| Live Chat & Podcast at 1:00PM Eastern on Sunday! |
| | |
| Thread Tools |
|
19-Aug-2010, 05:34 PM
#1 |
| Hello, I apologize in advance if this is posted in the wrong forum, in which case, please redirect me to the correct one. I have a Dell Latitude D510 laptop that I have not used in about a year or so because it began running very slowly and I got a new laptop as a gift shortly after. I recently got it out and turned it on because I am in school again and need various files and folders on it. After updating it with all of the Microsoft Updates that were available, as well as a BIOS update from the manufacturer, the computer began to run a tad bit faster. However, the computer is still noticably lagging compared to how it should run-- it takes a long time to boot up or respond to any commands I make (whether to open a browser or some other document or program). I ran a virus and malware scan using both TrendMicro Housecall and AVG Antivirus Free, but absolutely nothing showed up as malicious. I uninstalled miscellaneous software, cleaned up the disk, and even did a disk check upon restart (nothing needed repair). However, nothing has gotten it back to its usual running condition. As an example, for this specific post, I closed all running programs. Then, I clicked on the Start button to open Microsoft Update. I timed how long it took to open, scan, and list any available updates from the first click on the Start button to when the page had completely finished loading. The time was exactly 34 minutes. Yikes! Similar large amounts of time are used to open regular webpages, documents, and programs. I really need this computer to perform better, as classes start in a week or so. Please help! What could be causing it to run so slowly? Thank you! |
| |
19-Aug-2010, 05:51 PM
#2 | ||||||
| Depending on where you bought it and what configuration it came with, the Dell Latitude D510 laptop comes with either 256 MB or 512 MB of RAM. If you're still using the original amount that came in it, you need to add more. It supports a maximum of 2048 MB, which means you can install either a 512 MB module or a 1024 MB module in both slots. If you can advise what the 7-character "service tag number" on the sticker is, I can advise you what type RAM module it uses. ------------------------------------------------------------- Go here and click the installer link in version 2.0.4 to download and save HiJackThis 2.0.4. After it's been downloaded and saved, close all open windows first, then double-click the saved file to install it. Allow it to install in its default location. After it's been installed, start it and then click "Do a system scan and save a log file". When the scan is finished in less than 30 seconds, a log file will appear. Save that log file. Return here to your thread, then copy-and-paste the entire log file here. ------------------------------------------------------------- |
|
21-Aug-2010, 10:06 PM
#3 |
| Hello again, I do realize that I need more RAM-- it has 509 MB installed, and I know that's slow for this day and age! Still, that doesn't explain why it used to run better than this, so of course, that is why I came here! ![]() Anyway, here is the Hijack This logfile you requested: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 9:03:23 PM, on 8/21/2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\AVG\AVG9\avgchsvx.exe C:\Program Files\AVG\AVG9\avgrsx.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\AVG\AVG9\avgwdsvc.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Program Files\AVG\AVG9\avgnsx.exe C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\WINDOWS\System32\WLTRYSVC.EXE C:\WINDOWS\System32\bcmwltry.exe C:\WINDOWS\system32\WLTRAY.exe C:\Program Files\Apoint\Apoint.exe C:\WINDOWS\system32\hkcmd.exe C:\WINDOWS\system32\igfxpers.exe C:\Program Files\Apoint\HidFind.exe C:\WINDOWS\system32\igfxsrvc.exe C:\Program Files\Apoint\Apntex.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Program Files\Dell\QuickSet\quickset.exe C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe C:\PROGRA~1\AVG\AVG9\avgtray.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\PromptCast\PromptCast.exe C:\WINDOWS\system32\SearchIndexer.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\WINDOWS\system32\msiexec.exe C:\WINDOWS\system32\SearchProtocolHost.exe C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll O2 - BHO: XML module - {500BCA15-57A7-4eaf-8143-8C619470B13D} - C:\WINDOWS\system32\msxml71.dll (file missing) O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll O2 - BHO: offersfortoday browser enhancer - {8E3CD261-C236-5ACB-078D-1F008856C254} - C:\WINDOWS\system32\vbhssfdwmpauwodv.dll (file missing) O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" O4 - HKLM\..\Run: [OM_Monitor] "C:\Program Files\OLYMPUS\OLYMPUS Master\FirstStart.exe" O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\RunOnce: [Uninstall Adobe Download Manager] "C:\WINDOWS\system32\rundll32.exe" "C:\Program Files\NOS\bin\getPlus_Helper_3004.dll",Uninstall /IE2883E8F-472F-4fb0-9522-AC9BF37916A7 /Get1noarp O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Somefox] C:\DOCUME~1\Twiggy\LOCALS~1\Temp\xxx7249.exe O4 - HKCU\..\Run: [OM_Monitor] "C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe" -NoStart O4 - HKCU\..\Run: [PromptCast] "C:\Program Files\PromptCast\PromptCast.exe" O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {77DD44BF-551D-4E3C-82CD-D637D5018D3C} - http://www.surveys.com/promptcast/In...ST%20SETUP.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ge...sh/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing) O20 - Winlogon Notify: winwea32 - winwea32.dll (file missing) O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE -- End of file - 9879 bytes |
22-Aug-2010, 10:23 AM
#4 | ||||||
| You're on a short time limit before school starts, so I'm going to try to help you. Your computer is infected and has other problems. Go here to download and save the free version of Malwarebytes Anti-Malware 1.46 Go here to download and save the free version of SUPERAntiSpyware 4.41.0.1000 Close all open windows first, then install them both. After they're both installed, restart your computer. Follow these detailed instructions next. Start Malwarebytes Anti-Malware. Click "Updates(tab) - Check for Updates". When the definition files have updated, click "OK". Click "Scanner(tab) - Perform quick scan - Scan". If infections are found during the scan, the number of infections will be highlighted in red. When the scan is finished, click "Show Results". Make sure that everything is selected, then click "Remove Selected". If you're prompted to restart to finish the removal process, click "Yes". Start Malwarebytes Anti-Malware again. Click "Logs"(tab). Highlight the scan log entry, then click "Open". When the scan log appears in Notepad, copy-and-paste it here. Start SUPERAntiSpyware. Click "Check for Updates". When the definition files have updated, click "Close". Click "Scan your Computer - Perform Quick Scan - Next". If infections or problems are found during the scan, a list will appear. When the scan is finished and the scan summary window appears, click "OK". Make sure that everything in the list is selected, then click "Next". If you're prompted to restart to finish the removal process, click "Yes". Start SUPERAntiSpyware again. Click "Preferences - Statistics/Logs"(tab). Highlight the scan log entry, then click "View Log". When the scan log appears in Notepad, copy-and-paste it here. ---------------------------------------------------------------- |
|
23-Aug-2010, 12:37 AM
#5 |
| Don't worry about my school schedule-- for the moment I have the use of another computer, and I can use it as long as necessary. I would like this computer to be as clean/fixed as possible! ![]() Here is the Malware Bytes log: Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 8/22/2010 10:54:26 PM mbam-log-2010-08-22 (22-54-26).txt Scan type: Quick scan Objects scanned: 137354 Time elapsed: 54 minute(s), 52 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 11 Registry Values Infected: 1 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 0 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: HKEY_CLASSES_ROOT\xml.xml (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\xml.xml.1 (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{500bca15-57a7-4eaf-8143-8c619470b13d} (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{9233c3c0-1472-4091-a505-5580a23bb4ac} (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{500b ca15-57a7-4eaf-8143-8c619470b13d} (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Brows er Helper Objects\{500bca15-57a7-4eaf-8143-8c619470b13d} (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MSSMGR (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Somefox (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Brows er Helper Objects\{8e3cd261-c236-5acb-078d-1f008856c254} (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{8e3cd261-c236-5acb-078d-1f008856c254} (Trojan.BHO) -> Quarantined and deleted successfully. Registry Values Infected: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\somefox (Trojan.FakeAlert) -> Quarantined and deleted successfully. Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: (No malicious items detected) Here is the SUPERAntiSpyware log: SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 08/22/2010 at 11:24 PM Application Version : 4.41.1000 Core Rules Database Version : 5392 Trace Rules Database Version: 3204 Scan type : Quick Scan Total Scan Time : 00:25:34 Memory items scanned : 472 Memory threats detected : 0 Registry items scanned : 1297 Registry threats detected : 0 File items scanned : 6604 File threats detected : 203 Adware.Tracking Cookie C:\Documents and Settings\Twiggy\Cookies\twiggy@overture[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www3.clickr[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@bs.serving-sys[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@optimize.indieclick[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@freegothicporn[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@tradedoubler[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@beta.media.nin[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@gothpornsites[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@researchinmotion.122.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adecn[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@atwola[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@eb.adbureau[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ad.associatedcontent[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@tacoda[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@liveperson[3].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@media.adrevolver[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@specificmedia[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ehg-websitebiz.hitbox[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@imrworldwide[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@doubleclick[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ehg-mindshare.hitbox[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@clickcash[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www.gothpornsites[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@bluestreak[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ehg-researchinmotion.hitbox[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.anm.co[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@msnbc.112.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@server.iad.liveperson[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adultdatingpages[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@superpages.122.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adbureau[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ehg-space.hitbox[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@fastclick[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@specificclick[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@media6degrees[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@usatoday1.112.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@podtrac.advertserve[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@nextag[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www.sunporno[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@richmedia.yahoo[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@interclick[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www.burstbeacon[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@advertising[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adlegend[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@content.yieldmanager[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@casalemedia[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ehg-legacy.hitbox[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@stat.onestat[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@insightexpressai[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adopt.euroclick[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@zedo[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@msnportal.112.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adbrite[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@sexlist[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@serving-sys[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.pointroll[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adrevolver[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@mediaplex[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@hitbox[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ad.yieldmanager[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@revsci[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@rotator.adjuggler[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.widgetbucks[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@cb.adbureau[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adinterax[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@sextracker[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@web4.realtracker[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adopt.specificclick[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@trafficmp[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@cdn4.specificclick[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@dynamic.media.adrevolver[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@hearstmagazines.112.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@at.atwola[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@tribalfusion[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@bdsmartclub[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@realmedia[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@wachovia.112.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.bridgetrack[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@twilightsex[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@sales.liveperson[3].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@atdmt[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@statcounter[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.associatedcontent[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@kontera[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@collective-media[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@sitestat.mayoclinic[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www.twilightsex[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@indextools[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@l1.qsstats[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www.xxxvogue[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@apartmentfinder[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.crakmedia[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www.tltrack[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@choice4adults[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.nba[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@traffic.jostens[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@clicks.adengage[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@archant.122.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@burstnet[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@network.realmedia[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@sales.liveperson[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@yieldmanager[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@buzznet.112.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@edge.ru4[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@onestopinternet.122.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www.freegothicporn[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adultadworld[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@hornygasm[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@counter9.sextracker[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@porno.dreammovies[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@precisionclick[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@revenue[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@amateur.bestpornonly[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adserver.adtechus[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ero-advertising[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@s.clickability[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adtech[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www.adult-clips[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adviva[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@dmtracker[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ad.turn[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@perf.overture[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@enhance[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@mypornopolis[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@track.newjobs[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.thesmokinggun[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.cnn[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@traffic.el-ladies[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www.enjoysextube[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@content.yieldmanager.edgesuite[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@chitika[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.bluelithium[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@counter5.sextracker[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@qnsr[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@counter3.sextracker[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@anheuserbusch.122.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@apmebf[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@counter7.sextracker[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@adultfriendfinder[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.lucidmedia[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@waldemartraffic[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@avgtechnologies.112.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@oasn04.247realmedia[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@c7.zedo[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@test.coremetrics[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@liveperson[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@invitemedia[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@bizrate[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.pgatour[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www.pornpin[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@potpourrigroup.112.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@iacas.adbureau[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.nascar[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@entrepreneur.122.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@euroclick[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www.apartmentfinder[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@microsoftwindows.112.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@valueclick[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@livenation.122.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@toplist[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.monster[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@track.newjobs[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@crackle[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@pornrabbit[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@googleads.g.doubleclick[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@hulu.112.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@columbiasc.apartmentfinder[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ad1.clickhype[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@entrepreneurs.about[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@247realmedia[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ar.atwola[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@media.adrevolver[3].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ad2.doublepimp[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@ads.teenport[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www7.addfreestats[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@statse.webtrendslive[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@atlas.entrepreneur[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@microsoftsto.112.2o7[1].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@xxxcounter[2].txt C:\Documents and Settings\Twiggy\Cookies\twiggy@www.sunporno[3].txt 2mdn.net [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] ads1.msn.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] crackle.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] ec.atdmt.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] googleads.g.doubleclick.net [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] insight.randomhouse.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] interclick.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] m1.2mdn.net [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] media.mtvnservices.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] media.scanscout.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] media.socialvibe.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] media.tattomedia.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] media.vmixcore.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] media01.kyte.tv [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] media1.break.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] msnbcmedia.msn.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] msntest.serving-sys.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] oddcast.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] porno.dreammovies.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] www.adultswim.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] www.blogsmithmedia.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] www.twilightsex.com [ C:\Documents and Settings\Twiggy\Application Data\Macromedia\Flash Player\#SharedObjects\V9QQCDTX ] ______________________ I'm guessing my son used this for some not-so-appropriate websites from the looks of things! ![]() |
23-Aug-2010, 10:53 AM
#6 | ||||||
| You left off the very top part of the Malwarebytes log, so I can't confirm if you updated the definition files before you ran a scan, but I'll assume that you did. It looks like 12 infections were found in the registry and were removed. The database versions in SUPERAntiSpyware are current, so that confirms that you updated the definition files before you ran a scan. It looks like 203 adware tracking cookies were found. The log doesn't show if you selected and removed them all, so I'll assume that you did. A number of the adware tracking cookies show visits to "adult sites", so you're likely correct in your assumption about your son. If your son or anyone else is going to have access to and use that computer, I strongly recommend that you put Malwarebytes and SUPERAntiSpyware to use at least once or twice a month. ---------------------------------------------------------- Let's see what's installed in that computer that may need to be uninstalled, updated, or replaced. Start HiJackThis, but don't run a scan. Click on the "Open The Misc Tools Section" button. Click on the "Open Uninstall Manager" button. Click on the "Save List" button. Save the "uninstall_list.txt" file somewhere. It'll then open in Notepad. Return here to your thread, then copy-and-paste the entire file here. ---------------------------------------------------------- |
|
24-Aug-2010, 04:44 PM
#7 |
| Oh dear, I'm sorry for not including the entire logs, but yes, I did indeed update the version and then remove all of the cookies. I will definitely take your advice about employing those programs in the future since my son and husband will also use this laptop at times. Here is the HiJack This program log: Adobe AIR Adobe AIR Adobe Anchor Service CS3 Adobe Asset Services CS3 Adobe Bridge CS3 Adobe Bridge Start Meeting Adobe Camera Raw 4.0 Adobe CMaps Adobe Color - Photoshop Specific Adobe Color Common Settings Adobe Color Common Settings Adobe Color EU Extra Settings Adobe Color JA Extra Settings Adobe Color NA Recommended Settings Adobe Default Language CS3 Adobe Device Central CS3 Adobe ExtendScript Toolkit 2 Adobe ExtendScript Toolkit 2 Adobe Flash Player 10 ActiveX Adobe Fonts All Adobe Help Viewer CS3 Adobe Linguistics CS3 Adobe PDF Library Files Adobe Photoshop CS3 Adobe Photoshop CS3 Adobe Reader 9.3.3 Adobe Setup Adobe Setup Adobe Setup Adobe Stock Photos CS3 Adobe Type Support Adobe Update Manager CS3 Adobe Version Cue CS3 Client Adobe WinSoft Linguistics Plugin Adobe XMP Panels CS3 ALPS Touch Pad Driver Apple Application Support Apple Software Update AVG Free 9.0 Canon iP1700 Compatibility Pack for the 2007 Office system Conexant D110 MDC V.92 Modem Crash Analysis Tool Critical Update for Windows Media Player 11 (KB959772) Dell Resource CD Dell Wireless WLAN Card Diner Dash 2 doPDF 6.2 printer DX-Ball 2 HDView for Internet Explorer HiJackThis Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) Hotfix for Windows XP (KB952287) Hotfix for Windows XP (KB954708) Hotfix for Windows XP (KB961118) Hotfix for Windows XP (KB970653-v3) Hotfix for Windows XP (KB976098-v2) Hotfix for Windows XP (KB979306) Hotfix for Windows XP (KB981793) Intel(R) Graphics Media Accelerator Driver for Mobile Java(TM) 6 Update 21 Java(TM) 6 Update 5 Java(TM) 6 Update 7 Junk Mail filter update K-Lite Codec Pack 3.4.5 Full Malwarebytes' Anti-Malware Memory Key Boot Utility Microsoft .NET Framework 1.1 Microsoft .NET Framework 1.1 Microsoft .NET Framework 1.1 Security Update (KB979906) Microsoft .NET Framework 2.0 Service Pack 2 Microsoft .NET Framework 3.0 Service Pack 2 Microsoft .NET Framework 3.5 SP1 Microsoft .NET Framework 3.5 SP1 Microsoft .NET Framework 4 Client Profile Microsoft .NET Framework 4 Client Profile Microsoft Base Smart Card Cryptographic Service Provider Package Microsoft Choice Guard Microsoft Compression Client Pack 1.0 for Windows XP Microsoft Internationalized Domain Names Mitigation APIs Microsoft National Language Support Downlevel APIs Microsoft Office Live Add-in 1.5 Microsoft Office Outlook Connector Microsoft Office Professional Edition 2003 Microsoft Search Enhancement Pack Microsoft Silverlight Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Sync Framework Runtime Native v1.0 (x86) Microsoft Sync Framework Services Native v1.0 (x86) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Visual C++ 2005 Redistributable Mobile Broadband Drivers Mp3tag v2.41 MSVCRT MSXML 4.0 SP2 (KB936181) MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) Nokia Connectivity Cable Driver NVIDIA Drivers OGA Notifier 2.0.0048.0 OLYMPUS Master PCI 7510 CardBus Controller with SmartCard and Software PDF Settings PowerDVD 5.9 PromptCast QuickSet QuickTime SAMSUNG CDMA Modem Driver Set SAMSUNG Mobile Composite Device Software Samsung Mobile phone USB driver Software SAMSUNG Mobile USB Modem 1.0 Software SAMSUNG Mobile USB Modem Software Samsung PC Studio 3 Security Update for Windows Internet Explorer 7 (KB938127) Security Update for Windows Internet Explorer 7 (KB938127-v2) Security Update for Windows Internet Explorer 7 (KB953838) Security Update for Windows Internet Explorer 7 (KB956390) Security Update for Windows Internet Explorer 7 (KB958215) Security Update for Windows Internet Explorer 7 (KB960714) Security Update for Windows Internet Explorer 7 (KB961260) Security Update for Windows Internet Explorer 7 (KB963027) Security Update for Windows Internet Explorer 7 (KB969897) Security Update for Windows Internet Explorer 7 (KB972260) Security Update for Windows Internet Explorer 7 (KB974455) Security Update for Windows Internet Explorer 7 (KB976325) Security Update for Windows Internet Explorer 8 (KB2183461) Security Update for Windows Internet Explorer 8 (KB971961) Security Update for Windows Internet Explorer 8 (KB981332) Security Update for Windows Media Player (KB952069) Security Update for Windows Media Player (KB954155) Security Update for Windows Media Player (KB968816) Security Update for Windows Media Player (KB973540) Security Update for Windows Media Player (KB978695) Security Update for Windows Search 4 - KB963093 Security Update for Windows XP (KB2079403) Security Update for Windows XP (KB2115168) Security Update for Windows XP (KB2160329) Security Update for Windows XP (KB2229593) Security Update for Windows XP (KB2286198) Security Update for Windows XP (KB923561) Security Update for Windows XP (KB923789) Security Update for Windows XP (KB938464) Security Update for Windows XP (KB941569) Security Update for Windows XP (KB946648) Security Update for Windows XP (KB950762) Security Update for Windows XP (KB950974) Security Update for Windows XP (KB951066) Security Update for Windows XP (KB951376-v2) Security Update for Windows XP (KB951698) Security Update for Windows XP (KB951748) Security Update for Windows XP (KB952004) Security Update for Windows XP (KB952954) Security Update for Windows XP (KB954211) Security Update for Windows XP (KB954459) Security Update for Windows XP (KB954600) Security Update for Windows XP (KB955069) Security Update for Windows XP (KB956391) Security Update for Windows XP (KB956572) Security Update for Windows XP (KB956744) Security Update for Windows XP (KB956802) Security Update for Windows XP (KB956803) Security Update for Windows XP (KB956841) Security Update for Windows XP (KB956844) Security Update for Windows XP (KB957095) Security Update for Windows XP (KB957097) Security Update for Windows XP (KB958644) Security Update for Windows XP (KB958687) Security Update for Windows XP (KB958690) Security Update for Windows XP (KB958869) Security Update for Windows XP (KB959426) Security Update for Windows XP (KB960225) Security Update for Windows XP (KB960715) Security Update for Windows XP (KB960803) Security Update for Windows XP (KB960859) Security Update for Windows XP (KB961371) Security Update for Windows XP (KB961373) Security Update for Windows XP (KB961501) Security Update for Windows XP (KB968537) Security Update for Windows XP (KB969059) Security Update for Windows XP (KB969898) Security Update for Windows XP (KB969947) Security Update for Windows XP (KB970238) Security Update for Windows XP (KB970430) Security Update for Windows XP (KB971468) Security Update for Windows XP (KB971486) Security Update for Windows XP (KB971557) Security Update for Windows XP (KB971633) Security Update for Windows XP (KB971657) Security Update for Windows XP (KB971961) Security Update for Windows XP (KB972270) Security Update for Windows XP (KB973346) Security Update for Windows XP (KB973354) Security Update for Windows XP (KB973507) Security Update for Windows XP (KB973525) Security Update for Windows XP (KB973869) Security Update for Windows XP (KB973904) Security Update for Windows XP (KB974112) Security Update for Windows XP (KB974318) Security Update for Windows XP (KB974392) Security Update for Windows XP (KB974571) Security Update for Windows XP (KB975025) Security Update for Windows XP (KB975467) Security Update for Windows XP (KB975560) Security Update for Windows XP (KB975561) Security Update for Windows XP (KB975562) Security Update for Windows XP (KB975713) Security Update for Windows XP (KB977816) Security Update for Windows XP (KB977914) Security Update for Windows XP (KB978037) Security Update for Windows XP (KB978262) Security Update for Windows XP (KB978338) Security Update for Windows XP (KB978542) Security Update for Windows XP (KB978601) Security Update for Windows XP (KB978706) Security Update for Windows XP (KB979309) Security Update for Windows XP (KB979482) Security Update for Windows XP (KB979683) Security Update for Windows XP (KB980195) Security Update for Windows XP (KB980218) Security Update for Windows XP (KB980232) Security Update for Windows XP (KB980436) Security Update for Windows XP (KB981349) Security Update for Windows XP (KB981852) Security Update for Windows XP (KB981997) Security Update for Windows XP (KB982214) Security Update for Windows XP (KB982665) Segoe UI Spelling Dictionaries Support For Adobe Reader 8 Spybot - Search & Destroy SUPERAntiSpyware Update for Microsoft .NET Framework 3.5 SP1 (KB963707) Update for Microsoft Windows (KB971513) Update for Windows Internet Explorer 7 (KB976749) Update for Windows Internet Explorer 7 (KB980182) Update for Windows Internet Explorer 8 (KB976662) Update for Windows Internet Explorer 8 (KB982632) Update for Windows Internet Explorer 8 (KB982664) Update for Windows XP (KB943729) Update for Windows XP (KB951072-v2) Update for Windows XP (KB951978) Update for Windows XP (KB955759) Update for Windows XP (KB955839) Update for Windows XP (KB961503) Update for Windows XP (KB967715) Update for Windows XP (KB968389) Update for Windows XP (KB971737) Update for Windows XP (KB973687) Update for Windows XP (KB973815) VZAccess Manager Windows Installer Clean Up Windows Internet Explorer 8 Windows Live Call Windows Live Communications Platform Windows Live Essentials Windows Live Essentials Windows Live ID Sign-in Assistant Windows Live Mail Windows Live Messenger Windows Live Photo Gallery Windows Live Sync Windows Live Toolbar Windows Live Upload Tool Windows Live Writer Windows Management Framework Core Windows Media Format 11 runtime Windows Media Format 11 runtime Windows Media Player 11 Windows Media Player 11 Windows XP Service Pack 3 I double-checked and it is all there this time. |
24-Aug-2010, 05:00 PM
#8 | ||||||
| These programs can be uninstalled: Java(TM) 6 Update 5 Java(TM) 6 Update 7 (Note: Java(TM) 6 Update 21 is the most current version and is the only one needed) K-Lite Codec Pack 3.4.5 Full (Note: This is a very outdated version. The current version is 6.3.0 and contains many more codecs and features) Spybot - Search & Destroy (Note: You've got 2 better and more user-friendly replacements now) If you're prompted to restart the computer to complete the uninstall of any of them, do so. After they've all been uninstalled, restart the computer. ------------------------------------------------------------ I don't personally use Adobe Photoshop CS3 or a newer version of it, but I've heard that it's pretty system-hungry. ------------------------------------------------------------ |
|
25-Aug-2010, 06:04 PM
#9 |
| I have removed the suggested programs, including the Photoshop, as it was something my son played around with and no longer needs. The computer is running better, but as we know, it is still slow without my upgrading the memory. That's something I will have to think about. Anything else I should do? |
26-Aug-2010, 03:41 PM
#10 | ||||||
| Start HiJackThis and then click "Do a system scan and save a log file". When the new log file appears, copy-and-paste it here. We're going to work next on getting that bloated startup load trimmed down. There are several programs auto-loading and running in the background that don't need to be doing so. Some of them don't need to auto-load and run at all, and others can be manually started when needed. ----------------------------------------------------------------- |
|
26-Aug-2010, 10:15 PM
#11 |
| The new logfile: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 9:10:53 PM, on 8/26/2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\AVG\AVG9\avgchsvx.exe C:\Program Files\AVG\AVG9\avgrsx.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\Program Files\AVG\AVG9\avgwdsvc.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\WINDOWS\System32\WLTRYSVC.EXE C:\WINDOWS\System32\bcmwltry.exe C:\WINDOWS\system32\SearchIndexer.exe C:\Program Files\AVG\AVG9\avgnsx.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\WLTRAY.exe C:\Program Files\Apoint\Apoint.exe C:\WINDOWS\system32\hkcmd.exe C:\WINDOWS\system32\igfxpers.exe C:\Program Files\Apoint\HidFind.exe C:\Program Files\Dell\QuickSet\quickset.exe C:\Program Files\Apoint\Apntex.exe C:\WINDOWS\system32\igfxsrvc.exe C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe C:\PROGRA~1\AVG\AVG9\avgtray.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\PromptCast\PromptCast.exe C:\Program Files\Windows Desktop Search\WindowsSearch.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" O4 - HKLM\..\Run: [OM_Monitor] "C:\Program Files\OLYMPUS\OLYMPUS Master\FirstStart.exe" O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [OM_Monitor] "C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe" -NoStart O4 - HKCU\..\Run: [PromptCast] "C:\Program Files\PromptCast\PromptCast.exe" O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\ssv.dll O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {77DD44BF-551D-4E3C-82CD-D637D5018D3C} - http://www.surveys.com/promptcast/In...ST%20SETUP.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ge...sh/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing) O20 - Winlogon Notify: winwea32 - winwea32.dll (file missing) O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE -- End of file - 8991 bytes |
27-Aug-2010, 09:14 AM
#12 | ||||||
| The AVG toolbar isn't needed, so let's get rid of it. Start HiJackThis and click "Do a system scan only". Put a checkmark in these log entries: R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll then click "Fix Checked - Yes". Close HiJackThis. --------------------------------------------------------------- Let's trim down the startup load of unnecessary running programs and services. Click Start - Run, type in SERVICES.MSC and then click OK. Expand the services window so you can see the list more clearly. Double-click on these entries to open their properties window: (Note: You have to do one entry at a time) AVG Security Toolbar Service InstallDriver Table Manager (IDriverT) Java Quick Starter (JavaQuickStarterService) NVIDIA Display Driver Service (NVSvc) If "Startup Type" is set on Automatic, change it to Manual, then click Apply - OK. If "Startup Type" is already set on Manual, close the properties window. After you're done, close the services window. Click Start - Run, type in MSCONFIG and then click OK - Startup(tab). Remove the checkmark in these entries: (Note: .exe may be missing from the names) NvCplDaemon or NvCpl.dll,NvStartup nwiz or nwiz.exe igfxtray or igfxtray.exe igfxhkcmd or hkcmd.exe igfxpers or igfxpers.exe DVDLauncher or DVDLauncher.exe (Note: This entry needs to remain checked only if you're using a remote control with your computer to watch DVD movies) Adobe Reader Speed Launcher or Reader_sl.exe Adobe ARM or AdobeARM.exe QuickTime Task or QTTask.exe SunJavaUpdateSched or jusched.exe SUPERAntiSpyware or SUPERAntiSpyware.exe (Note: This entry needs to remain checked only if you have the paid version. The free version doesn't have "real time" monitoring) Windows Search or WindowsSearch.exe After you're done, click Apply - OK/Close - Restart. When the small System Configuration Utility window appears during restart, ignore the message. Put a checkmark in that window before you click OK to close it. ------------------------------------------------------------------ After all of the above has been done and the computer restarted, start HiJackThis and click "Do a system scan and save a log file". Save the new log file that appears, then copy-and-paste it here. ------------------------------------------------------------------ |
|
27-Aug-2010, 04:34 PM
#13 |
| The new logfile: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 3:32:53 PM, on 8/27/2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\AVG\AVG9\avgchsvx.exe C:\Program Files\AVG\AVG9\avgrsx.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\AVG\AVG9\avgwdsvc.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\WINDOWS\System32\WLTRYSVC.EXE C:\WINDOWS\system32\SearchIndexer.exe C:\WINDOWS\System32\bcmwltry.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\AVG\AVG9\avgnsx.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\WINDOWS\system32\WLTRAY.exe C:\Program Files\Apoint\Apoint.exe C:\Program Files\Dell\QuickSet\quickset.exe C:\PROGRA~1\AVG\AVG9\avgtray.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Apoint\HidFind.exe C:\Program Files\PromptCast\PromptCast.exe C:\Program Files\Apoint\Apntex.exe C:\WINDOWS\system32\SearchProtocolHost.exe C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe O4 - HKLM\..\Run: [OM_Monitor] "C:\Program Files\OLYMPUS\OLYMPUS Master\FirstStart.exe" O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [OM_Monitor] "C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe" -NoStart O4 - HKCU\..\Run: [PromptCast] "C:\Program Files\PromptCast\PromptCast.exe" O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {77DD44BF-551D-4E3C-82CD-D637D5018D3C} - http://www.surveys.com/promptcast/In...ST%20SETUP.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ge...sh/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing) O20 - Winlogon Notify: winwea32 - winwea32.dll (file missing) O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE -- End of file - 7279 bytes |
27-Aug-2010, 05:00 PM
#14 | ||||||
| Go back to Start - Run - MSCONFIG - OK - Startup(tab). Remove the checkmark in: Dell QuickSet or quickset.exe OM_Monitor or FastStart.exe After you're done, click Apply - OK/Close - Restart. When the small SCU window appears, don't forget to put a checkmark in it before you click OK to close it. Start HiJackThis and then click "Do a system scan and save a log file". Save the new log file and then submit it here. -------------------------------------------------------- Run the computer for awhile and see if speed has improved a bit and if everything is working okay. We're going to access and empty out a couple of temp folders next. -------------------------------------------------------- |
|
31-Aug-2010, 12:32 AM
#15 |
| The computer is definitely running smoother and faster than it has been-- especially startup. Everything seems to be in working order. Here is the new log: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 11:30:00 PM, on 8/30/2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\AVG\AVG9\avgchsvx.exe C:\Program Files\AVG\AVG9\avgrsx.exe C:\Program Files\AVG\AVG9\avgcsrvx.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\AVG\AVG9\avgwdsvc.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\AVG\AVG9\avgnsx.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\WINDOWS\System32\WLTRYSVC.EXE C:\WINDOWS\system32\SearchIndexer.exe C:\WINDOWS\System32\bcmwltry.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\WLTRAY.exe C:\Program Files\Apoint\Apoint.exe C:\PROGRA~1\AVG\AVG9\avgtray.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\PromptCast\PromptCast.exe C:\Program Files\Apoint\HidFind.exe C:\Program Files\Apoint\Apntex.exe C:\WINDOWS\system32\SearchProtocolHost.exe C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [PromptCast] "C:\Program Files\PromptCast\PromptCast.exe" O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {77DD44BF-551D-4E3C-82CD-D637D5018D3C} - http://www.surveys.com/promptcast/In...ST%20SETUP.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ge...sh/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing) O20 - Winlogon Notify: winwea32 - winwea32.dll (file missing) O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE -- End of file - 6972 bytes |
| Tags |
| help dell laptop, question, requesting help, slow |

|
| Currently Active Users Viewing This Thread: 1 (0 members and 1 guests) | |

| Thread Tools | |
| |
| | ||||
| Title | Thread Starter | Forum | Replies | Last Post |
| Continued BSOD, Computer running very slowly, please help | Skiddy1978 | Windows XP | 1 | 05-Nov-2008 09:17 PM |
| Computer Running Very Slowly. Need help. Multiple Problems. | Aderon | Virus & Other Malware Removal | 1 | 03-Jul-2008 06:14 PM |
| Computer Running Very Slowly! (HJT help please!) | peterwalker | Virus & Other Malware Removal | 1 | 20-Nov-2005 10:29 AM |
| Computer running very slowly | Alex1017 | Earlier Versions of Windows | 18 | 14-Apr-2004 11:44 AM |
| Modem makes the computer run very slowly | DanielLee | Hardware | 8 | 30-Aug-2002 12:34 PM |
| You Are Using: |
Advertisements do not imply our endorsement of that product or service. All times are GMT -4. The time now is 10:19 PM. Copyright © 1996 - 2011 TechGuy, Inc. All rights reserved. | |

