1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

Missing files in HJT

Discussion in 'General Security' started by teejae, May 20, 2015.

Thread Status:
Not open for further replies.
Advertisement
  1. teejae

    teejae Thread Starter

    Joined:
    May 27, 2005
    Messages:
    15
    Hi. Would it be possible for someone to review my HJT file ,because my computer has been very slow. Thanks for the help.


    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 10:18:13 AM, on 20/05/2015
    Platform: Windows 7 SP1 (WinNT 6.00.3505)
    MSIE: Internet Explorer v11.0 (11.00.9600.17801)
    Boot mode: Safe mode

    Running processes:
    C:\HJT\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    F2 - REG:system.ini: UserInit=userinit.exe
    O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
    O2 - BHO: Ad-Aware Security Toolbar - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll
    O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
    O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll
    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
    O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll
    O3 - Toolbar: Ad-Aware Security Toolbar - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
    O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
    O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ie_banner_deny.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
    O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
    O9 - Extra button: Virtual Keyboard - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
    O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print\SmartPrintSetup.exe
    O9 - Extra 'Tools' menuitem: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print\SmartPrintSetup.exe
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: URLs check - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
    O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    O23 - Service: Kaspersky Anti-Virus Service (AVP) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
    O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
    O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
    O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
    O23 - Service: SWUpdaterSvc (SWUpdater) - Weather Protector LLC - C:\Program Files (x86)\StormWatch\SWUpdaterSvc.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --
    End of file - 10283 bytes
     
  2. Cookiegal

    Cookiegal Administrator Malware Specialist Coordinator

    Joined:
    Aug 27, 2003
    Messages:
    115,384
    First Name:
    Karen
    This is not the correct forum for reviewing HJT logs. However, I will say that those files are not actually missing. HJT does not report those services correctly on 64-bit versions of Windows.

    However, it doesn't look like you have a running anti-virus. If you do, which one are you using?
     
  3. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,761
    First Name:
    Frank
    HiJackThis 2.0.4 is a very old version, but even the most current 2.0.5 version won't work and display correctly with a 64-bit version of Windows. That's why you see "file missing" in several of the O23 entries.

    HiJackThis will also display even more incorrectly in safe mode than in normal mode because everything isn't loading during startup.

    We have no information about your computer which may account for why it's running slow, so do the following.

    ----------------------------------------------------------

    Download and save the TSG System Information Utility (SysInfo.exe) to the desktop.

    After it's been downloaded and saved, double-click it to run it.

    Information about your computer will appear.

    Return here to your thread, then copy-and-paste the ENTIRE text here.

    ----------------------------------------------------------

    Go here, then click the large blue "Download Now @ Bleeping Computer" button to download and save AdwCleaner.exe to your desktop.

    Close all open windows first, then double-click AdwCleaner.exe to load its main window.

    Click the "Scan" button, then allow the scanning process to finish.
    (Note: Several seconds may pass before the scanning process starts, so be patient.)

    Click the "Logfile" button.

    When the log appears, save it.

    Return here to your thread, then copy-and-paste the ENTIRE log here.

    Note: After you submit the log, close AdwCleaner. When the warning appears, click "Yes".

    ----------------------------------------------------------
     
  4. teejae

    teejae Thread Starter

    Joined:
    May 27, 2005
    Messages:
    15
    Thanks for your help. Sorry I used the wrong forum. Here is the requested information
    Tech Support Guy System Info Utility version 1.0.0.2
    OS Version: Microsoft Windows 7 Ultimate, Service Pack 1, 64 bit
    Processor: Intel(R) Core(TM)2 Duo CPU T6400 @ 2.00GHz, Intel64 Family 6 Model 23 Stepping 10
    Processor Count: 2
    RAM: 3963 Mb
    Graphics Card: Mobile Intel(R) 45 Express Chipset Family (Microsoft Corporation - WDDM 1.1), 1853 Mb
    Hard Drives: C: Total - 288292 MB, Free - 46033 MB; D: Total - 7775 MB, Free - 7699 MB;
    Motherboard: TOSHIBA, Portable PC
    Antivirus: Microsoft Security Essentials, Updated and Enabled

    Here is the AdwCleaner log:

    # AdwCleaner v4.204 - Logfile created 20/05/2015 at 23:28:37
    # Updated 12/05/2015 by Xplode
    # Database : 2015-05-20.1 [Server]
    # Operating system : Windows 7 Ultimate Service Pack 1 (x64)
    # Username : Lena's pc - LENASPC-PC
    # Running from : C:\Users\Lena's pc\Downloads\adwcleaner_4.204.exe
    # Option : Scan

    ***** [ Services ] *****


    ***** [ Files / Folders ] *****


    ***** [ Scheduled tasks ] *****


    ***** [ Shortcuts ] *****


    ***** [ Registry ] *****


    ***** [ Web browsers ] *****

    -\\ Internet Explorer v11.0.9600.17801


    -\\ Mozilla Firefox v32.0.3 (x86 en-GB)


    -\\ Google Chrome v42.0.2311.152



    *************************
    AdwCleaner[S1].txt - [1044 bytes] - [20/05/2015 12:20:16]

    ########## EOF - C:\AdwCleaner\AdwCleaner[R3].txt - [1022 bytes] ##########
     
  5. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,761
    First Name:
    Frank
    The Adwcleaner scan log is clean. (y)

    ---------------------------------------------------------

    The hard drive is about 84% full, so that may be part of the reason for the slowness.

    You have a lot of personal data stored in it or you have a lot of programs installed in it.

    If it's the latter, the startup load may be excessive and another reason for the slowness.

    ---------------------------------------------------------

    That laptop is about 6 years old.

    How and when was Windows 7 Ultimate 64-bit installed in it?

    What model name and model number is it?
    (Note: The model number is 2 sets of characters separated by a dash.)

    ---------------------------------------------------------
     
  6. teejae

    teejae Thread Starter

    Joined:
    May 27, 2005
    Messages:
    15
    Thanks,I am in the process of removing some of the data at present and yes the LP is about 6 years old and Windows 7 was installed 4 or 5 years ago. Windows 7 is on a CD. It is Toshiba L300-07R
    Model PSL B8C-07R01X.
    Lena
     
  7. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,761
    First Name:
    Frank
    The Toshiba Satellite L300-07R (PSLB8C-07R01X) laptop came with Windows Vista Home Premium 64-bit and a trial version of Microsoft Office 2007.

    Let's make sure there isn't a problem with the Windows 7 Ultimate 64-bit that's installed in it before we proceed any further.

    ---------------------------------------------------------------

    Download MGADiag and save it to your desktop.

    Double-click on MGADiag.exe to launch the program.

    Click "Continue".

    Ensure that the "Windows" tab is selected (it should be by default).

    Click the "Copy" button, the leave the report window open.

    Paste the report back here in your next reply.

    ---------------------------------------------------------------
     
  8. teejae

    teejae Thread Starter

    Joined:
    May 27, 2005
    Messages:
    15
    Diagnostic Report (1.9.0027.0):
    -----------------------------------------
    Windows Validation Data-->

    Validation Code: 0
    Cached Online Validation Code: 0x0
    Windows Product Key: *****-*****-JVVVX-3MM3F-HG4MF
    Windows Product Key Hash: LP/mdLzMLVX9tHG5L/zJy6qN8iE=
    Windows Product ID: 00426-292-8899017-85675
    Windows Product ID Type: 5
    Windows License Type: Retail
    Windows OS version: 6.1.7601.2.00010100.1.0.001
    ID: {E662AFAA-5525-4156-80AF-07B8967208DA}(1)
    Is Admin: Yes
    TestCab: 0x0
    LegitcheckControl ActiveX: N/A, hr = 0x80070002
    Signed By: N/A, hr = 0x80070002
    Product Name: Windows 7 Ultimate
    Architecture: 0x00000009
    Build lab: 7601.win7sp1_gdr.150427-0707
    TTS Error:
    Validation Diagnostic:
    Resolution Status: N/A

    Vista WgaER Data-->
    ThreatID(s): N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002

    Windows XP Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    File Exists: No
    Version: N/A, hr = 0x80070002
    WgaTray.exe Signed By: N/A, hr = 0x80070002
    WgaLogon.dll Signed By: N/A, hr = 0x80070002

    OGA Notifications Data-->
    Cached Result: N/A, hr = 0x80070002
    Version: N/A, hr = 0x80070002
    OGAExec.exe Signed By: N/A, hr = 0x80070002
    OGAAddin.dll Signed By: N/A, hr = 0x80070002

    OGA Data-->
    Office Status: 109 N/A
    OGA Version: N/A, 0x80070002
    Signed By: N/A, hr = 0x80070002
    Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

    Browser Data-->
    Proxy settings: N/A
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
    Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    Download signed ActiveX controls: Prompt
    Download unsigned ActiveX controls: Disabled
    Run ActiveX controls and plug-ins: Allowed
    Initialize and script ActiveX controls not marked as safe: Disabled
    Allow scripting of Internet Explorer Webbrowser control: Disabled
    Active scripting: Allowed
    Script ActiveX controls marked as safe for scripting: Allowed

    File Scan Data-->

    Other data-->
    Office Details: <GenuineResults><MachineData><UGUID>{E662AFAA-5525-4156-80AF-07B8967208DA}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010100.1.0.001</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-HG4MF</PKey><PID>00426-292-8899017-85675</PID><PIDType>5</PIDType><SID>S-1-5-21-1752578701-3334723126-4195772574</SID><SYSTEM><Manufacturer>TOSHIBA</Manufacturer><Model>Satellite L300</Model></SYSTEM><BIOS><Manufacturer>INSYDE</Manufacturer><Version>1.60</Version><SMBIOSVersion major="2" minor="4"/><Date>20081223000000.000000+000</Date></BIOS><HWID>DDDF3307018400F8</HWID><UserLCID>1009</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Newfoundland Standard Time(GMT-03:30)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>TOSINV</OEMID><OEMTableID>TOSINV00</OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>

    Spsys.log Content: 0x80070002

    Licensing Data-->
    Software licensing service version: 6.1.7601.17514

    Name: Windows(R) 7, Ultimate edition
    Description: Windows Operating System - Windows(R) 7, RETAIL channel
    Activation ID: ac96e1a8-6cc4-4310-a4ff-332ce77fb5b8
    Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
    Extended PID: 00426-00170-292-889901-00-1033-7600.0000-1922013
    Installation ID: 015620263073457081092492017152796313822883181960983285
    Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88338
    Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88339
    Use License URL: http://go.microsoft.com/fwlink/?LinkID=88341
    Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=88340
    Partial Product Key: HG4MF
    License Status: Licensed
    Remaining Windows rearm count: 4
    Trusted time: 22/05/2015 4:29:09 PM

    Windows Activation Technologies-->
    HrOffline: 0x00000000
    HrOnline: 0x00000000
    HealthStatus: 0x0000000000000000
    Event Time Stamp: 4:22:2015 14:56
    ActiveX: Registered, Version: 7.1.7600.16395
    Admin Service: Registered, Version: 7.1.7600.16395
    HealthStatus Bitmask Output:


    HWID Data-->
    HWID Hash Current: MAAAAAEAAgABAAIAAAABAAAAAgABAAEA6GHCldqPen9GbiRlqtKgcvZMKNqmL0bK

    OEM Activation 1.0 Data-->
    N/A

    OEM Activation 2.0 Data-->
    BIOS valid for OA 2.0: yes
    Windows marker version: 0x0
    OEMID and OEMTableID Consistent: yes
    BIOS Information:
    ACPI Table Name OEMID Value OEMTableID Value
    APIC TOSINV TOSINV00
    FACP TOSINV TOSINV00
    HPET TOSINV TOSINV00
    BOOT TOSINV TOSINV00
    MCFG TOSINV TOSINV00
    ASF! TOSINV TOSINV00
    SLIC TOSINV TOSINV00
    SSDT PmRef CpuPm
     
  9. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,761
    First Name:
    Frank
    I'm not a MGADiag log expert, but you appear to have a valid retail copy installed. (y)

    I've got a Windows 10 computer to work on and am shutting down for the rest of the day. We can continue here tomorrow morning.

    ------------------------------------------------------------
     
  10. Cookiegal

    Cookiegal Administrator Malware Specialist Coordinator

    Joined:
    Aug 27, 2003
    Messages:
    115,384
    First Name:
    Karen
    Yes, that report looks fine to me too. :)
     
  11. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,761
    First Name:
    Frank
    Thanks, K. (y)
     
  12. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,761
    First Name:
    Frank
    Let's examine the startup and services lists in your computer and see if we can reduce the startup load.

    Below are my "canned instructions", but you can submit thumbnail images instead if you want to.

    --------------------------------------------------------------

    Click Start, then type MSCONFIG in the search or run box, then press the Enter key.

    When the small "System Configuration" window appears, click the "Startup" tab.

    Write down ONLY the names in the "Startup Item" column that have a checkmark next to them.

    If the "Startup Item" column isn't wide enough to see the entire name of any of them, widen the column.

    Submit those names here in a vertical list.

    Make sure to spell them EXACTLY as you see them there.

    --------------------------------------------------------------

    Click Start, then type SERVICES.MSC in the search or run box, then press the Enter key.

    When the "Services" window appears, expand it so you can see the list more clearly.

    Write down ONLY the names in the "Name" column that have their startup type set on Automatic and Automatic(Delayed Start).

    If the "Name" column isn't wide enough to see the entire name of any of them, widen the column.

    Submit those names here in a vertical list and in alphabetical order.

    Make sure to spell them correctly.

    --------------------------------------------------------------
     
  13. Cookiegal

    Cookiegal Administrator Malware Specialist Coordinator

    Joined:
    Aug 27, 2003
    Messages:
    115,384
    First Name:
    Karen
    You're welcome. :)
     
  14. teejae

    teejae Thread Starter

    Joined:
    May 27, 2005
    Messages:
    15
    Startup

    Synaptics Pointing Device Driver
    Microsoft Security Client
    iTunes
    iCloud for Windows
    Google Chrome
    Microsoft One Drive
    Adobe Reader and Acrobat Manager
    hpwuSchd Application
    Dropbox
    ___________________________________________________________

    Services

    Adobe Acrobat Update Service
    Apple Mobile Device Service
    Background Intelligent Transfer Service
    Base Filtering Engine
    Bonjour Service
    COM+ Event System
    Cryptographic Services
    DCOM Server Process Launcher
    Desktop Window Manager Session Manager
    DHCP Client
    Diagnostic Policy Service
    Diagnostics Tracking Service
    Distributed Link Tracking Client
    DNS Client
    Function Discovery Resource Publication
    Garmin Core Update Service
    Google Update Service (gupdate)
    Group Policy Client
    IKE and AuthIP IPsec Keying Modules
    IP Helper
    Kaspersky Anti-Virus Service
    Microsoft.NET Frame NGEN v4.0.30319_X64
    Microsoft.NET Frame NGEN v4.0.30319_X86
    Microsoft Antimalware Service
    Multimedia Class Scheduler
    Network Location Awareness
    Network Store Interface Service
    Offline Files
    Plug and Play
    Power
    Print Spooler
    Program Compatibility Assistant Service
    Remote Procedure Call (RPC)
    RPC Endpoint Mapper
    Security Accounts Manager
    Security Center
    Server
    Shell Hardware Detection
    Skype Click to Call PNR Service
    Skype Click to Call Updater
    Skype Updater
    Software Protection
    Superfetch
    System Event Notification Service
    Task Scheduler
    TCP/IP NetBIOS Helper
    Themes
    User Profile Service
    Windows Audio
    Windows Audio Endpoint Builder
    Windows Event log
    Windows Firewall
    Windows Font Cache Service
    Windows Image Acquisition (WIA)
    Windows Management Instrumentation
    Windows Search
    Windows Update
    WLAN AutoConfig
    Workstation
     
  15. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,761
    First Name:
    Frank
    Uncheck these startup entries:

    Google Chrome

    Adobe Reader and Acrobat Manager

    hpwuSchd Application

    Dropbox


    After you're done, click Apply - OK/Close - Exit Without Restart.

    --------------------------------------------

    Double-click these service entries, one at a time, to open its properties window, then change "Startup Type" to Manual, then click Apply :

    Adobe Acrobat Update Service

    Diagnostic Policy Service

    Diagnostics Tracking Service

    Distributed Link Tracking Client

    Google Update Service

    IP Helper

    Microsoft .NET Framework NGEN v4.0.30319_X64

    Microsoft .NET Framework NGEN v4.0.30319_X86

    Offline Files

    Skype Click to Call Updater

    Skype Updater


    After you're done, restart the computer.

    ---------------------------------------------

    After the computer settles down from the restart, use it for awhile and make sure everything is still working okay.

    Advise if speed and "snappiness" has improved.

    ---------------------------------------------
     
  16. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/1148556

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice