Tech Support banner

Status
Not open for further replies.
1 - 1 of 1 Posts

·
Registered
Joined
·
5 Posts
Discussion Starter · #1 ·
Hi i am using windows vista ultimate 32 bit and yesterday my computer went incredibly slow for seemingly no reason so i opened task manager and saw that my CPU usage was at 100%,after looking through the list of processes to see what was being such a resource wh0re, i couldn't see any processes that were using alot of cpu power so i downloaded "Process Explorer" and found that my problem was something called "Hardware Interrupts" which was (and still is) using 88-100% of my cpu how can i fix this problem? PLEASE help as i am completely stumped by this one.oh,and by the way,the 100% cpu usage is constant from the minute my PC is turned on,even with no apps running it stays at a constant 100%.

Thanks,
Tom:smile:

Here is my log file:
Deckard's System Scanner v20070328.36
Run by Tom on 2007-04-07 at 21:57:40
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- Last 5 Restore Point(s) --
12: 2007-04-06 20:49:00 UTC - RP59 - Installed DriverMagic
11: 2007-04-06 14:00:46 UTC - RP58 - Installed Driver Detective
10: 2007-04-06 10:00:24 UTC - RP56 - Restore Operation
9: 2007-04-06 08:51:57 UTC - RP55 - Windows Update
8: 2007-04-05 23:19:12 UTC - RP54 - Restore Operation


-- First Restore Point --
1: 2007-04-04 09:51:03 UTC - RP47 - Removed Autodesk DWF Viewer 7


Backed up registry hives.

Performed disk cleanup.


-- HijackThis (run as Tom.exe) -------------------------------------------------

Logfile of HijackThis v1.99.1
Scan saved at 22:06:36, on 07/04/2007
Platform: Unknown Windows (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16386)

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Keyboard Driver\OEMDriver.exe
C:\Program Files\Java\jre1.6.0\bin\jusched.exe
C:\Windows\System32\kxmixer.exe
C:\Windows\System32\mobsync.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Eset\nod32kui.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\wuauclt.exe
C:\Users\Tom\Desktop\dss.exe
C:\Users\Tom\Desktop\Tom.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.1.2.7.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [KBDriver] C:\Program Files\Keyboard Driver\OEMDriver.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [kX Mixer] kxmixer --startup
O4 - HKLM\..\Run: [DriverMagicLogon] "C:\Program Files\SymplisIT\DriverMagic\dmschedule.exe" /boot
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O11 - Options group: [INTERNATIONAL] International*
O13 - Gopher Prefix:
O16 - DPF: {C606BA60-AB76-48B6-96A7-2C4D5C386F70} (PreQualifier Class) - http://help.broadbandassist.com/bbdesktop/PreQual/files/MotivePreQual.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: avgwlntf - C:\Windows\SYSTEM32\avgwlntf.dll
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: mental ray 3.5 Satellite (32-bit) (mi-raysat_3dsmax9_32) - Unknown owner - C:\Program Files\Autodesk\3ds Max 9\mentalray\satellite\raysat_3dsmax9_32server.exe (file missing)
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: Transcoding and Broadcast Service (Transcode360) - Unknown owner - C:\Program Files\Transcode360\Transcode360.exe
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)


-- File Associations -----------------------------------------------------------

All associations okay.


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

R1 AvgMfx86 (AVG Minifilter x86 Resident Driver) - c:\windows\system32\drivers\avgmfx86.sys
R1 nod32drv - c:\windows\system32\drivers\nod32drv.sys
R2 AMON - c:\windows\system32\drivers\amon.sys
R3 kxwdmdrv (kX WDM Driver Service) - c:\windows\system32\drivers\kx.sys
R3 nvlddmkm - c:\windows\system32\drivers\nvlddmkm.sys

S0 OemBiosDevice (Royalty OEM Bios Extension) - c:\windows\system32\drivers\royal.sys
S3 AgereSoftModem (Agere Systems Soft Modem) - c:\windows\system32\drivers\agrsm.sys
S3 Dot4 (MS IEEE-1284.4 Driver) - c:\windows\system32\drivers\dot4.sys
S3 Dot4Print (Print Class Driver for IEEE-1284.4) - c:\windows\system32\drivers\dot4prt.sys
S3 UMPass (Microsoft UMPass Driver) - c:\windows\system32\drivers\umpass.sys


-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

R2 AgereModemAudio (Agere Modem Call Progress Audio) - c:\windows\system32\agrsmsvc.exe
R2 AvgCoreSvc (AVG7 Resident Shield Service) - c:\progra~1\grisoft\avg7\avgrssvc.exe
R2 Bonjour Service (##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##) - "c:\program files\bonjour\mdnsresponder.exe"
R2 Transcode360 (Transcoding and Broadcast Service) - "c:\program files\transcode360\transcode360.exe"

S2 mi-raysat_3dsmax9_32 (mental ray 3.5 Satellite (32-bit)) - "c:\program files\autodesk\3ds max 9\mentalray\satellite\raysat_3dsmax9_32server.exe" (file missing)
S3 FLEXnet Licensing Service - "c:\program files\common files\macrovision shared\flexnet publisher\fnplicensingservice.exe"
S3 Microsoft Office Groove Audit Service - "c:\program files\microsoft office\office12\grooveauditservice.exe"


-- Scheduled Tasks -------------------------------------------------------------

2007-04-07 22:06:00 418 --ah----- C:\Windows\Tasks\User_Feed_Synchronization-{25C991EE-AA5F-49F8-8A6E-F54C2A6B3F4C}.job<USER_F~1.JOB>
2007-04-07 21:15:06 414 --ah----- C:\Windows\Tasks\User_Feed_Synchronization-{69A40096-896B-4312-B4A0-BC7507346890}.job<USER_F~2.JOB>


-- Files created between 2007-03-07 and 2007-04-07 -----------------------------



-- Find3M Report ---------------------------------------------------------------

2007-04-07 20:05:10 0 d-------- C:\Program Files\Transcode360<TRANSC~1>
2007-04-07 10:19:36 0 d-------- C:\Users\Tom\AppData\Roaming\Lavasoft
2007-04-07 10:13:04 0 d-------- C:\Program Files\Lavasoft
2007-04-07 09:27:18 0 d-------- C:\Users\Tom\AppData\Roaming\FileZilla<FILEZI~1>
2007-04-06 21:53:18 65 --a------ C:\Windows\vmreg32.dll
2007-04-06 21:51:11 0 d-------- C:\Program Files\SymplisIT<SYMPLI~1>
2007-04-06 16:12:37 0 d-------- C:\Program Files\Registry Care<REGIST~1>
2007-04-06 15:07:18 0 d--h----- C:\Program Files\InstallShield Installation Information<INSTAL~1>
2007-04-06 15:04:13 0 d-------- C:\Program Files\PC Drivers HeadQuarters<PCDRIV~1>
2007-04-06 11:20:58 0 d-------- C:\Program Files\BitLocker<BITLOC~1>
2007-04-06 11:20:53 0 d-------- C:\Users\Tom\AppData\Roaming\AVG7
2007-04-06 11:20:33 0 d-------- C:\Program Files\Symantec
2007-04-06 11:20:31 0 d-------- C:\Program Files\EphPod
2007-04-06 11:20:30 0 d-------- C:\Program Files\DriverGuide Toolkit<DRIVER~1>
2007-04-06 11:20:30 0 d-------- C:\Program Files\Common Files\Symantec Shared<SYMANT~1>
2007-04-06 11:20:29 0 d-------- C:\Program Files\Common Files\Autodesk Shared<AUTODE~1>
2007-04-06 11:20:28 0 d-------- C:\Program Files\Common Files\Adobe
2007-04-06 11:20:28 0 d-------- C:\Program Files\BitTyrant<BITTYR~1>
2007-04-06 11:20:28 0 d-------- C:\Program Files\BitSpirit<BITSPI~1>
2007-04-06 11:20:28 0 d-------- C:\Program Files\Autodesk
2007-04-06 09:54:01 633856 --a------ C:\Windows\system32\user32(585).dll
2007-04-06 00:36:44 0 d-------- C:\Program Files\Symantec(104)<SYMANT~1>
2007-04-06 00:36:43 0 d-------- C:\Program Files\Grisoft(101)<GRISOF~1>
2007-04-05 21:52:28 0 d-------- C:\Program Files\PCPitstop<PCPITS~1>
2007-04-05 21:38:17 0 d---s---- C:\Users\Tom\AppData\Roaming\Microsoft<MICROS~1>
2007-04-03 14:48:36 0 d-------- C:\Users\Tom\AppData\Roaming\Adobe
2007-04-02 22:46:08 0 d-------- C:\Users\Tom\AppData\Roaming\Configuration<CONFIG~1>
2007-04-02 21:35:02 0 d-------- C:\Users\Tom\AppData\Roaming\Notepad++<NOTEPA~1>
2007-04-01 17:11:29 0 d-------- C:\Users\Tom\AppData\Roaming\Apple Computer<APPLEC~1>
2007-04-01 14:20:34 0 d-------- C:\Users\Tom\AppData\Roaming\Macromedia<MACROM~1>
2007-04-01 14:06:51 0 d-------- C:\Program Files\Common Files\Macromedia<MACROM~1>
2007-04-01 14:03:21 0 d-------- C:\Program Files\Macromedia<MACROM~1>
2007-04-01 14:00:27 0 d-------- C:\Program Files\Common Files\InstallShield<INSTAL~1>
2007-03-30 15:22:55 0 d-------- C:\Program Files\FileZilla Client<FILEZI~1>
2007-03-30 13:52:20 0 d-------- C:\Program Files\Notepad++<NOTEPA~1>
2007-03-29 19:17:17 0 d-------- C:\Program Files\kX Audio Driver<KXAUDI~1>
2007-03-29 17:56:35 0 d-------- C:\Program Files\BT Broadband Desktop Help<BTBROA~1>
2007-03-28 21:47:46 298104 --a------ C:\Windows\system32\imon.dll
2007-03-28 07:50:54 0 d-------- C:\Program Files\Common Files\Macrovision Shared<MACROV~1>
2007-03-28 07:49:48 0 d-------- C:\Program Files\Bonjour
2007-03-28 07:04:14 0 d-------- C:\Program Files\Windows Mail<WINDOW~1>
2007-03-28 06:35:40 0 d-------- C:\Program Files\DAEMON Tools<DAEMON~1>
2007-03-28 00:37:15 0 d-------- C:\Program Files\Common Files\Java
2007-03-28 00:37:13 0 d-------- C:\Program Files\Java
2007-03-28 00:16:41 0 d-------- C:\Program Files\kX Project<KXPROJ~1>
2007-03-27 20:01:56 0 d-------- C:\Program Files\Keyboard Driver<KEYBOA~1>
2007-03-27 19:32:52 1171848 --a------ C:\Windows\system32\SecureKeyBackupCPL.dll
2007-03-27 19:32:30 227744 --a------ C:\Windows\system32\DreamScene.dll
2007-03-27 19:32:29 1149440 --a------ C:\Windows\system32\themecpl.dll
2007-03-27 19:31:33 0 d-------- C:\Program Files\Microsoft Games<MICROS~1>
2007-03-25 18:15:35 0 d-------- C:\Users\Tom\AppData\Roaming\Google
2007-03-25 17:19:16 0 d-------- C:\Program Files\Microsoft Works<MIF2B0~1>
2007-03-25 17:18:32 0 d-------- C:\Program Files\MSBuild
2007-03-25 17:15:45 0 d-------- C:\Program Files\Microsoft.NET<MICROS~1.NET>
2007-03-25 17:12:48 0 d-------- C:\Program Files\Microsoft Visual Studio 8<MICROS~3>
2007-03-25 16:28:31 2560 --a------ C:\Windows\system32\BitCometRes.dll<BITCOM~1.DLL>
2007-03-25 16:27:51 0 d-------- C:\Program Files\BitComet
2007-03-25 15:40:34 0 d-------- C:\Program Files\Wide Angle Software<WIDEAN~1>
2007-03-25 14:21:37 0 d-------- C:\Program Files\iTunes
2007-03-25 14:21:29 0 d-------- C:\Program Files\iPod
2007-03-25 14:20:26 0 d-------- C:\Program Files\QuickTime<QUICKT~1>
2007-03-25 14:19:39 0 d-------- C:\Program Files\Apple Software Update<APPLES~1>
2007-03-25 14:00:40 0 --a------ C:\Windows\nsreg.dat
2007-03-25 14:00:37 0 d-------- C:\Users\Tom\AppData\Roaming\Mozilla
2007-03-25 13:44:33 0 d-------- C:\Users\Tom\AppData\Roaming\DivX
2007-03-25 13:10:11 414208 --a------ C:\Windows\system32\msscp.dll
2007-03-25 12:59:11 0 d-------- C:\Users\Tom\AppData\Roaming\vlc
2007-03-25 12:58:32 0 d-------- C:\Program Files\VideoLAN
2007-03-25 12:55:02 348160 --a------ C:\Windows\system32\msvcr71.dll
2007-03-25 12:55:02 499712 --a------ C:\Windows\system32\msvcp71.dll
2007-03-25 12:55:02 9216 --a------ C:\Windows\system32\avgwlntf.dll
2007-03-25 12:38:13 0 d-------- C:\Program Files\Xvid
2007-03-25 12:35:44 0 d-------- C:\Users\Tom\AppData\Roaming\uTorrent
2007-03-25 12:16:32 0 d-------- C:\Program Files\MSN Messenger<MSNMES~1>
2007-03-25 12:13:13 229888 --a------ C:\Windows\system32\msshsq.dll
2007-03-25 12:12:09 974336 --a------ C:\Windows\system32\crypt32.dll
2007-03-25 12:11:38 4153344 --a------ C:\Windows\system32\GameUXLegacyGDFs.dll
2007-03-25 12:11:37 1686016 --a------ C:\Windows\system32\gameux.dll
2007-03-25 12:02:52 0 d-------- C:\Users\Tom\AppData\Roaming\WinRAR
2007-03-25 11:54:48 0 d-------- C:\Users\Tom\AppData\Roaming\Identities<IDENTI~1>
2007-03-25 11:40:49 104448 --a------ C:\Windows\system32\DWWIN.EXE
2007-03-09 16:28:02 598016 --a------ C:\Windows\SOUNDMAN.EXE
2007-03-05 19:03:24 1842176 --a------ C:\Windows\system32\RtkAPO.dll
2007-02-26 22:24:30 239616 --a------ C:\Windows\system32\gdsmux.exe
2007-02-26 22:24:20 220672 --a------ C:\Windows\system32\dxr.dll
2007-02-26 22:23:36 104960 --a------ C:\Windows\system32\dsmux.exe
2007-02-26 22:22:42 150528 --a------ C:\Windows\system32\mkx.dll
2007-02-26 22:22:36 110592 --a------ C:\Windows\system32\avi.dll
2007-02-26 22:22:34 106496 --a------ C:\Windows\system32\avss.dll
2007-02-26 22:22:30 141312 --a------ C:\Windows\system32\mp4.dll
2007-02-26 22:22:24 123392 --a------ C:\Windows\system32\ogm.dll
2007-02-26 22:22:14 159744 --a------ C:\Windows\system32\mmfinfo.dll
2007-02-26 22:22:08 135168 --a------ C:\Windows\system32\mkv2vfr.exe
2007-02-26 22:22:04 151552 --a------ C:\Windows\system32\ts.dll
2007-02-26 22:21:46 99840 --a------ C:\Windows\system32\avs.dll
2007-02-26 22:21:38 79360 --a------ C:\Windows\system32\mkzlib.dll
2007-02-26 22:21:38 23552 --a------ C:\Windows\system32\mkunicode.dll<MKUNIC~1.DLL>
2007-02-12 20:21:22 200704 --a------ C:\Windows\system32\TomsMoComp_ff.dll<TOMSMO~1.DLL>
2007-02-12 20:21:22 399872 --a------ C:\Windows\system32\libmplayer.dll<LIBMPL~1.DLL>
2007-02-12 20:21:22 114688 --a------ C:\Windows\system32\libmpeg2_ff.dll<LIBMPE~1.DLL>
2007-02-12 20:21:22 3426304 --a------ C:\Windows\system32\libavcodec.dll<LIBAVC~1.DLL>
2007-02-12 20:21:22 462848 --a------ C:\Windows\system32\ff_x264.dll
2007-02-12 20:21:22 26624 --a------ C:\Windows\system32\ff_wmv9.dll
2007-02-12 20:21:22 10752 --a------ C:\Windows\system32\ff_vfw.dll
2007-02-12 20:21:22 38400 --a------ C:\Windows\system32\ff_unrar.dll
2007-02-12 20:21:22 79872 --a------ C:\Windows\system32\ff_tremor.dll<FF_TRE~1.DLL>
2007-02-12 20:21:22 143360 --a------ C:\Windows\system32\ff_theora.dll<FF_THE~1.DLL>
2007-02-12 20:21:22 122880 --a------ C:\Windows\system32\ff_samplerate.dll<FF_SAM~1.DLL>
2007-02-12 20:21:22 97280 --a------ C:\Windows\system32\ff_realaac.dll<FF_REA~1.DLL>
2007-02-12 20:21:22 118784 --a------ C:\Windows\system32\ff_libmad.dll<FF_LIB~4.DLL>
2007-02-12 20:21:22 245760 --a------ C:\Windows\system32\ff_libfaad2.dll<FF_LIB~3.DLL>
2007-02-12 20:21:22 155648 --a------ C:\Windows\system32\ff_libdts.dll<FF_LIB~2.DLL>
2007-02-12 20:21:22 40960 --a------ C:\Windows\system32\ff_liba52.dll<FF_LIB~1.DLL>
2007-02-12 20:21:22 225280 --a------ C:\Windows\system32\ff_kernelDeint.dll<FF_KER~1.DLL>
2007-02-12 20:21:22 741376 --a------ C:\Windows\system32\audxlib.dll
2007-02-06 14:55:00 494080 --a------ C:\Windows\system32\RtkPgExt.dll
2007-02-01 05:56:04 639066 --a------ C:\Windows\system32\DivX.dll
2007-01-31 22:27:00 524288 --a------ C:\Windows\system32\DivXsm.exe
2007-01-30 06:03:40 3596288 --a------ C:\Windows\system32\qt-dx331.dll
2007-01-30 06:03:26 200704 --a------ C:\Windows\system32\ssldivx.dll
2007-01-30 06:03:26 1044480 --a------ C:\Windows\system32\libdivx.dll
2007-01-30 05:56:56 196608 --a------ C:\Windows\system32\dtu100.dll
2007-01-30 05:56:56 73728 --a------ C:\Windows\system32\dpl100.dll
2007-01-30 05:56:52 57344 --a------ C:\Windows\system32\dpv11.dll
2007-01-30 05:56:52 344064 --a------ C:\Windows\system32\dpus11.dll
2007-01-30 05:56:52 593920 --a------ C:\Windows\system32\dpuGUI11.dll
2007-01-30 05:56:52 294912 --a------ C:\Windows\system32\dpu11.dll
2007-01-22 01:59:36 7168 --a------ C:\Windows\system32\sfman32.dll
2007-01-22 01:59:36 27648 --a------ C:\Windows\system32\kxsetup.exe
2007-01-22 01:59:36 494592 --a------ C:\Windows\system32\kxmixer.exe
2007-01-22 01:59:36 122368 --a------ C:\Windows\system32\kxgui.dll
2007-01-22 01:59:36 21504 --a------ C:\Windows\system32\kxefx.dll
2007-01-22 01:59:36 17408 --a------ C:\Windows\system32\kxctrl.exe
2007-01-22 01:59:36 44032 --a------ C:\Windows\system32\kxasio.dll
2007-01-22 01:59:36 101888 --a------ C:\Windows\system32\kxapi.dll
2007-01-22 01:58:38 258048 --a------ C:\Windows\system32\cmax20.dll
2007-01-19 12:53:04 51056 --a------ C:\Windows\system32\sirenacm.dll
2007-01-09 09:28:46 974848 --a------ C:\Windows\system32\VSFilter.dll


-- Registry Dump ---------------------------------------------------------------


[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"WindowsWelcomeCenter"="rundll32.exe oobefldr.dll,ShowWelcomeCenter"
"MsnMsgr"="\"C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe\" /background"
"ehTray.exe"="C:\\Windows\\ehome\\ehTray.exe"
"swg"="C:\\Program Files\\Google\\GoogleToolbarNotifier\\1.2.1128.5462\\GoogleToolbarNotifier.exe"
"WMPNSCFG"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe"
"Sidebar"="C:\\Program Files\\Windows Sidebar\\sidebar.exe /autoRun"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"Windows Defender"=hex(2):25,50,72,6f,67,72,61,6d,46,69,6c,65,73,25,5c,57,69,\
6e,64,6f,77,73,20,44,65,66,65,6e,64,65,72,5c,4d,53,41,53,43,75,69,2e,65,78,\
65,20,2d,68,69,64,65,00
"NvSvc"="RUNDLL32.EXE C:\\Windows\\system32\\nvsvc.dll,nvsvcStart"
"NvCplDaemon"="RUNDLL32.EXE C:\\Windows\\system32\\NvCpl.dll,NvStartup"
"NvMediaCenter"="RUNDLL32.EXE C:\\Windows\\system32\\NvMcTray.dll,NvTaskbarInit"
"AVG7_CC"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgcc.exe /STARTUP"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
"GrooveMonitor"="\"C:\\Program Files\\Microsoft Office\\Office12\\GrooveMonitor.exe\""
"KBDriver"="C:\\Program Files\\Keyboard Driver\\OEMDriver.exe"
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0\\bin\\jusched.exe\""
"DAEMON Tools"="\"C:\\Program Files\\DAEMON Tools\\daemon.exe\" -lang 1033"
"nod32kui"="\"C:\\Program Files\\Eset\\nod32kui.exe\" /WAITSERVICE"
"kX Mixer"="kxmixer --startup"
"DriverMagicLogon"="\"C:\\Program Files\\SymplisIT\\DriverMagic\\dmschedule.exe\" /boot"


[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{E31004D1-A431-41B8-826F-E902F9D95C81}"="Windows DreamScene"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"="Groove GFS Stub Execution Hook"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"=dword:00000002
"ConsentPromptBehaviorUser"=dword:00000001
"EnableInstallerDetection"=dword:00000001
"EnableLUA"=dword:00000001
"EnableSecureUIAPaths"=dword:00000001
"EnableVirtualization"=dword:00000001
"PromptOnSecureDesktop"=dword:00000001
"ValidateAdminCodeSignatures"=dword:00000000
"scforceoption"=dword:00000000
"FilterAdministratorToken"=dword:00000000

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system\UIPI]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system\UIPI\Clipboard]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system\UIPI\Clipboard\ExceptionFormats]
"CF_TEXT"=dword:00000001
"CF_BITMAP"=dword:00000002
"CF_OEMTEXT"=dword:00000007
"CF_DIB"=dword:00000008
"CF_PALETTE"=dword:00000009
"CF_UNICODETEXT"=dword:0000000d
"CF_DIBV5"=dword:00000011

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgwlntf

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="credssp.dll"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
LocalService REG_MULTI_SZ nsi\0lltdsvc\0SSDPSRV\0upnphost\0SCardSvr\0w32time\0EventSystem\0RemoteRegistry\0WinHttpAutoProxySvc\0lanmanworkstation\0TBS\0SLUINotify\0THREADORDER\0fdrespub\0netprofm\0fdphost\0wcncsvc\0QWAVE\0Mcx2Svc\0WebClient\0\0
LocalSystemNetworkRestricted REG_MULTI_SZ hidserv\0UxSms\0WdiSystemHost\0Netman\0trkwks\0AudioEndpointBuilder\0WUDFSvc\0irmon\0sysmain\0IPBusEnum\0dot3svc\0PcaSvc\0CscService\0wlansvc\0UmRdpService\0EMDMgmt\0WPDBusEnum\0TabletInputService\0\0
NetworkServiceNetworkRestricted REG_MULTI_SZ PolicyAgent\0\0
LocalServiceNoNetwork REG_MULTI_SZ PLA\0DPS\0BFE\0mpssvc\0ehstart\0\0
NetworkService REG_MULTI_SZ CryptSvc\0DHCP\0TermService\0KtmRm\0DNSCache\0NapAgent\0nlasvc\0WinRM\0WECSVC\0Tapisrv\0\0
termsvcs REG_MULTI_SZ TermService\0\0
WerSvcGroup REG_MULTI_SZ wersvc\0\0
swprv REG_MULTI_SZ swprv\0\0
LocalServiceNetworkRestricted REG_MULTI_SZ DHCP\0eventlog\0AudioSrv\0LmHosts\0wscsvc\0p2pimsvc\0PNRPSvc\0p2psvc\0WPCSvc\0PnrpAutoReg\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
regsvc REG_MULTI_SZ RemoteRegistry\0\0
wcssvc REG_MULTI_SZ WcsPlugInService\0\0
DcomLaunch REG_MULTI_SZ PlugPlay\0DcomLaunch\0\0
wdisvc REG_MULTI_SZ WdiServiceHost\0\0
sdrsvc REG_MULTI_SZ sdrsvc\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
secsvcs REG_MULTI_SZ WinDefend\0\0


[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d0f22cad-daac-11db-ad36-806e6f6e6963}]
shell\AutoRun\command F:\setup.exe


-- End of Deckard's System Scanner: finished at 2007-04-07 at 22:09:04 ---------


and attached is my extra.txt file from the dss program.
 

Attachments

1 - 1 of 1 Posts
Status
Not open for further replies.
Top