![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| Resolved HJT Threads Resolved spyware and popup issues. |
|
|
LinkBack | Thread Tools |
|
|
#1 (permalink) |
|
Registered User
Join Date: Apr 2007
Posts: 9
OS: xp
|
computer so slow it is hardly working
Hi,
Thanks for your help in advance. I tried to follow the steps for posting but I was unable to use the Panda Active Scan as it is not Vista compatible. My computer is running so slow that it will barely run. I noticed the problem a few days ago when it took over ten min. to reboot. I downloaded and installed Avast Anti Virus, AVG and Advanced Windows Care in an effort to resolve the problem. In hindsight I may have inadvertently made it worse by adding so may additional programs. Per the instruction below is my log. In addition I have noticed that there are several processes running with the same name. For example Svchost.exe is running 15 time in the task manager under either Local Service, System, Network Service or Owner. Rundll.32.exe is running twice, both under owner. I have no idea is this is normal or not. Your help and advice are truly appreciated. Thanks, Christine Deckard's System Scanner v20070905.67 Run by Owner on 2007-10-13 16:47:41 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- Last 5 Restore Point(s) -- 13: 2007-10-13 06:10:50 UTC - RP486 - Scheduled Checkpoint 12: 2007-10-12 16:38:30 UTC - RP485 - Ad-Aware Restore Point 2007-10-12 10:38:00 11: 2007-10-12 15:22:44 UTC - RP483 - Installed Ad-Aware 2007 10: 2007-10-12 07:54:25 UTC - RP482 - Windows Update 9: 2007-10-12 00:01:27 UTC - RP481 - Installed AVG 7.5 -- First Restore Point -- 1: 2007-10-10 05:31:15 UTC - RP472 - Scheduled Checkpoint Backed up registry hives. Performed disk cleanup. -- HijackThis Clone ------------------------------------------------------------ Emulating logfile of HijackThis v1.99.1 Scan saved at 2007-10-13 16:56:26 Platform: Windows Vista (6.00.6000) MSIE: Internet Explorer (7.00.6000.16386) Running processes: C:\Windows\System32\taskeng.exe C:\Windows\System32\dwm.exe C:\Windows\explorer.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe C:\Windows\sttray.exe C:\Windows\CNYHKey.exe C:\Windows\ModLEDKey.exe C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe C:\Program Files\HP\HP Software Update\hpwuSchd2.exe C:\Program Files\Trend Micro\AntiVirus 2007\tavui.exe C:\Windows\System32\WLTRAY.EXE C:\Windows\System32\rundll32.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe C:\Program Files\Grisoft\AVG7\avgcc.exe C:\Program Files\Alwil Software\Avast4\ashDisp.exe C:\Program Files\Siber Systems\AI RoboForm\robotaskbaricon.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files\Intel\IntelDH\CCU\CCU_Engine.exe C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe C:\Windows\System32\rundll32.exe C:\Windows\ehome\ehmsas.exe C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe C:\Windows\System32\taskeng.exe C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE C:\Users\Owner\Desktop\dss.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.com/search?q=%s R1 - HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com/g/startpage.h...=DTP&M=GM5446E R1 - HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gateway.com/g/startpage.h...=DTP&M=GM5446E R1 - HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.gateway.com/g/sidepanel.h...=DTP&M=GM5446E O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\GoogleToolbar2.dll O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\google\BAE.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\GoogleToolbar2.dll O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll O4 - HKEY_LOCAL_MACHINE\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKEY_LOCAL_MACHINE\..\Run: [CCUTRAYICON] "C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe" O4 - HKEY_LOCAL_MACHINE\..\Run: [NMSSupport] "C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe" /startup O4 - HKEY_LOCAL_MACHINE\..\Run: [SigmatelSysTrayApp] sttray.exe O4 - HKEY_LOCAL_MACHINE\..\Run: [ledpointer] CNYHKey.exe O4 - HKEY_LOCAL_MACHINE\..\Run: [MoLed] ModLEDKey.exe O4 - HKEY_LOCAL_MACHINE\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" O4 - HKEY_LOCAL_MACHINE\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup O4 - HKEY_LOCAL_MACHINE\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" O4 - HKEY_LOCAL_MACHINE\..\Run: [Trend Micro AntiVirus 2007] "C:\Program Files\Trend Micro\AntiVirus 2007\tavui.exe" -1 --delay 15 O4 - HKEY_LOCAL_MACHINE\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKEY_LOCAL_MACHINE\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe O4 - HKEY_LOCAL_MACHINE\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKEY_LOCAL_MACHINE\..\Run: [NvSvc] "RUNDLL32.EXE" C:\Windows\system32\nvsvc.dll,nvsvcStart O4 - HKEY_LOCAL_MACHINE\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\Windows\system32\NvCpl.dll,NvStartup O4 - HKEY_LOCAL_MACHINE\..\Run: [NvMediaCenter] "RUNDLL32.EXE" C:\Windows\system32\NvMcTray.dll,NvTaskbarInit O4 - HKEY_LOCAL_MACHINE\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKEY_LOCAL_MACHINE\..\Run: [AVG7_CC] "C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" /STARTUP O4 - HKEY_LOCAL_MACHINE\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKEY_LOCAL_MACHINE\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray O4 - HKCU\..\Run: [AnyDVD] "C:\Program Files\SlySoft\AnyDVD\AnyDVD.exe" O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe" O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [WMPNSCFG] "C:\Program Files\Windows Media Player\WMPNSCFG.exe" O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: Customize Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Fill Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html O8 - Extra context menu item: RoboForm Toolbar - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html O8 - Extra context menu item: Save Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html (file missing) O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html (file missing) O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html (file missing) O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html (file missing) O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html (file missing) O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html (file missing) O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (file missing) O9 - Extra 'Tools' menuitem: (no name) - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (file missing) O16 - DPF: {2042B57E-6336-459E-B7CE-2A0F6C9E6AF8} (IEPlayInterface Class) - file:///E:/win/setup/iaieplay.dll O16 - DPF: {8B67B37E-1AE2-4B99-B8CF-55AF4D58DF0D} (IAMCE Class) - file:///E:/win/setup/iamce.dll O18 - Protocol: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\microsoft shared\Information Retrieval\MSITSS.DLL O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\microsoft shared\Web Components\11\OWC11.DLL O18 - Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE11\MSOXMLMF.DLL O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL O20 - Winlogon Notify: avgwlntf - C:\Windows\system32\avgwlntf.dll O23 - Service: Apple Mobile Device - Apple, Inc. - "C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe" O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgupsvc.exe O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgrssvc.exe O23 - Service: DQLWinService - Unknown owner - "C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe" O23 - Service: GoogleDesktopManager - Google - "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" O23 - Service: HP Port Resolver - Hewlett-Packard Company - C:\Windows\System32\spool\drivers\w32x86\3\HPBPRO.EXE O23 - Service: HP Status Server - Hewlett-Packard Company - C:\Windows\System32\spool\drivers\w32x86\3\HPBOID.EXE O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS O23 - Service: QBCFMonitorService - Intuit - "C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe" O23 - Service: Intuit QuickBooks FCS (QBFCService) - Intuit Inc. - "C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe" O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\Program Files\SigmaTel\C-Major Audio\WDM\stacsv.exe O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE %SystemRoot%\System32\bcmwltry.exe -- File Associations ----------------------------------------------------------- All associations okay. -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------- All drivers whitelisted. -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled -------------------- R2 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service> R2 DQLWinService - "c:\program files\common files\intel\inteldh\nms\adpplugins\dqlwinservice.exe" <Not Verified; ; DQLWinSe Application> R2 STacSV (SigmaTel Audio Service) - c:\program files\sigmatel\c-major audio\wdm\stacsv.exe <Not Verified; SigmaTel, Inc.; C-Major Audio> S3 HP Port Resolver - c:\windows\system32\spool\drivers\w32x86\3\hpbpro.exe <Not Verified; Hewlett-Packard Company; PortResolver Module> S3 HP Status Server - c:\windows\system32\spool\drivers\w32x86\3\hpboid.exe <Not Verified; Hewlett-Packard Company; HP Status Server> S3 QBFCService (Intuit QuickBooks FCS) - "c:\program files\common files\intuit\quickbooks\fcs\intuit.quickbooks.fcs.exe" <Not Verified; Intuit Inc.; QuickBooks 2007> S4 QBCFMonitorService - "c:\program files\common files\intuit\quickbooks\qbcfmonitorservice.exe" <Not Verified; Intuit; QuickBooks for Windows> -- Device Manager: Disabled ---------------------------------------------------- Class GUID: Description: DMI HID Device ID: 1394\DMI_____&HID_____________\886015005101000 Manufacturer: Name: DMI HID PNP Device ID: 1394\DMI_____&HID_____________\886015005101000 Service: Class GUID: {4d36e971-e325-11ce-bfc1-08002be10318} Description: Photosmart C6100 series Device ID: ROOT\MULTIFUNCTION\0000 Manufacturer: HP Name: Photosmart C6100 series PNP Device ID: ROOT\MULTIFUNCTION\0000 Service: -- Scheduled Tasks ------------------------------------------------------------- 2007-10-13 08:02:13 1732 --a------ C:\Windows\Tasks\wrSpySweeper_LEFFF0AE6C110402DABBAABFA2E727C46.job 2007-10-13 05:17:16 872 --a------ C:\Windows\Tasks\Paragon Archive name diff_290407220558549.job 2007-10-12 19:28:06 390 --a------ C:\Windows\Tasks\1-Click Maintenance.job 2007-10-01 00:39:06 936 --a------ C:\Windows\Tasks\Paragon Archive name arc_280407110454097.job -- Files created between 2007-09-13 and 2007-10-13 ----------------------------- 2007-10-13 06:04:48 0 d-------- C:\Program Files\Alwil Software 2007-10-12 09:23:24 0 d-------- C:\Program Files\Lavasoft 2007-10-12 09:23:23 0 d-------- C:\Users\All Users\Lavasoft 2007-10-11 18:01:50 0 d-------- C:\Users\All Users\Grisoft 2007-10-11 18:01:50 0 d-------- C:\Users\All Users\avg7 2007-10-10 18:09:43 0 d-------- C:\Program Files\ToniArts 2007-10-05 10:29:22 0 d--hs---- C:\Windows\ftpcache 2007-10-03 15:51:06 0 d-------- C:\Program Files\IObit 2007-10-01 07:15:20 0 d-------- C:\Program Files\2BrightSparks 2007-09-23 07:56:28 0 d-------- C:\Users\All Users\CyberLink 2007-09-20 18:23:35 0 d-------- C:\Program Files\iPod 2007-09-20 18:23:34 0 d-------- C:\Program Files\iTunes 2007-09-15 15:14:25 0 d-------- C:\Users\All Users\NVIDIA 2007-09-15 09:34:58 336 --a------ C:\Program Files\temp995.bat -- Find3M Report --------------------------------------------------------------- 2007-10-12 09:22:05 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard 2007-10-11 20:04:57 0 d-------- C:\Users\Owner\AppData\Roaming\AVG7 2007-10-11 08:04:31 0 d-------- C:\Program Files\CONEXANT 2007-10-10 09:52:03 0 d-------- C:\Program Files\Windows Mail 2007-10-08 11:47:27 0 d-------- C:\Users\Owner\AppData\Roaming\Image Zone Express 2007-10-04 11:54:33 0 d-------- C:\Users\Owner\AppData\Roaming\Vso 2007-10-02 10:50:10 0 d-------- C:\Program Files\Apple Software Update 2007-09-23 07:57:00 0 d-------- C:\Users\Owner\AppData\Roaming\CyberLink 2007-09-21 08:27:09 0 d-------- C:\Users\Owner\AppData\Roaming\Google 2007-09-17 07:49:47 0 d-------- C:\Users\Owner\AppData\Roaming\Update 2007-09-15 09:34:33 0 d-------- C:\Program Files\pdf995 2007-09-08 09:25:31 130835 --a------ C:\Windows\hpoins18.dat 2007-09-08 09:22:25 0 d-------- C:\Program Files\Hewlett-Packard 2007-09-03 12:41:38 174 --ahs---- C:\Program Files\desktop.ini 2007-09-03 12:40:10 0 d-------- C:\Program Files\Windows Calendar 2007-08-24 18:08:24 1275392 --a------ C:\Windows\system32\msxml4.dll <Not Verified; Microsoft Corporation; Microsoft(R) MSXML 4.0 SP 2> 2007-08-17 16:10:46 0 d-------- C:\Users\Owner\AppData\Roaming\TuneUp Software 2007-08-17 16:10:38 0 d-------- C:\Program Files\TuneUp Utilities 2007 2007-08-17 16:08:30 0 d-------- C:\Program Files\Common Files 2007-08-15 10:39:08 0 d-------- C:\Program Files\Common Files\Sperry Software 2007-08-01 07:28:08 164 --a------ C:\install.dat -- Registry Dump --------------------------------------------------------------- *Note* empty entries & legit default entries are not shown [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [04/27/2007 03:01 AM] "CCUTRAYICON"="C:\Program Files\Intel\IntelDH\CCU\CCU_TrayIcon.exe" [11/18/2006 09:01 AM] "NMSSupport"="C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe" [09/26/2006 12:56 PM] "SigmatelSysTrayApp"="sttray.exe" [11/02/2006 02:38 PM C:\Windows\sttray.exe] "ledpointer"="CNYHKey.exe" [11/09/2006 06:01 PM C:\Windows\CNYHKey.exe] "MoLed"="ModLEDKey.exe" [11/09/2006 06:15 PM C:\Windows\ModLEDKey.exe] "IAAnotif"="C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [11/15/2006 06:58 PM] "Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [05/29/2007 11:56 AM] "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [12/10/2006 09:52 PM] "Trend Micro AntiVirus 2007"="C:\Program Files\Trend Micro\AntiVirus 2007\tavui.exe" [07/05/2007 08:09 PM] "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [05/11/2007 03:06 AM] "Broadcom Wireless Manager UI"="C:\Windows\system32\WLTRAY.exe" [12/19/2006 02:18 PM] "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [06/29/2007 06:24 AM] "NvSvc"="RUNDLL32.exe" [11/02/2006 03:45 AM C:\Windows\System32\rundll32.exe] "NvCplDaemon"="RUNDLL32.exe" [11/02/2006 03:45 AM C:\Windows\System32\rundll32.exe] "NvMediaCenter"="RUNDLL32.exe" [11/02/2006 03:45 AM C:\Windows\System32\rundll32.exe] "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [09/14/2007 10:00 AM] "AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [10/11/2007 06:02 PM] "avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [09/06/2007 04:06 AM] "SpySweeper"="C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" [07/19/2007 10:54 PM] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AnyDVD"="C:\Program Files\SlySoft\AnyDVD\AnyDVD.exe" [09/10/2007 03:29 AM] "RoboForm"="C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe" [08/10/2007 07:22 AM] "ehTray.exe"="C:\Windows\ehome\ehTray.exe" [11/02/2006 06:35 AM] "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [11/02/2006 06:36 AM] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [1/2/2007 9:40:10 PM] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"=2 (0x2) [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgwlntf] avgwlntf.dll 10/11/2007 06:02 PM 9216 C:\Windows\System32\avgwlntf.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "appinit_dlls"=C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys] @="Driver" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys] @="Driver" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WebrootSpySweeperService] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}] @="Volume shadow copy" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}] @="IEEE 1394 Bus host controllers" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}] @="SBP2 IEEE 1394 Devices" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}] @="SecurityDevices" [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-] "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun "ehTray.exe"=C:\Windows\ehome\ehTray.exe [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "BigFix"="c:\program files\Bigfix\bigfix.exe" /atstartup "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" -atboottime [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] LocalSystemNetworkRestricted hidserv UxSms WdiSystemHost Netman trkwks AudioEndpointBuilder WUDFSvc irmon sysmain IPBusEnum dot3svc PcaSvc EMDMgmt TabletInputService wlansvc WPDBusEnum HPZ12 Pml Driver HPZ12 Net Driver HPZ12 HPService HPSLPSVC hpdevmgmt hpqcxs08 hpqddsvc HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs UxTuneUp [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\M] AutoRun\command- M:\setupSNK.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\O] AutoRun\command- "O:\Install FreeAgent Tools.exe" /run [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{43a94b05-00e8-11dc-8e17-0019d13a1e58}] AutoRun\command- O:\setupSNK.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7b3d245f-0eef-11dc-9b86-0019d13a1e58}] AutoRun\command- "O:\Install FreeAgent Tools.exe" /run [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ad341eee-f50c-11db-a3ef-806e6f6e6963}] AutoRun\command- O:\setupSNK.exe *Newly Created Service* - ASWMONFLT *Newly Created Service* - ASWRDR *Newly Created Service* - ASWTDI [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] C:\Windows\system32\unregmp2.exe /ShowWMP [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] %SystemRoot%\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI -- End of Deckard's System Scanner: finished at 2007-10-13 17:11:50 ------------ Last edited by roundshm; 10-13-2007 at 06:15 PM. |
|
|
| Important Information |
|
Join the #1 Tech Support Forum Today - It's Totally Free!
TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free. Join TechSupportforum.com Today - Click Here |
|
|
#3 (permalink) |
|
Assistant Manager, TSF Academy; Moderator/Analyst Security Team
Join Date: Jan 2005
Location: Ohio
Posts: 26,898
OS: WinXP and Vista
|
Re: computer so slow it is hardly working
Hello Christine,
To be honest, this does not sound malware related. Additonally, I'm not noting any in the logs you've posted. You are correct that adding the extra Anti Virus programs has only made it worse. It's never a good idea to have more than 1 installed at a time as they will conflict with one another and cause system slow-downs. Please choose and run only 1. Uninstall the other 2 via the Add/Remove programs panel. Everything you see in the running processes is legit and normal. I would suggest you begin a thread in the Windows Vista Support section of this forum to elicit the suggestions and advice of the experts there. |
|
|
|
|
#4 (permalink) |
|
Registered User
Join Date: Apr 2007
Posts: 9
OS: xp
|
Re: computer so slow it is hardly working
Ried,
Thanks so much for your response. I uninstalled all the antivirus software except Trend Micro System. I will take your advise and post a new log in the support forum. My computer does seem to be running better, but still not up to par. However after reading some of the othe posts I consider myself both lucky and reassured that malware doesn't appear to be the problem. Again, thank you so much for you help. What a great service you guys/gals provide. Christine |
|
|
| Thread Tools | |
|
|