1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

Windows 7 Desktop & Taskbar Keep Refreshing

Discussion in 'Windows 7' started by cd2702, Apr 24, 2010.

Thread Status:
Not open for further replies.
Advertisement
  1. cd2702

    cd2702 Thread Starter

    Joined:
    Apr 24, 2010
    Messages:
    7
    Noticed this problem began just a couple of days ago. Basically what happens is every 30 seconds or so, the icons on the taskbar turn blank and refresh themselves. The same happens with the icons on the desktop page. Have AVG security and ran a scan yet it turned up nothing. Also ran a scan using Malwarebytes Anti-Malware and it too turned up nothing.

    Computer Specs (new to this so forgive me if I leave something crucial out)

    Genuine Intel(R) CPU T1350 @ 1.86 GHz 933 MHz
    Installed Memory (RAM) : 1.00 GB
    32 Bit operating system
    Been running Windows 7 Ultimate for almost a month now.

    The refreshing usually doesn't take more than a second or two but every now and then windows will crash and reset itself. Also, sometimes it gets stuck refreshing itself and that is quite annoying.

    Thanks for any and all help!
     
  2. antech

    antech Banned

    Joined:
    Feb 23, 2010
    Messages:
    1,427
    Consider reinstalling the graphic card drivers.


    Follow the below instructions Carefully:
    1. Download HiJackThis from the link in my signature
    2. Run a Scan.
    3. Save a Logfile(On your Desktop)
    4. DO NOT FIX ANYTHING BY YOURSELF.
    (Fixing Anything Might cause Unwanted System Instability,BSOD's and Even Render your System Unusable)
    5.Copy and Paste all the contents
    6. Paste them in the reply Window
     
  3. cd2702

    cd2702 Thread Starter

    Joined:
    Apr 24, 2010
    Messages:
    7
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 10:50:49 AM, on 4/25/2010
    Platform: Unknown Windows (WinNT 6.01.3504)
    MSIE: Internet Explorer v8.00 (8.00.7600.16385)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\taskhost.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\Program Files\AVG\AVG9\avgtray.exe
    C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
    C:\Program Files\uTorrent\uTorrent.exe
    C:\Program Files\Internet Download Manager\IDMan.exe
    C:\Program Files\AVG\AVG9\Identity Protection\agent\bin\avgidsmonitor.exe
    C:\Windows\system32\conhost.exe
    C:\Program Files\Internet Download Manager\IEMonitor.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Microsoft Office\Office12\WINWORD.EXE
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
    O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
    O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
    O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm
    O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
    O13 - Gopher Prefix:
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL
    O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
    O20 - AppInit_DLLs: avgrsstx.dll
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
    O23 - Service: AVG WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
    O23 - Service: AVG Firewall (avgfws9) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgfws9.exe
    O23 - Service: AVG9IDSAgent (AVGIDSAgent) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    --
    End of file - 6231 bytes
     
  4. antech

    antech Banned

    Joined:
    Feb 23, 2010
    Messages:
    1,427
    I cant figure out anything by seeing the log.
    Run a Quick Scan using SAS and MalwareBytes.
    Did the problem persisted from the fresh install of windows 7?
    Consider upgrading the graphic card drivers if any updates are available
     
  5. Rich-M

    Rich-M

    Joined:
    May 3, 2006
    Messages:
    22,417
    I agree I would run malwarebytes for sure, it feels like there is some spyware there but I can't see it and I hope you realize Avg could be worse than useless for protection these days.
     
  6. antech

    antech Banned

    Joined:
    Feb 23, 2010
    Messages:
    1,427
    Whats the status cd?
    BTW,whats your graphic card model no?
     
  7. cd2702

    cd2702 Thread Starter

    Joined:
    Apr 24, 2010
    Messages:
    7
    Still running the SAS scan; it's only turned up an adware tracking cookie thus far. The malwarebytes scan didn't turn up anything.
    Sorry for the dumb question, but I can't figure out how to find the graphics card model no.
     
  8. cd2702

    cd2702 Thread Starter

    Joined:
    Apr 24, 2010
    Messages:
    7
    Also, rich, what would you recommend for anti-virus protection?
     
  9. Rich-M

    Rich-M

    Joined:
    May 3, 2006
    Messages:
    22,417
    I only recommend Nod32 4.0 or Kaspersky Antivirus 2010 these days as I have yet to see an infected pc with either one onboard.
     
  10. cd2702

    cd2702 Thread Starter

    Joined:
    Apr 24, 2010
    Messages:
    7
    Thanks rich, I'll make the switch soon as I can.

    The SAS scan just finished. I have 72 items of "Adware Tracking Cookies" and 2 items of "Unclassified Unknown Origin".

    The two unclassified items are :
    L:\12_30_09\!KILLBOX\AMSTREAMD.DLL(1)
    L:\12_30_09\!KILLBOX\AMSTREAMD.DLL(2)
     
  11. Rich-M

    Rich-M

    Joined:
    May 3, 2006
    Messages:
    22,417
    Well the tracking cookies don't mean much and many do not consider them a problem at all, while I do in large quantities, but the "unclassifieds" could either be false positives or the answer.
     
  12. cd2702

    cd2702 Thread Starter

    Joined:
    Apr 24, 2010
    Messages:
    7
    Well I cleared the items that SAS found and the problem still persists!
     
  13. Rich-M

    Rich-M

    Joined:
    May 3, 2006
    Messages:
    22,417
    I have asked for a malware specialist to read this log, but before they get here please uninstall the torrent downloader which they will ask you to do anyway.
     
  14. cd2702

    cd2702 Thread Starter

    Joined:
    Apr 24, 2010
    Messages:
    7
    Alright will do Rich. Thanks for the help.
     
  15. dvk01

    dvk01 Derek Moderator Malware Specialist

    Joined:
    Dec 14, 2002
    Messages:
    47,831
    before going any further with this one

    • Please go here using Internet Explorer.
    • Click on "Windows Validation Assistant"
    • Click on the "Validate Now" button.
    • Be patient while the ActiveX loads, do not click on any links.
    • Read the instructions on this page while it's loading. You will be prompted to install - click YES.
    • Enter your product key then click "continue"
    • When it says "Validation Complete" please click "Continue to return to your previous activity"
    • Copy what it says and paste it here.


    I have never seen windows 7 ultimate on such a low spec computer so need to ensure it is a legitamte version of windows that has been installed
     
  16. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/919064