1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Computer very slow...

Discussion in 'Legacy Windows' started by Kimberlee, 2004/04/25.

Thread Status:
Not open for further replies.
  1. 2004/04/27
    Kimberlee

    Kimberlee Inactive Thread Starter

    Joined:
    2004/04/25
    Messages:
    66
    Likes Received:
    0
    All you guys are so amazingly patient! Thanks.

    Performance says "your system is configured for optimal performance ".

    No yellow ! or ? in Device Manager.

    Automatic Skip Driver Agent says:

    "windows stopped responding while trying to perform one of the following tasks. If you want windows to continue trying to perform a task, select its check box. (I did not do this) see details, blah, blah, blah......

    Tasks that caused windows to stop responding:

    Starting a device - USB\VID_067C & PID_E240\SPEEDSTREAM "

    I will continue with other instructions if this means nothing (don't want to waste your time!).

    Thanks,
    Kim
    :)
     
  2. 2004/04/27
    Kimberlee

    Kimberlee Inactive Thread Starter

    Joined:
    2004/04/25
    Messages:
    66
    Likes Received:
    0
    Couple of questions (if you don't mind) .....

    1. When I go into START - FIND and type in *.tmp - can I safely delete all the files that it finds?

    2. When I went into ADD\REMOVE and tried to repair Internet Explorer (trying anything here!) it said it couldn't repair it because a file was missing - esshared.dll. Should I try to reinstall Internet Explorer (will it reinstall over the one I already have and only install what is missing or will I "mess it up?).

    3. Still not sure if my previous post re: USB\VID_067C&PID_E240\SPEEDSTREAM have anything to do with my problems.

    Thanks for all your help :)

    Kim
     

  3. to hide this advert.

  4. 2004/04/27
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    1. Yes, you can safely delete .tmp's
    2. You could select remove and then reinstall. You will need to find the IE6Setup.exe or get it from Windows update. You would need to revisit windows update for later patches and updates after reinstalling. You could also get the file from DrD's. Or you can try extracting it from the Win98 cd with the System File Checker (sfc). It most likely goes in the C:\Windows\system folder.
    3. Assuming this-USB\VID_067C&PID_E240\SPEEDSTREAM -is USB DSL modem or ethernet adapter. May need to update or reinstall the drivers.
     
  5. 2004/04/27
    markp62

    markp62 Geek Member Alumni

    Joined:
    2002/05/01
    Messages:
    4,012
    Likes Received:
    16
    Go ahead and check this box to enable the device, your old spy/adware could have interfered with it before, and reboot. Go back into the ASD and see if it is there again. Then do the below.
    Yes, you can delete all TMP files, they are temporary and not meant to be kept. Restart in Dos Mode and do these commands.
    smartdrv
    deltree c:\windows\cookies
    deltree c:\windows\history
    deltree c:\windows\temp
    deltree c:\windows\tempor~1
    deltree c:\windows\shelli*
    del c:\windows\win386.swp
    scanreg /opt
    scanreg /fix

    Type a Y when prompted that you want to delete, check your spelling of the folders at this time. When you get the message that windows has repaired your registry after the last command, reboot.
    The above commands deletes those entire folders and some other temporary files. They will be rebuilt when windows restarts.
     
  6. 2004/04/28
    Kimberlee

    Kimberlee Inactive Thread Starter

    Joined:
    2004/04/25
    Messages:
    66
    Likes Received:
    0
    OK - followed all instructions per - noahdfear and markp62.

    When I go into ASD all is well now :)

    I deleted all temporary files.

    Went into Dos Mode and completed instructions.

    I could be wrong, but it appears to me (so far) the only problems I am having now all have to do with the internet - Internet Explorer (takes too long for home page to come up) MSN Messenger (takes too long to sign in and then kicks me out, won't let me use web cam, etc.) Outlook Express (takes too long to open) and when I try to get updates for AdAware and Spybot I have to wait forever until they respond.

    I am going to call my internet provider once again and see if this could be their problem. If I don't get anywhere there I will reinstall IE 6 and then reply to Lonny Jones post.

    Thanks so much
    Kim :)
     
  7. 2004/04/28
    Kimberlee

    Kimberlee Inactive Thread Starter

    Joined:
    2004/04/25
    Messages:
    66
    Likes Received:
    0
    Decided not to bother calling Sympatico when I went into Start>Settings>Control Panel>Internet Options. It opens up on the "General \" page - when I clicked on "Connections" it took close to a minute to change - so apparantly is still an OS problem.
    I couldn't think of an easier way to do this (hope no one gets made at this lengthy post)... I will have to do this in a couple of posts...........

    This is my ORIGINAL Hijackthis log:
    Logfile of HijackThis v1.97.7
    Scan saved at 12:16:50 PM, on 20/04/04
    Platform: Windows 98 SE (Win9x 4.10.2222A)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\SYSTEM\KERNEL32.DLL
    C:\WINDOWS\SYSTEM\MSGSRV32.EXE
    C:\WINDOWS\SYSTEM\MPREXE.EXE
    C:\WINDOWS\SYSTEM\mmtask.tsk
    C:\PROGRAM FILES\GRISOFT\AVG6\AVGSERV9.EXE
    C:\WINDOWS\EXPLORER.EXE
    C:\WINDOWS\SYSTEM\SYSTRAY.EXE
    C:\PROGRAM FILES\GRISOFT\AVG6\AVGCC32.EXE
    C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE
    C:\PROGRAM FILES\WINDOWS MEDIA COMPONENTS\ENCODER\WMENCAGT.EXE
    C:\WINDOWS\SYSTEM\WMIEXE.EXE
    C:\PROGRAM FILES\SYMPATICO\ACCESS MANAGER\APP\ENTERNET.EXE
    C:\WINDOWS\SYSTEM\DDHELP.EXE
    C:\MY DOCUMENTS\HIJACK\HIJACKTHIS.EXE
    C:\MY DOCUMENTS\HIJACK\HIJACKTHIS.EXE

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = <http://g.msn.com/0SEENUS/SAOS06>
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <http://www.scotiaonline.com/>
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = <http://red.clientapps.yahoo.com/customize/ie/defaults/stp/ymsgr*http://my.yahoo.com>
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = <http://red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr/*http://www.yahoo.com/ext/search/search.html>
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = <http://red.clientapps.yahoo.com/customize/ie/defaults/sp/ymsgr/*http://www.yahoo.com>
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <http://red.clientapps.yahoo.com/customize/ie/defaults/stp/ymsgr*http://my.yahoo.com>
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = <http://red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr/*http://www.yahoo.com>
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Sympatico
    R3 - URLSearchHook: (no name) - {00D6A7E7-4A97-456f-848A-3B75BF7554D7} - (no file)
    O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YCOMP5_3_12_0.DLL (file missing)
    O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
    O2 - BHO: LBBHO - {EFD84954-6B46-42f4-81F3-94CE9A77052D} - C:\WINDOWS\LBBHO.DLL
    O2 - BHO: NavErrRedir Class - {00D6A7E7-4A97-456f-848A-3B75BF7554D7} - (no file)
    O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YCOMP5_3_12_0.DLL (file missing)
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
    O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
    O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
    O4 - HKLM\..\Run: [AVG_CC] C:\PROGRAM FILES\GRISOFT\AVG6\avgcc32.exe /startup
    O4 - HKLM\..\Run: [msdll] D:\WINDOWS\SYSTEM\mnu\mru\sys\netdd\mss.exe
    O4 - HKLM\..\Run: [TrojanScanner] D:\Program Files\Trojan Remover\Trjscan.exe
    O4 - HKLM\..\RunServices: [Avgserv9.exe] C:\PROGRA~1\GRISOFT\AVG6\Avgserv9.exe
    O4 - HKCU\..\Run: [msnmsgr] "C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE" /background
    O4 - Startup: Encoder Agent.lnk = C:\Program Files\Windows Media Components\Encoder\WMENCAGT.EXE
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions present
    O8 - Extra context menu item: Yahoo! Search - <file:///C:\Program> Files\Yahoo!\Common/ycsrch.htm
    O8 - Extra context menu item: Yahoo! Dictionary - <file:///C:\Program> Files\Yahoo!\Common/ycdict.htm
    O8 - Extra context menu item: &Search - <http://bar.mywebsearch.com/menusearch.html?p=ZNxdm41430>
    O9 - Extra button: Messenger (HKLM)
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger (HKLM)
    O9 - Extra button: Real.com (HKLM)
    O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
    O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - <http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?37887.5145023148>
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - <http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab>
    O16 - DPF: {F00F4763-7355-4725-82F7-0DA94A256D46} (IMDownloader Class) - <http://www2.incredimail.com/contents/setup/downloader/imloader.cab>
    O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - <http://www.apple.com/qtactivex/qtplugin.cab>
    O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - <http://a1540.g.akamai.net/7/1540/52/20030530/qtinstall.info.apple.com/bonnie/us/win/QuickTimeInstaller.exe>
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - <http://messenger.zone.msn.com/binary/MessengerStatsClient.cab>
    O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - <http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab>
    O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - <http://ak.imgfarm.com/images/nocache/funwebproducts/ei/SmileyCentralInitialSetup1.0.0.8.cab>
    O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - <http://messenger.zone.msn.com/binary/MineSweeper.cab>
    O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - <http://messenger.zone.msn.com/binary/msgrchkr.cab>
    O16 - DPF: {C606BA60-AB76-48B6-96A7-2C4D5C386F70} (PreQualifier Class) - <https://sympreg.bell.ca/HSEOrder/systemCheck/MotivePreQual.cab>
    O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (&Yahoo! Companion) - <http://us.dl1.yimg.com/download.companion.yahoo.com/dl/toolbar/yiebio5_1_6_0.cab>
    O16 - DPF: {4F5E4276-C120-11D6-A1FD-00508B9D48EA} (dldisplay Class) - <http://www.gamehouse.com/ghdlctl.cab>
    O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - <http://messenger.zone.msn.com/binary/SolitaireShowdown.cab>
    O16 - DPF: Yahoo! Pool 2 - <http://download.games.yahoo.com/games/clients/y/potc_x.cab>
    O16 - DPF: {F5820AD3-9B20-423E-B2AA-7AF2B4055746} (CRegistryDownload Class) - <http://download.paltalk.com/download/0.x/regdload.cab>
    O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - <http://download.yahoo.com/dl/installs/yinst0401.cab>
    O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - <http://chat.yahoo.com/cab/yacsui.cab>
    O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - <http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab>
    O16 - DPF: {F54C1137-5E34-4B95-95A5-BA56D4D8D743} (Secure Delivery) - <http://www.gamespot.com/KDX22/download/kdx.cab>
    O16 - DPF: {2253F320-AB68-4A07-917D-4F12D8884A06} (ChainCast VMR Client Proxy) - <http://www.streamaudio.com/download/ccpm_0237.cab>
    O16 - DPF: {9C3E8350-5873-4D8E-A1D4-DCB9E885E86D} (CYBSnoop Control) - <http://www.cybersitterhelp.com/snooper/activex/AXSnoop.ocx>
    O16 - DPF: Yahoo! Chat - <http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/c381/chat.cab>
    O16 - DPF: Yahoo! Chat 1.3 - <http://jcs.chat.dcn.yahoo.com/c174/chat.cab>
    O17 - HKLM\System\CCS\Services\VxD\MSTCP: Domain = golden.net
    O17 - HKLM\System\CCS\Services\VxD\MSTCP: SearchList = golden.net
    O17 - HKLM\System\CCS\Services\VxD\MSTCP: NameServer = 199.166.210.2,199.166.210.5

    FIXES I did to follow .......... :)
     
  8. 2004/04/28
    Kimberlee

    Kimberlee Inactive Thread Starter

    Joined:
    2004/04/25
    Messages:
    66
    Likes Received:
    0
    This is what I was told to FIX:
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = <http://red.clientapps.yahoo.com/customize/ie/defaults/stp/ymsgr*http://my.yahoo.com>
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = <http://red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr/*http://www.yahoo.com/ext/search/search.html>
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = <http://red.clientapps.yahoo.com/customize/ie/defaults/sp/ymsgr/*http://www.yahoo.com>
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <http://red.clientapps.yahoo.com/customize/ie/defaults/stp/ymsgr*http://my.yahoo.com>
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = <http://red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr/*http://www.yahoo.com>
    R3 - URLSearchHook: (no name) - {00D6A7E7-4A97-456f-848A-3B75BF7554D7} - (no file)
    O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YCOMP5_3_12_0.DLL (file missing)
    O2 - BHO: LBBHO - {EFD84954-6B46-42f4-81F3-94CE9A77052D} - C:\WINDOWS\LBBHO.DLL
    O2 - BHO: NavErrRedir Class - {00D6A7E7-4A97-456f-848A-3B75BF7554D7} - (no file)
    O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YCOMP5_3_12_0.DLL (file missing)
    O4 - HKLM\..\Run: [msdll] D:\WINDOWS\SYSTEM\mnu\mru\sys\netdd\mss.exe
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions present
    O8 - Extra context menu item: &Search - <http://bar.mywebsearch.com/menusearch.html?p=ZNxdm41430>
    O16 - DPF: {F00F4763-7355-4725-82F7-0DA94A256D46} (IMDownloader Class) - <http://www2.incredimail.com/contents/setup/downloader/imloader.cab>
    O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - <http://www.apple.com/qtactivex/qtplugin.cab>
    O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - <http://ak.imgfarm.com/images/nocache/funwebproducts/ei/SmileyCentralInitialSetup1.0.0.8.cab>
    Was then told to check all in msconfig and the following is the hijackthis log :)
     
  9. 2004/04/28
    Kimberlee

    Kimberlee Inactive Thread Starter

    Joined:
    2004/04/25
    Messages:
    66
    Likes Received:
    0
    Logfile of HijackThis v1.97.7
    Scan saved at 8:38:29 AM, on 23/04/04
    Platform: Windows 98 SE (Win9x 4.10.2222A)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\SYSTEM\KERNEL32.DLL
    C:\WINDOWS\SYSTEM\MSGSRV32.EXE
    C:\WINDOWS\SYSTEM\MPREXE.EXE
    C:\WINDOWS\SYSTEM\mmtask.tsk
    C:\PROGRAM FILES\GRISOFT\AVG6\AVGSERV9.EXE
    C:\WINDOWS\EXPLORER.EXE
    C:\WINDOWS\SYSTEM\SYSTRAY.EXE
    C:\PROGRAM FILES\GRISOFT\AVG6\AVGCC32.EXE
    C:\PROGRAM FILES\COMMON FILES\ADAPTEC SHARED\CREATECD\CREATECD50.EXE
    C:\PROGRAM FILES\ADAPTEC\EASY CD CREATOR 5\DIRECTCD\DIRECTCD.EXE
    C:\WINDOWS\ESSSPK.EXE
    C:\WINDOWS\SYSTEM\DDHELP.EXE
    C:\PROGRAM FILES\NETASSISTANT\SMARTBRIDGE\MOTIVESB.EXE
    C:\PROGRAM FILES\LOGITECH\IMAGESTUDIO\LOGITRAY.EXE
    C:\PROGRAM FILES\LOGITECH\VIDEO\LOGITRAY.EXE
    C:\PROGRAM FILES\REAL\REALPLAYER\REALPLAY.EXE
    C:\WINDOWS\SYSTEM\STIMON.EXE
    D:\PROGRAM FILES\THE CLEANER\TCA.EXE
    D:\PROGRAM FILES\THE CLEANER\TCM.EXE
    C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE
    C:\WINDOWS\SYSTEM\WMIEXE.EXE
    C:\WINDOWS\RUNDLL32.EXE
    C:\WINDOWS\SYSTEM\LVCOMS.EXE
    C:\PROGRAM FILES\LOGITECH\IMAGESTUDIO\LOWLIGHT.EXE
    C:\PROGRAM FILES\WINDOWS MEDIA COMPONENTS\ENCODER\WMENCAGT.EXE
    C:\PROGRAM FILES\NETASSISTANT\BIN\MPBTN.EXE
    C:\MY DOCUMENTS\KIM'S FOLDER\HIJACK\HIJACKTHIS.EXE

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = <http://g.msn.com/0SEENUS/SAOS06>
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <http://www.scotiaonline.com/>
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Sympatico
    O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
    O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
    O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
    O4 - HKLM\..\Run: [AVG_CC] C:\PROGRAM FILES\GRISOFT\AVG6\avgcc32.exe /startup
    O4 - HKLM\..\Run: [WinampAgent] D:\Program Files\Winamp\winampa.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\SYSTEM\QTTASK.EXE" -atboottime
    O4 - HKLM\..\Run: [P2P NETWORKING2] C:\WINDOWS\SYSTEM\P2P NETWORKING\P2P NETWORKING2.EXE /AUTOSTART
    O4 - HKLM\..\Run: [AltnetPointsManager] c:\program files\altnet\points manager\points manager.exe -s
    O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe"
    O4 - HKLM\..\Run: [EbatesMoeMoneyMaker] wjview /cp:p "C:\Program Files\EbatesMoeMoneyMaker\System\Code" Main lp: "C:\Program Files\EbatesMoeMoneyMaker"
    O4 - HKLM\..\Run: [updater] C:\Program Files\Common files\updater\wupdater.exe
    O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
    O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\BAR\3.BIN\MWSOEMON.EXE
    O4 - HKLM\..\Run: [WhenUSave] C:\PROGRA~1\SAVE\Save.exe
    O4 - HKLM\..\Run: [msbb] C:\N-CASE\MSBB.EXE
    O4 - HKLM\..\Run: [CFIL] C:\WINDOWS\CFIL.exe
    O4 - HKLM\..\Run: [KAZAA] C:\Program Files\Kazaa\kazaa.exe /SYSTRAY
    O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\SYGATE\SPF\SMC.EXE -startgui
    O4 - HKLM\..\Run: [IncredimailDownloader] C:\WINDOWS\DOWNLOADED PROGRAM FILES\IMLOADER.EXE
    O4 - HKLM\..\Run: [EssSpkPhone] essspk.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\SYSTEM\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\NETASS~1\SMARTB~1\MotiveSB.exe
    O4 - HKLM\..\Run: [updmgr] C:\Program Files\Common files\updmgr\updmgr.exe
    O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe
    O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
    O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
    O4 - HKLM\..\Run: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
    O4 - HKLM\..\Run: [CyberPatrolNew] D:\PROGRAM FILES\SURFCONTROL\CYBERPATROL\CPHQ.EXE /m
    O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~1.DLL,NewDotNetStartup
    O4 - HKLM\..\Run: [P2P NETWORKING] C:\WINDOWS\SYSTEM\P2P NETWORKING\P2P NETWORKING.EXE /AUTOSTART
    O4 - HKLM\..\Run: [Welcome] C:\WINDOWS\Welcome.exe /R
    O4 - HKLM\..\Run: [TrojanScanner] D:\Program Files\Trojan Remover\Trjscan.exe
    O4 - HKLM\..\Run: [tcactive] D:\PROGRAM FILES\THE CLEANER\tca.exe
    O4 - HKLM\..\Run: [tcmonitor] D:\PROGRAM FILES\THE CLEANER\tcm.exe
    O4 - HKLM\..\Run: [CreateCD50] C:\PROGRA~1\COMMON~1\ADAPTE~1\CREATECD\CREATE~1.EXE -r
    O4 - HKLM\..\RunServices: [Avgserv9.exe] C:\PROGRA~1\GRISOFT\AVG6\Avgserv9.exe
    O4 - HKLM\..\RunServices: S
    O4 - HKCU\..\Run: [msnmsgr] "C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE" /background
    O4 - HKCU\..\Run: [IncrediMail] C:\PROGRA~1\INCRED~1\bin\IncMail.exe /c
    O4 - HKCU\..\Run: [Actual Windows Manager] D:\Program Files\Actual Windows Manager\ActualWindowsManagerCenter.exe
    O4 - HKCU\..\Run: [WeatherCast] C:\PROGRA~1\WEATHE~1\Weather.exe /q
    O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
    O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
    O4 - HKCU\..\Run: [ClockSync] C:\Program Files\ClockSync\Sync.exe
    O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\BAR\3.BIN\MWSOEMON.EXE
    O4 - HKCU\..\Run: [LDM] \Program\BackWeb-8876480.exe
    O4 - Startup: Event Reminder.lnk = D:\Program Files\Broderbund\PrintMaster\pmremind.exe
    O4 - Startup: PalNetaware.lnk = C:\Paltalk\pnetaware.exe
    O4 - Startup: GStartup.lnk = C:\Program Files\Common Files\GMT\GMT.exe
    O4 - Startup: NetAssistant.lnk = C:\Program Files\NetAssistant\bin\matcli.exe
    O4 - Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\3.bin\MWSOEMON.EXE
    O4 - Startup: Encoder Agent.lnk = C:\Program Files\Windows Media Components\Encoder\WMENCAGT.EXE
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions present
    O8 - Extra context menu item: Yahoo! Search - <file:///C:\Program> Files\Yahoo!\Common/ycsrch.htm
    O8 - Extra context menu item: Yahoo! Dictionary - <file:///C:\Program> Files\Yahoo!\Common/ycdict.htm
    O9 - Extra button: Messenger (HKLM)
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger (HKLM)
    O9 - Extra button: Real.com (HKLM)
    O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
    O12 - Plugin for .mp3: C:\PROGRA~1\INTERN~1\PLUGINS\npqtplugin4.dll
    O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - <http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?37887.5145023148>
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - <http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab>
    O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - <http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab>
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - <http://www.pandasoftware.com/activescan/as5/asinst.cab>
    O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - <http://a840.g.akamai.net/7/840/537/2004033001/housecall.antivirus.com/housecall/xscan53.cab>
    O17 - HKLM\System\CCS\Services\VxD\MSTCP: Domain = golden.net
    O17 - HKLM\System\CCS\Services\VxD\MSTCP: SearchList = golden.net
    O17 - HKLM\System\CCS\Services\VxD\MSTCP: NameServer = 199.166.210.2,199.166.210.5

    DID FIXES

    :)
     
  10. 2004/04/28
    Kimberlee

    Kimberlee Inactive Thread Starter

    Joined:
    2004/04/25
    Messages:
    66
    Likes Received:
    0
    This is my CURRENT hijackthis log with all items checked in msconfig:
    Logfile of HijackThis v1.97.7
    Scan saved at 10:04:13 AM, on 28/04/04
    Platform: Windows 98 SE (Win9x 4.10.2222A)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\SYSTEM\KERNEL32.DLL
    C:\WINDOWS\SYSTEM\MSGSRV32.EXE
    C:\WINDOWS\SYSTEM\MPREXE.EXE
    C:\WINDOWS\SYSTEM\mmtask.tsk
    C:\PROGRAM FILES\GRISOFT\AVG6\AVGSERV9.EXE
    C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE
    C:\WINDOWS\EXPLORER.EXE
    C:\WINDOWS\SYSTEM\SYSTRAY.EXE
    C:\PROGRAM FILES\GRISOFT\AVG6\AVGCC32.EXE
    D:\PROGRAM FILES\ZONE LABS\ZONEALARM\ZLCLIENT.EXE
    C:\PROGRAM FILES\ADAPTEC\EASY CD CREATOR 5\DIRECTCD\DIRECTCD.EXE
    C:\WINDOWS\ESSSPK.EXE
    C:\PROGRAM FILES\NETASSISTANT\SMARTBRIDGE\MOTIVESB.EXE
    C:\WINDOWS\SYSTEM\DDHELP.EXE
    C:\PROGRAM FILES\LOGITECH\IMAGESTUDIO\LOGITRAY.EXE
    C:\PROGRAM FILES\LOGITECH\VIDEO\LOGITRAY.EXE
    C:\PROGRAM FILES\REAL\REALPLAYER\REALPLAY.EXE
    C:\WINDOWS\SYSTEM\STIMON.EXE
    C:\PROGRAM FILES\COMMON FILES\ADAPTEC SHARED\CREATECD\CREATECD50.EXE
    C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE
    C:\PROGRAM FILES\WINDOWS MEDIA COMPONENTS\ENCODER\WMENCAGT.EXE
    C:\WINDOWS\RUNDLL32.EXE
    C:\WINDOWS\SYSTEM\WMIEXE.EXE
    C:\WINDOWS\SYSTEM\LVCOMS.EXE
    C:\PROGRAM FILES\NETASSISTANT\BIN\MPBTN.EXE
    C:\PROGRAM FILES\LOGITECH\IMAGESTUDIO\LOWLIGHT.EXE
    C:\MY DOCUMENTS\KIM'S FOLDER\HIJACK\HIJACKTHIS.EXE

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/
    O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
    O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
    O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
    O4 - HKLM\..\Run: [AVG_CC] C:\PROGRAM FILES\GRISOFT\AVG6\avgcc32.exe /startup
    O4 - HKLM\..\Run: [Zone Labs Client] D:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
    O4 - HKLM\..\Run: [WinampAgent] D:\Program Files\Winamp\winampa.exe
    O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe "
    O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
    O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\SYGATE\SPF\SMC.EXE -startgui
    O4 - HKLM\..\Run: [EssSpkPhone] essspk.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\SYSTEM\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\NETASS~1\SMARTB~1\MotiveSB.exe
    O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe
    O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
    O4 - HKLM\..\Run: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
    O4 - HKLM\..\Run: [Welcome] C:\WINDOWS\Welcome.exe /R
    O4 - HKLM\..\Run: [TrojanScanner] D:\Program Files\Trojan Remover\Trjscan.exe
    O4 - HKLM\..\Run: [tcactive] D:\PROGRAM FILES\THE CLEANER\tca.exe
    O4 - HKLM\..\Run: [tcmonitor] D:\PROGRAM FILES\THE CLEANER\tcm.exe
    O4 - HKLM\..\Run: [CreateCD50] C:\PROGRA~1\COMMON~1\ADAPTE~1\CREATECD\CREATE~1.EXE -r
    O4 - HKLM\..\RunServices: [Avgserv9.exe] C:\PROGRA~1\GRISOFT\AVG6\Avgserv9.exe
    O4 - HKLM\..\RunServices: [TrueVector] C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE -service
    O4 - HKLM\..\RunServices: S
    O4 - HKCU\..\Run: [msnmsgr] "C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE" /background
    O4 - HKCU\..\Run: [Actual Windows Manager] D:\Program Files\Actual Windows Manager\ActualWindowsManagerCenter.exe
    O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
    O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
    O4 - HKCU\..\Run: [LDM] \Program\BackWeb-8876480.exe
    O4 - Startup: Event Reminder.lnk = D:\Program Files\Broderbund\PrintMaster\pmremind.exe
    O4 - Startup: NetAssistant.lnk = C:\Program Files\NetAssistant\bin\matcli.exe
    O4 - Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Startup: Encoder Agent.lnk = C:\Program Files\Windows Media Components\Encoder\WMENCAGT.EXE
    O8 - Extra context menu item: Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
    O8 - Extra context menu item: Yahoo! Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
    O9 - Extra button: Messenger (HKLM)
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger (HKLM)
    O9 - Extra button: Real.com (HKLM)
    O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
    O12 - Plugin for .mp3: C:\PROGRA~1\INTERN~1\PLUGINS\npqtplugin4.dll
    O12 - Plugin for .bcf: C:\PROGRA~1\INTERN~1\Plugins\NPBelv32.dll
    O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?37887.5145023148
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
    O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004033001/housecall.antivirus.com/housecall/xscan53.cab
    O16 - DPF: DigiChat Applet - http://host2.digichat.com/DigiChat/DigiClasses/Client_IE.cab
    O16 - DPF: {A8658086-E6AC-4957-BC8E-7D54A7E8A78D} (DoomCln Object) - http://www.microsoft.com/security/controls/DoomCln.CAB
    O16 - DPF: {2A32B14F-4D29-4EA3-AC54-E9B19F436CE7} (Scanner Class) - http://www.trojanscan.com/trojanscan/TDECntrl.CAB
    O16 - DPF: {A3009861-330C-4E10-822B-39D16EC8829D} (CRAVOnline Object) - http://www.ravantivirus.com/scan/ravonline.cab
    O17 - HKLM\System\CCS\Services\VxD\MSTCP: Domain = golden.net
    O17 - HKLM\System\CCS\Services\VxD\MSTCP: SearchList = golden.net
    O17 - HKLM\System\CCS\Services\VxD\MSTCP: NameServer = 199.166.210.2,199.166.210.5

    ***If I have over done it here ..... I am sorry
    Kim :)
     
  11. 2004/04/28
    Lonny Jones

    Lonny Jones Inactive Alumni

    Joined:
    2002/12/16
    Messages:
    2,252
    Likes Received:
    0
    fix this one
    O4 - HKLM\..\RunServices: S


    when you fixed this did you also uninstall it ?
    Uninstall P2P Networking through Add/Remove Programs.While off line. If/when asked whether you also want to remove Altnet components, say 'Yes'.
    P2P Networking is a totally useless Kazaa add-on, and it's been reported to be responsible for serious system slowdowns.
    Subsequently remove the P2P Networking folder in C:\Windows\System, if still there.
    and the allthenet folder to,C:\Program Files\Altnet

    I would also uninstall Kazaa reboot, then run kazzabegone
    Lower down on this page http://spywareinfo.com/~merijn/downloads.html
    then delete its folder if still there C:\Program Files\Kazaa
    =====
    when you fixed newnet did you uninstall it to ? if it had problems
    see this FAQ
    http://forums.net-integration.net/index.php?showtopic=2705
    look for and uninstall New.Net, Newdotnet(Domains) WebHancer
    IF it will not work

    Use PROCEDURE 4 here
    http://www.newdotnet.com/#remove
    then delete it folder to

    =====
    when you fixed MyWebSearch did you also uninstall it ? then delete its folders
    C:\Program Files\MyWebSearch
    =====
    when you fixed this
    O4 - HKCU\..\Run: [ClockSync] C:\Program Files\ClockSync\Sync.exe
    did you uninstall it through addremove program ? You should
    then delete its folder is still there

    You might consider having this tool not start with windows, if there is an option in its setting NetAssistant for that use it
    I can only see it conflicting with your other tools for instance CYBERPATROL
    but don't just disable things from starting with windows first check in there options and turn off what ever protections they put in place, then if they have the option to not start with windows use it rather than msconfig.

    You should also do the same with one or the other of your Trojan programs
    I would turn both off when troubleshooting
    ======
    two firewall's I see you've only let one start with windows(before), I suggest
    you keep one and uninstall the other then reboot.

    I would start by uninstalling program obtained/installed with Kaaza
    if you've installed any since or just before the problems started

    Thats all I can think of for now :)
     
  12. 2004/04/28
    Dave111

    Dave111 Inactive

    Joined:
    2003/05/25
    Messages:
    35
    Likes Received:
    0
    Hi Kim. Read through your post and the replies. If you haven't gotten the browser speed fixed yet, let me ask you what were the last few things you were doing with the computer the day before it started acting funny. I don't see that anyone's asked you about it. Had you downloaded something? Opened email? Ran a new application? There might be a clue there...
     
  13. 2004/04/28
    Kimberlee

    Kimberlee Inactive Thread Starter

    Joined:
    2004/04/25
    Messages:
    66
    Likes Received:
    0
    I don't remember doing anything different the day before all my troubles...however, I do have 3 children using it as well :) I have grilled them all to the point that they say the F.B.I. has nothing on me.....they insist they did not download or do anything out of the ordinary. We do have a rule here that I am the only one to be doing ANY downloading, but I'm sure they have taken a few liberties along the way :rolleyes:

    Here is what I managed to get done today:

    - fixed 04 - HKLM \RunServices: S

    - checked and there appears to be no trace of P2P Networking, Altnet, Newnet, ClockSync,

    - ran kazaabegone (children are a little upset that this one is gone!)

    - got rid of one of my trojan remover programs

    - when I tried to remove MyWebSearch in ADD/REMOVE it tells me that it can't find its path. Did Start>Find - and all it could find was c:\windows\application data\Spybot Search and Destroy\Recovery (this was also the case with PerfectNav - both PerfectNav and MyWebSearch were zip files in Recovery - can I delete these?)

    - Had a look at C drive and saw a couple folders I din't recognise - Clear Search, Plus!, Try Media, Web Publish and Zero G Registry - are any of these a problem? Also found and deleted - Comet Systems, Fun Web Products, PerfectNav

    Lonny Jones :

    Apparantly I have 2 firewalls? I know about ZoneAlarm - what is the other one? :)

    Thanks (yet again!)
    Kim
     
  14. 2004/04/28
    Kimberlee

    Kimberlee Inactive Thread Starter

    Joined:
    2004/04/25
    Messages:
    66
    Likes Received:
    0
    Remove dupicate Post :)
     
  15. 2004/04/28
    Lonny Jones

    Lonny Jones Inactive Alumni

    Joined:
    2002/12/16
    Messages:
    2,252
    Likes Received:
    0
    Gee , I would never alow children to use a filesharring program, if you must use one, (dont lt them) get a spywarefree alterantive and be very very carefull,still, of what you download
    Clean and Infected File Sharing Programs: http://www.spywareinfo.com/articles/p2p/
    A stray mention of an item in the uninstall menue is ok, if you'd like we can link you to a registry cleaner that will probaly remove it.
    and yes within spybot's you can remove the items in restore, But you should keep them for a few weeks, then when all is fine do delete them.

    Im not sure about Try Media, Web Publish and Zero G Registry,Yet, the
    If I hadnt installed it I would propmtly uninstall them


    Fun Web Products<< check in addremove first if theres an uninstall us it.
    FunWebProducts 'My Search Bar' 'MyWay Speed Bar' "Myway toolbar" anything Myway
    http://www.free-web-browsers.com/support/remove-mysearch.shtml

    The others should be deleted
    Comet Systems< delete its folder if found anywhere
    C:\PROGRAM FILES\COMETSYSTEMS< usualy looks like that
    PerfectNav << safe to delete
    sygate firewall and zone alarm. keep whichever one your comfortable with and uninstall the other
     
  16. 2004/04/28
    markp62

    markp62 Geek Member Alumni

    Joined:
    2002/05/01
    Messages:
    4,012
    Likes Received:
    16
    Yes, you should uninstall one and keep the other. Although you choose to have one startup, the other one not starting up still has some system files loading up when windows starts. Perhaps the slowdown is here.
    I believe Sygate has a password feature to keep the settings as you want them. So, you have so many programs allowed access to the internet, and password protect it. Any other new programs will not be allowed access, this will not keep something from being installed, but will be useless as far as the internet is concerned.
     
  17. 2004/04/28
    Kimberlee

    Kimberlee Inactive Thread Starter

    Joined:
    2004/04/25
    Messages:
    66
    Likes Received:
    0
    Just for the record - the "children" that I referred to in my earlier post using Kazaa are 22 and 19 :) They were downloading some old Saturday Night Live shows.................. :)

    Kim
     
  18. 2004/04/28
    Kimberlee

    Kimberlee Inactive Thread Starter

    Joined:
    2004/04/25
    Messages:
    66
    Likes Received:
    0
    Is it possible that the Sygate firewall was showing up in the hijackthis log that was shown when I checked all items in msconfig? I have searched (start>find) and can't come up with anything relating to Sygate.

    I want everyone to know just how much I appreciate all your time and energy. Anything relating to internet access is still painfully slow, but at least I have a cleaner system :)

    Any more suggestions?

    Kim
     
  19. 2004/04/29
    Lonny Jones

    Lonny Jones Inactive Alumni

    Joined:
    2002/12/16
    Messages:
    2,252
    Likes Received:
    0
    So theres no Sygate folder in programs files ? Nor a mention of it in add-remove programs ?

    If you had it disabled in msconfig, in the past, and uninstalled it, that might be the reason it's only mentioned in msconfig.

    Could you please summarize the problems for us again, mention everything you can think of even if it seams a completely different problem.

    we must be in the same age bracket to have kids of that age
     
  20. 2004/04/29
    Kimberlee

    Kimberlee Inactive Thread Starter

    Joined:
    2004/04/25
    Messages:
    66
    Likes Received:
    0
    Is it not possible that I had my first child when I was 8 :cool:
    Possible, but highly unlikely ;)

    OK here is what (to the best of my knowledge) is acting strange (or anything that stands out in my mind):

    When I do a SCANDISK it tells me there are bad sectors that can not be fixed (don't know if this has anything to do with my situation, but thought I should mention it).

    Any program related to internet access is not responding properly.

    Internet Explorer - when I click on the icon on my desktop the browser comes up and is searching for my homepage. This used to come up almost instantly, now can take up to a minute. Sometimes while I am on the internet, and try to go to another site it takes quite awhile (but not all the time).

    MSN Messenger - I type in username and password and then the little MSN guy in the bottom right of my screen seems to be doing nothing. Then he moves, stops, moves, stops. Will eventually come up if I wait long enough, but still acts strange. Sometimes stops responding if I send an IM to someone. Unable to use our web cam.

    AdAware - Sometimes stops responding entirely before I even go for updates.
    Takes too long for it to connect to the update site.

    Spybot - Takes too long for it to connect to the update side.

    Outlook Express - Outlook Express seems to open fine, but takes longer than usual to decide to actually start working.

    With any of these programs, in the beginning when I first started having problems, I would press Ctrl+Alt+Delete and they would say "not responding ". Then I figured out if I just left it alone it would eventually "come around ".

    Now this one is a bit strange (and the reason Sympatico said it was a OS problem and not internet connection problem): If I go Start>Settings>Control Panel and go into Internet Options there are several tabs at the top of the page - It opens on GENERAL and there is also - Security, Privacy, Content, Connections, Programs and Advanced. I can move from one tab to another and that tabs info will come up. Except for CONNECTIONS. When I click on this tab - the tab shows that I have selected it, but the info from the previous tab is still displayed :confused: Then things get silly, it stops responding ...

    Sometimes when I click on an icon (can't find no rhyme or reason as to when it decides to do this) it will take a long time for the program to open. This seems to happen when I am trying to look at my "FILES" from the icon on the desktop. Could happen to others as well, but this is the one I notice...

    I just remembered this last night while lying in bed and racking my brain (again I don't know if it means anything) The morning when I started having all these problems I turned the power on the computer. I knew that someone had been on the computer after I went to bed the night before because Scandisk (? I think this is the name of it!) came up saying that the computer was not properly shut down and it would now check my drives for errors. I know that this takes awhile so I went to make myself a coffee. When I came back I saw something on the screen about "cross-linking" on drive C. It came and went before I could see anything else and then Windows opened up. I don't recall ever seeing this before (mabe I just never paid attention). Again, just thought I should mention it :)

    Other than that, I can't think of anything else. I have grilled the kids and they say they are innocent (no downloading etc...) But I can't say for sure what goes on when I am sleeping :)

    Thanks,
    Kim
     
  21. 2004/04/29
    markp62

    markp62 Geek Member Alumni

    Joined:
    2002/05/01
    Messages:
    4,012
    Likes Received:
    16
    Those bad sectors can be a problem. If you run Scandisk from dos, using these commands, they will be marked as bad and will not be a problem in the future, as they will no longer be accessed. It works much faster in dos.
    However, this is a sign of a drive dying.
    scandisk /autofix /surface
    Maybe eliminating some items from startup should be done.
    Go to Start\Run and type in Msconfig, click on Startup tab, and uncheck these.
    [Motive SmartBridge] C:\PROGRA~1\NETASS~1\SMARTB~1\MotiveSB.exe
    System tray icon for the Virtual Assistant from AT&T Broadband, used to communicate internet problems via the network rather than telephone. Available via desktop shortcut or Start -> Programs - not required
    [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe
    [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe
    [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    These 4 above are not needed unless you do something with the camera
    [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
    This is for the scanner, can be started via Start\Programs.
    [Welcome] C:\WINDOWS\Welcome.exe /R
    The above is definitely not needed.
    [CreateCD50] C:\PROGRA~1\COMMON~1\ADAPTE~1\CREATECD\CREATE~1.EXE -r
    This can be started via Start\Programs.
    [Actual Windows Manager] D:\Program Files\Actual Windows Manager\ActualWindowsManagerCenter.exe
    If you like the desktop settings as they are, disable it/
    [LDM] \Program\BackWeb-8876480.exe
    Encoder Agent.lnk = C:\Program Files\Windows Media Components\Encoder\WMENCAGT.EXE
    The above is definitely not needed.
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    All this does is check for updates, same as the backweb.
    D:\Program Files\Broderbund\PrintMaster\pmremind.exe

    I think you should do a repair of IE. Go to Add/Remove Programs, double click the IE entry there, a window will pop up, select the Repair option, reboot when prompted.
     
Thread Status:
Not open for further replies.

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.