayFirst 2007-07-19 11:46:01 0 d-------- C:\Documents and Settings\All Users\Application Data\PlayFirst 2007-07-19 03:09:27 0 d-------- C:\Program Files\Virtual Villagers 2007-07-19 03:08:28 0 d-------- C:\Program Files\ReflexiveArcade 2007-07-18 22:50:58 0 d-------- C:\Program Files\Common Files\ODBC 2007-07-18 20:46:20 110 --a------ C:\Documents and Settings\All Users\Application Data\MostFunGameId.bin 2007-07-18 16:57:06 0 d-------- C:\Documents and Settings\All Users\Application Data\Sandlot Games 2007-07-18 16:50:18 0 d-------- C:\Documents and Settings\All Users\Application Data\Trymedia 2007-07-18 16:42:58 0 d-------- C:\Documents and Settings\All Users\Application Data\MostFun 2007-07-18 16:42:18 0 d-------- C:\Program Files\MostFun 2007-07-18 16:38:51 0 d-------- C:\WINDOWS\system32\URTTemp 2007-07-18 11:44:25 0 d-------- C:\Documents and Settings\Owner\Application Data\My Games 2007-07-17 21:37:44 0 d-------- C:\Documents and Settings\All Users\Application Data\NannyMania 2007-07-11 12:04:59 0 d-------- C:\Program Files\Virtools 2007-07-08 20:37:47 0 d-------- C:\Program Files\Touch Puf v1.5 2007-07-08 20:36:59 0 d-------- C:\Program Files\Typing Invaders 2007-07-08 20:35:47 0 d-------- C:\Program Files\aXiebalWinter 2007-07-08 20:34:59 0 d-------- C:\Program Files\History Quiz 2007-07-08 18:25:08 2071847 --a------ C:\Program Files\snowcraft.exe <Not Verified; Macromedia, Inc.; Macromedia Director> 2007-07-07 17:13:50 0 d-a------ C:\Documents and Settings\All Users\Application Data\TEMP 2007-07-07 17:12:47 0 d-------- C:\Program Files\Common Files\Oberon Media 2007-07-07 17:12:46 0 d-------- C:\Program Files\Kaboose Games 2007-07-07 17:11:49 0 d-------- C:\Program Files\Runtimeware.com 2007-07-07 03:44:19 0 d-------- C:\Program Files\Hot Lines -- Find3M Report --------------------------------------------------------------- 2007-07-19 21:45:32 0 d-------- C:\Program Files\Startup 2007-07-18 21:50:49 0 d-------- C:\Program Files\WINASTRO 2007-07-18 21:50:49 0 d-------- C:\Program Files\NCBuy 2007-07-18 21:50:48 0 d-------- C:\Program Files\TaxCut05 2007-07-18 21:47:49 0 d-------- C:\Program Files\123 Free Puzzle 2007-07-13 14:31:31 76128 --a------ C:\Documents and Settings\Owner\Application Data\GDIPFONTCACHEV1.DAT 2007-07-11 12:05:06 4128 --a------ C:\WINDOWS\mozver.dat 2007-07-08 15:07:31 0 d-------- C:\Program Files\Alwil Software 2007-07-08 15:04:38 0 d-------- C:\Program Files\Agent Chewer Free 2007-07-08 14:56:58 0 d-------- C:\Program Files\eGames 2007-07-03 13:27:08 0 d-------- C:\Program Files\Picasa2 2007-07-02 12:56:31 0 d-------- C:\Program Files\Java 2007-06-23 02:50:18 0 d-------- C:\Program Files\QUICKENW 2007-06-22 19:07:50 0 d--h----- C:\Program Files\InstallShield Installation Information 2007-06-19 13:26:42 0 d-------- C:\Documents and Settings\Owner\Application Data\Adobe 2007-06-19 11:31:05 0 d-------- C:\Program Files\Common Files\Adobe 2007-06-02 20:54:06 477 --a------ C:\WINDOWS\EReg077.dat 2007-05-23 22:05:29 0 d-------- C:\Documents and Settings\Owner\Application Data\AdobeUM 2007-05-16 18:03:24 42 --a------ C:\WINDOWS\popcinfo.dat -- Registry Dump --------------------------------------------------------------- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects] {53707962-6F74-2D53-2644-206D7942484F} C:\PROGRA~1\SPYBOT~1\SDHelper.dll {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.5672\swg.dll {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} c:\Program Files\Microsoft Money\System\mnyviewer.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] "PreloadApp"="c:\\hp\\drivers\\printers\\photosmart\\hphprld.exe c:\\hp\\drivers\\printers\\photosmart\\setup.exe -d" "S3apphk"="S3apphk.exe" "MimBoot"="C:\\PROGRA~1\\MUSICM~1\\MUSICM~1\\mimboot.exe" "MMTray"="\"C:\\Program Files\\MUSICMATCH\\MUSICMATCH Jukebox\\mm_tray.exe\"" "QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "WinampAgent"="\"C:\\Program Files\\Winamp\\winampa.exe\"" "NvCplDaemon"="RUNDLL32.EXE NvQTwk,NvCplDaemon initialize" "avast!"="C:\\PROGRA~1\\ALWILS~1\\Avast4\\ashDisp.exe" "Picasa Media Detector"="C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe" "Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\"" "SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.6.0_01\\bin\\jusched.exe" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer] "NoCDBurning"=dword:00000000 HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa Authentication Packages REG_MULTI_SZ msv1_0\0\0 Security Packages REG_MULTI_SZ kerberos\0msv1_0\0schannel\0wdigest\0\0 Notification Packages REG_MULTI_SZ scecli\0\0 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "nwiz"="nwiz.exe /install" [HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost] LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0 NetworkService REG_MULTI_SZ DnsCache\0\0 rpcss REG_MULTI_SZ RpcSs\0\0 imgsvc REG_MULTI_SZ StiSvc\0\0 termsvcs REG_MULTI_SZ TermService\0\0 HTTPFilter REG_MULTI_SZ HTTPFilter\0\0 DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0 -- End of Deckard's System Scanner: finished at 2007-07-23 at 18:53:57 --------- |
|
|
|
|
#5 (permalink) |
|
Analyst, Security Team
Join Date: Sep 2006
Location: Ontario, Canada
Posts: 2,947
OS: Windows 7 Ultimate
|
Re: Slow Startup, Crashing Computer
Hi and welcome to TSF.
You may wish to Subscribe to this thread so that you are notified when you receive a reply. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Add Subscription. --------------------------------------------------------------------------------------------- There doesn't appear to be anything showing in your logs. I'd like to take a further look at your computer though. -------------------------------------------------------------------------- Please save these instructions to Notepad as the internet will not be available to you at certain points of the removal process. Please ensure that there aren't any opened browsers when you are carrying out the procedures below. Make sure to work through all the Steps in the exact order in which they are listed below. If there's anything that you don't understand, ask your question(s) before moving on with the fixes. --------------------------------------------------------------------------------------------- Perform an online scan with Internet Explorer with Panda ActiveScan
![]()
* Turn off the real time scanner of any existing antivirus program while performing the online scan --------------------------------------------------------------------------------------------- Please run Deckard's System Scanner again, this time using these instructions: Click the Windows 'Start' button > Select 'Run' - then copy/paste this into the run box & click OK "%userprofile%\desktop\dss.exe" /configOnly check off the following:
Click Scan! When finished, it shall produce a log for you (extra.txt) Please post extra.txt in your next reply. -------------------------------------------------------------------------- Please reply back with the following: Panda Scan extra.txt
__________________
![]() Proud Member of ASAP Proud Member of UNITE Keep this forum alive - if you've been helped at this forum, please do consider a donation. Thank you for your support. Donation link for Tech Support Forum Last edited by forhockey; 07-23-2007 at 06:51 PM. |
|
|
|
|
#6 (permalink) |
|
Registered User
Join Date: Jul 2007
Location: MIDWEST
Posts: 22
OS: Windows XP home edition
|
Re: Slow Startup, Crashing Computer
Thanks for getting back to me.
I tried to run Panda but crashed about 113,000 files in...which is what always happens. I did run the dss report:Deckard's System Scanner v20070711.54 Extra logfile - please post this as an attachment with your post. -------------------------------------------------------------------------------- -- System Information ---------------------------------------------------------- Microsoft Windows XP Home Edition (build 2600) SP 2.0 Architecture: X86; Language: English CPU 0: Intel(R) Celeron(R) CPU 1.80GHz Percentage of Memory in Use: 79% Physical Memory (total/avail): 254.52 MiB / 51.22 MiB Pagefile Memory (total/avail): 625.5 MiB / 318.27 MiB Virtual Memory (total/avail): 2047.88 MiB / 2002.82 MiB A: is Removable (No Media) C: is Fixed (NTFS) - 51.05 GiB total, 26.93 GiB free. D: is Fixed (FAT32) - 4.87 GiB total, 0.92 GiB free. E: is CDROM (No Media) F: is CDROM (No Media) -- Security Center ------------------------------------------------------------- AUOptions is scheduled to auto-install. Windows Internal Firewall is enabled. AV: avast! antivirus 4.7.1001 [VPS 000759-1] v4.7.1001 (ALWIL Software) [HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\\Program Files\\MostFun\\Bin\\MostFun.exe"="C:\\Program Files\\MostFun\\Bin\\MostFun.exe:*:Enabled:MostFun Agent" -- User Profiles --------------------------------------------------------------- Owner (admin) -- Add/Remove Programs --------------------------------------------------------- --> C:\WINDOWS\IsUninst.exe -fC:\WINDOWS\orun32.isu --> c:\WINDOWS\System32\\MSIEXEC.EXE /x {09DA4F91-2A09-4232-AB8C-6BC740096DE3} --> c:\WINDOWS\System32\\MSIEXEC.EXE /x {8214CC02-6271-4DC8-B8DD-779933450264} --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{33AE85D9-0386-41AD-BD99-FDF3ABC19DBB}\setup.exe" -l0x9 -L0x9anything --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{854A5F01-D692-11D4-A984-009027EC0A9C}\setup.exe" --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{945E2519-C2B9-11D3-9D56-0060B0A4823E}\setup.exe" --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CD47EFC1-D692-11D4-A984-009027EC0A9C}\setup.exe" --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E7E518B2-B174-11D3-9D4E-0060B0A4823E}\setup.exe" --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf a-squared Free 3.0 --> "C:\Program Files\a-squared Free\unins000.exe" Ad-Aware SE Personal --> C:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG Adobe Flash Player ActiveX --> C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe Adobe Flash Player Plugin --> C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe Adobe Reader 8.1.0 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81000000003} Agent Chewer Free v1.2 --> "C:\Program Files\Agent Chewer Free\unins000.exe" Alchemist Special Edition --> C:\PROGRA~1\eGames\ALCHEM~1\UNWISE.EXE C:\PROGRA~1\eGames\ALCHEM~1\INSTALL.LOG ALLOUT v1.4a --> "C:\Program Files\NCBuy\ALLOUT\unins000.exe" Animals of Africa --> C:\PROGRA~1\eGames\ANIMAL~1\UNWISE.EXE C:\PROGRA~1\eGames\ANIMAL~1\INSTALL.LOG AQUAZONE "Virtual Aquarium Collection" --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A6A9D7C4-1E5B-42FD-98F5-E067A942AEE1}\Setup.exe" -l0x9 ArcSoft PhotoImpression 4 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{68D5CEF9-0DA8-47FE-B0EB-4CBFB5AAF662}\setup.exe" -l0x9 ArcSoft Software Suite --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\ArcSoft\Software Suite\Uninst.isu" avast! Antivirus --> rundll32 C:\PROGRA~1\ALWILS~1\Avast4\Setup\setiface.dll,RunSetup aXiebal Winter --> "C:\Program Files\aXiebalWinter\unins000.exe" Balloon Kaboom --> C:\PROGRA~1\eGames\BALLOO~2\UNWISE.EXE C:\PROGRA~1\eGames\BALLOO~2\INSTALL.LOG Barbie (R) BeautyStyler(TM) --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Barbie (R)\BeautyStyler\Uninst.isu" Before You Know It 3.6 Lite --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7440C872-B86A-49AA-9D08-C7FB1321A350}\Setup.exe" -l0x9 Birdie deinstallieren --> C:\Program Files\Birdie\uninst.exe Brother HL-2040 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{09B2B129-DBB2-43B8-AB00-4BBB2957025E}\SETUP.exe" -l0x9 -removeonly /uninst CardRd81 --> MsiExec.exe /I{54C8FE84-89C4-40E8-976C-439EB0729BD6} CCHelp --> MsiExec.exe /I{9D1CF8B6-17B3-4832-B062-2C2DD0B57B04} CCleaner (remove only) --> "C:\Program Files\CCleaner\uninst.exe" CCScore --> MsiExec.exe /I{B4B44FE7-41FF-4DAD-8C0A-E406DDA72992} Collector's Edition 251 --> C:\PROGRA~1\eGames\COLLEC~1\UNWISE.EXE C:\PROGRA~1\eGames\COLLEC~1\INSTALL.LOG CR2 --> MsiExec.exe /I{432C3720-37BF-4BD7-8E49-F38E090246D0} DeductionPro 2006 --> C:\Program Files\DeductionPro 2006\RemoveDPro.EXE C:\PROGRA~1\DEDUCT~1\INSTALL.LOG DrawPlus 3.0 --> C:\WINDOWS\UNINST.EXE -f"C:\PROGRA~1\BRODER~1\DrawPlus\DeIsL1.isu" eMusic Download Manager --> C:\Program Files\InstallShield Installation Information\{48FEB597-0410-4A17-B134-0DEF3083B944}\setup.exe -runfromtemp -l0x0009 -uninst -removeonly ERUNT 1.1j --> "C:\Program Files\ERUNT\unins000.exe" ESSAdpt --> MsiExec.exe /I{D15E9DB5-6BEB-4534-901E-80C0A29BAB97} ESSANUP --> MsiExec.exe /I{A6F18A67-B771-4191-8A33-36D2E742D6D9} ESSBrwr --> MsiExec.exe /I{643EAE81-920C-4931-9F0B-4B343B225CA6} ESSCAM --> MsiExec.exe /I{469730CC-78DF-4CD3-B286-562D459EA619} ESSCDBK --> MsiExec.exe /I{AE1FA02D-E6A4-4EA0-8E58-6483CAC016DD} ESScore --> MsiExec.exe /I{9D8FEE90-0377-49A9-AEFB-525BDE549BA4} ESSCT --> MsiExec.exe /I{8BB4B58A-A402-4DE8-8FCD-287E60B88DD8} ESSgui --> MsiExec.exe /I{91517631-A9F3-4B7C-B482-43E0068FD55A} ESShelp --> MsiExec.exe /I{87843A41-7808-4F2E-B13F-25C1E67CF2FD} ESSini --> MsiExec.exe /I{8E92D746-CD9F-4B90-9668-42B74C14F765} ESSPCD --> MsiExec.exe /I{14D4ED84-6A9A-45A0-96F6-1753768C3CB5} ESSPDock --> MsiExec.exe /I{FCDB1C92-03C6-4C76-8625-371224256091} ESSSONIC --> MsiExec.exe /I{4F677FC7-7AA8-412B-A957-F13CBE1C7331} ESSTUTOR --> MsiExec.exe /I{CA60320D-6A16-49C8-A34F-84EEF4799567} ESSvpaht --> MsiExec.exe /I{A5B3EB8A-4071-42F0-8E8E-7A8342AA8E69} ESSvpot --> MsiExec.exe /I{48C82F7A-F100-4DAB-A310-8E18BF2159E1} FinePixViewer Ver.4.2 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{24ED4D80-8294-11D5-96CD-0040266301AD}\SETUP.EXE" Fish Tycoon --> "C:\Program Files\Kaboose Games\Fish Tycoon\Uninstall.exe" "C:\Program Files\Kaboose Games\Fish Tycoon\install.log" Fractal Snowflake Generator 1.4 --> "C:\Program Files\Fractal Snowflake Generator\unins000.exe" Google Earth --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3DE5E7D4-7B88-403C-A3FD-2017A8240C5B}\setup.exe" -l0x9 -removeonly Google Updater --> "C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall HangARoo v2.05a --> "C:\Program Files\NCBuy\HangARoo\unins000.exe" HijackThis 1.99.1 --> C:\PROGRA~1\HIJACK~1\HijackThis.exe /uninstall History Quiz 1.0 --> "C:\Program Files\History Quiz\unins000.exe" HLPCCTR --> MsiExec.exe /I{F2D0C1B1-80FF-46F9-BA61-33B01A07FAFC} HLPIndex --> MsiExec.exe /I{38441BE7-79B0-42B8-8297-833704F949FE} HLPPDOCK --> MsiExec.exe /I{154508C0-07C5-4659-A7A0-E49968750D21} HLPRFO --> MsiExec.exe /I{AADAC983-FDE9-42FA-8FD9-7BB324155593} Hot Lines v1.2 --> "C:\Program Files\Hot Lines\unins000.exe" hp center --> C:\WINDOWS\BWUnin-6.1.0.153.exe -AppId 137903 hp instant support --> C:\PROGRA~1\HEWLET~1\AiO\HPis\Uninstall.exe CeS HP Memories Disc --> MsiExec.exe /X{103B9452-AAF9-4E8E-AE4F-DD44411B886F} HP Photo Printing Software --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Hewlett-Packard\PhotoSmart\Photo Printing\Uninstall.isu" -c"C:\Program Files\Hewlett-Packard\PhotoSmart\Photo Printing\hpiunPC.dll HP RecordNow --> MsiExec.exe /I{8214CC02-6271-4DC8-B8DD-779933450264} ImageMixer VCD2 for FinePix --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{934E9442-D305-4ACF-AD87-A6C11D677CB9}\setup.exe" Inactive HP Printer Drivers (Remove only) --> RunDll32 hpuninst.dll,InstallHinfSection UninstDefault 132 prntunin.inf InterActual Player --> C:\Program Files\InterActual\InterActual Player\inuninst.exe InterVideo WinDVD --> "C:\Program Files\InstallShield Installation Information\{C1939820-A945-11D4-86F6-0001031E5712}\setup.exe" REMOVEALL Java(TM) SE Runtime Environment 6 Update 1 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010} KBD --> C:\HP\KBD\KBD.EXE uninstalled Kodak EasyShare software --> C:\Documents and Settings\All Users\Application Data\Kodak\EasyShareSetup\$SETUP_9_1d5a2de\Setup.exe /APR-REMOVE KSU --> MsiExec.exe /I{B997C2A0-4383-41BF-B76E-9B8B7ECFB267} Lernout & Hauspie TruVoice American English TTS Engine --> RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\tv_enua.inf, Uninstall LimeWire 4.10.9 --> "C:\Downloads\LimeWire\uninstall.exe" Macromedia Shockwave Player --> C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log Mavis Beacon Teaches Typing 12 Standard --> C:\Program Files\Broderbund\Mavis Beacon Teaches Typing 12 Standard\uninstall.exe Microsoft Data Access Components KB870669 --> C:\WINDOWS\muninst.exe C:\WINDOWS\INF\KB870669.inf Microsoft Office XP Professional with FrontPage --> MsiExec.exe /I{90280409-6000-11D3-8CFE-0050048383C9} Microsoft Picture It! Express 7.0 --> MsiExec.exe /I{369B36BE-3D64-4641-9AEA-808D436FE130} Microsoft Web Publishing Wizard 1.52 --> RunDll32 ADVPACK.DLL,LaunchINFSection C:\WINDOWS\INF\wpie4x86.inf,WebPostUninstall Microsoft Works 6.0 --> MsiExec.exe /I{A1B7B9B3-E1D2-41CA-9B4A-F18DC2710704} Microsoft Zoo Tycoon --> "C:\Program Files\Microsoft Games\Zoo Tycoon\UNINSTAL.EXE" /runtemp /addremove MicroStaff WINASPI --> C:\MWASPI\uninst.exe MostFun Game Player --> MsiExec.exe /I{2BD2069A-A865-432A-86B8-1151BB0526CC} Mozilla Firefox (2.0.0.5) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exe Musicmatch® Jukebox --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{85D3CC30-8859-481A-9654-FD9B74310BEF}\setup.exe" -l0x9 -uninst Notifier --> MsiExec.exe /I{0008546E-DF6E-4CC1-AFD0-2CB8E16C95A2} NVIDIA Windows 2000/XP Display Drivers --> rundll32.exe C:\WINDOWS\System32\nvinstnt.dll,NvUninstallNT4 nvhp.inf OTtBP --> MsiExec.exe /I{F71760CD-0F8B-4DCC-B7B7-6B223CC3843C} OTtBPSDK --> MsiExec.exe /I{3CA39B0C-BA85-4D42-AC0F-1FF5F60C3353} Panda ActiveScan --> C:\WINDOWS\system32\ASUninst.exe Panda ActiveScan PCDLNCH --> MsiExec.exe /I{69BD6399-3D8F-45B7-81D9-819361F5101D} Pdf995 --> C:\Program Files\TaxCut06\pdf995\setup.exe uninstall Photo Organizer --> C:\WINDOWS\UNINST.EXE -f"C:\PROGRA~1\BRODER~1\PHOTOO~1.8\DeIsL1.isu" Picasa 2 --> "C:\Program Files\Picasa2\Uninstall.exe" Pop'em v1.1 --> c:\games\popem\unins000.exe QuickTime --> C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log RAW FILE CONVERTER LE --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D680C913-5955-469D-9D88-C1940F7506D6}\SETUP.EXE" -l0x9 RealArcade --> C:\Program Files\Real\RealArcade\Update\rnuninst.exe RealNetworks|RealArcade|1.2 RollerCoaster Tycoon Deluxe --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{924EAD66-F854-4605-8493-696DD59A113B}\Setup.exe" -l0x9 Security Update for Step By Step Interactive Training (KB898458) --> "C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe" Security Update for Step By Step Interactive Training (KB923723) --> "C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe" Sentinel 2.0 --> "C:\Program Files\Runtimeware.com\Sentinel2\unins000.exe" SFR --> MsiExec.exe /I{C354C9B6-A4E0-4BB0-A368-6DC6BCA0E314} SFR2 --> MsiExec.exe /I{A0AF08BA-3630-4505-BFB2-A41F3837B0D0} Sierra Home Architect --> C:\WINDOWS\IsUninst.exe -f"c:\program files\SIERRA\SHA\Uninst.isu" Sonic Foundry Super Duper Music Looper XPress --> MsiExec.exe /I{7B4BB888-B44E-4B91-BEE9-FE14B312B58C} SoundMAX --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\Setup.exe" Spybot - Search & Destroy 1.4 --> "C:\Program Files\Spybot - Search & Destroy\unins000.exe" SpywareBlaster v3.5.1 --> "C:\Program Files\SpywareBlaster\unins000.exe" TaxCut Premium 2006 --> C:\PROGRA~1\TaxCut06\Program\removetc.exe The Print Shop --> C:\WINDOWS\UNINST.EXE -f"C:\PROGRA~1\BRODER~1\THEPRI~1\DeIsL1.isu" -c"C:\PROGRA~1\BRODER~1\THEPRI~1\psfinst.dll" The Print Shop Photo Pro --> C:\WINDOWS\UNINST.EXE -f"C:\PROGRA~1\BRODER~1\THEPRI~2\DeIsL1.isu" -c"C:\PROGRA~1\BRODER~1\THEPRI~2\psfinst2.dll" The Ultimate Troubleshooter --> C:\PROGRA~1\ANSWER~1\TROUBL~1\UNWISE.EXE C:\PROGRA~1\ANSWER~1\TROUBL~1\INSTALL.LOG Touch Puf v1.5 --> C:\Program Files\Touch Puf v1.5\Uninstal.exe VCAMCEN --> MsiExec.exe /I{10E98E14-832C-4AF7-A4D1-6A9EF83B282E} VERITAS StorageGuard --> MsiExec.exe /I{09DA4F91-2A09-4232-AB8C-6BC740096DE3} Virtools 3D Life Player --> C:\Program Files\Virtools\3D Life Player\WebplayerConfig.exe -u Virtual Villagers --> "C:\Program Files\Virtual Villagers\ReflexiveArcade\unins000.exe" VPRINTOL --> MsiExec.exe /I{999D43F4-9709-4887-9B1A-83EBB15A8370} Winamp (remove only) --> "C:\Program Files\Winamp\UninstWA.exe" -- End of Deckard's System Scanner: finished at 2007-07-24 at 01:03:09 --------- Thanks again! |
|
|
|
|
#7 (permalink) | |
|
Analyst, Security Team
Join Date: Sep 2006
Location: Ontario, Canada
Posts: 2,947
OS: Windows 7 Ultimate
|
Re: Slow Startup, Crashing Computer
Hi jesslo,
It appears that your problem is not malware related. Below shows how much memory/resources you have, and how much is left over. There are a few things we can do to limit the use of your system resources. Quote:
-------------------------------------------------------------------------------------------------------------------------- Click > Start > Control Panel > Add / Remove Programs and uninstall the following program: a-squared Free 3.0 -------------------------------------------------------------------------------------------------------------------------- Click > Start > Run> type msconfig in the open textbox, and click OK
-------------------------------------------------------------------------------------------------------------------------- Is your system running alittle faster?
__________________
![]() Proud Member of ASAP Proud Member of UNITE Keep this forum alive - if you've been helped at this forum, please do consider a donation. Thank you for your support. Donation link for Tech Support Forum Last edited by forhockey; 07-24-2007 at 09:35 PM. |
|
|
|
|
|
#8 (permalink) |
|
Registered User
Join Date: Jul 2007
Location: MIDWEST
Posts: 22
OS: Windows XP home edition
|
Hi Forhockey,
So my system is overloaded and outdated, huh...Yeah, I sadly agree. I tried what you suggested, but it's not any faster. What's odd is that the slow-down started abruptly after I changed my monitor, but without having added any more programs or making other changes. I started getting the crashes, too, with the following error message: Your system has recovered from a serious error; signature---- BCCode : ea BCP1 : FF6D7C70 BCP2 : FFB2D808 BCP3 : FFB990E0 BCP4 : 00000001 OSVer : 5_1_2600 SP : 2_0 Product : 768_1 And I haven't been able to complete virus scans because I always crash in the process. I guess I can't figure out why it would change so suddenly, or why the scan should cause me to crash...the scans run fine until the computer suddenly shuts down. Any ideas? |
|
|
|
|
#9 (permalink) |
|
Analyst, Security Team
Join Date: Sep 2006
Location: Ontario, Canada
Posts: 2,947
OS: Windows 7 Ultimate
|
Re: Slow Startup, Crashing Computer
It sounds like a driver issue with your graphics card. Did you recently update any drivers?
__________________
![]() Proud Member of ASAP Proud Member of UNITE Keep this forum alive - if you've been helped at this forum, please do consider a donation. Thank you for your support. Donation link for Tech Support Forum |
|
|
|
|
#11 (permalink) |
|
Analyst, Security Team
Join Date: Sep 2006
Location: Ontario, Canada
Posts: 2,947
OS: Windows 7 Ultimate
|
Re: Slow Startup, Crashing Computer
Well automatic updates only installs the critical patches needed to keep your security up-to-date. Therefore, no, the only way to install/update the drivers was if you told the computer to do it yourself. Windows update gives you a choice though when you go directly to the website (Express or Custom). In the custom update under the "hardware, optional" section the site offers the latest drivers for your hardware peripherals (network card, video card, sound card, etc) .
From what I've said... I would approach our wonderful people in the Windows XP section of this forum. Tell them your machine was checked for malware, but found nothing. You may even want to reference this thread so they can look upon this thread for what has already been discussed. Regards, Mike
__________________
![]() Proud Member of ASAP Proud Member of UNITE Keep this forum alive - if you've been helped at this forum, please do consider a donation. Thank you for your support. Donation link for Tech Support Forum |
|
|
|
|
#12 (permalink) |
|
Registered User
Join Date: Jul 2007
Location: MIDWEST
Posts: 22
OS: Windows XP home edition
|
Re: Slow Startup, Crashing Computer
Thanks, Mike. I don't know whether to be happy or sad that I'm not deeply enmeshed in malware hell...I appreciate your help, though. I'll follow your advice and go to XP support--I haven't done any custom installs. Thanks again!
|
|
|
|
|
#13 (permalink) |
|
Analyst, Security Team
Join Date: Sep 2006
Location: Ontario, Canada
Posts: 2,947
OS: Windows 7 Ultimate
|
Re: Slow Startup, Crashing Computer
Any machine free of malware is something to be happy about!!! Like any problem, there is a solution.
__________________
![]() Proud Member of ASAP Proud Member of UNITE Keep this forum alive - if you've been helped at this forum, please do consider a donation. Thank you for your support. Donation link for Tech Support Forum |
|
|
| Thread Tools | |
|
|