1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Inactive Computer slows down shortly after starting.

Discussion in 'Malware and Virus Removal Archive' started by Bigalx58, 2010/04/17.

  1. 2010/04/17
    Bigalx58

    Bigalx58 Well-Known Member Thread Starter

    Joined:
    2006/05/29
    Messages:
    205
    Likes Received:
    1
    [Inactive] Computer slows down shortly after starting.

    I didn't use my desktop computer for about 2 months. It was working fine when I stopped using it. When I started to use it, it works fine for about half an hour then it starts to slow down and eventually freezes on a website and I can't access any websites unless I restart the computer or keep hitting the website over and over. I can access my emails and open them, but if I'm directed to a web site from there it usually takes a long time or the computer freezes. I have defragged, ran disk clean, ran anti spyware, ran antivirus, turned off add-ons in IE, removed extra toolbars and removed any programs that I haven't used for a while. I'm using IE 8, with 12 gb free out of 40 gb, with 1.5 mb of RAM... I'm writing this thread on a laptop. Is time for major surgery or a new compter? Any suggestions please. Thanks.
    PS. My desktop is still showing that it is still posting my thread onto this site!!!
    That started about half an hour ago!! I'm using my laptop to write this message.

    DS (Ver_10-03-17.01) - NTFSx86
    Run by AC at 12:05:11.89 on Sat 04/17/2010
    Internet Explorer: 8.0.6001.18702
    Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1471.880 [GMT -4:00]

    AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
    AV: ZoneAlarm Security Suite Antivirus *On-access scanning disabled* (Updated) {5D467B10-818C-4CAB-9FF7-6893B5B8F3CF}
    FW: ZoneAlarm Firewall *enabled* {829BDA32-94B3-44F4-8446-F8FCFF809F8B}

    ============== Running Processes ===============

    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
    C:\Program Files\AVG\AVG9\avgchsvx.exe
    C:\Program Files\AVG\AVG9\avgrsx.exe
    C:\Program Files\AVG\AVG9\avgcsrvx.exe
    svchost.exe
    svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\SYSTEM32\ZoneLabs\vsmon.exe
    C:\WINDOWS\system32\spoolsv.exe
    svchost.exe
    C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
    C:\Program Files\AVG\AVG9\avgwdsvc.exe
    C:\WINDOWS\system32\cisvc.exe
    C:\WINDOWS\system32\CTsvcCDA.exe
    C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\WINDOWS\System32\SnoopFreeSvc.exe
    C:\WINDOWS\system32\svchost.exe -k imgsvc
    C:\Program Files\AVG\AVG9\avgnsx.exe
    C:\WINDOWS\System32\svchost.exe -k HTTPFilter
    C:\Program Files\SoftSwift\Enhanced Windows Backup\EWBackup.exe
    C:\WINDOWS\StartupMonitor.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\WINDOWS\SnoopFreeUI.exe
    C:\PROGRA~1\AVG\AVG9\avgtray.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\system32\cidaemon.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\AC\Desktop\dds.scr

    ============== Pseudo HJT Report ===============

    uWindow Title =
    uInternet Settings,ProxyOverride = localhost
    uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
    uURLSearchHooks: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg9\avgssie.dll
    BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
    BHO: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    BHO: WOT Helper: {c920e44a-7f78-4e64-bdd7-a57026e7feb7} - c:\program files\wot\WOT.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    BHO: CallingID BHO: {fbf2401b-7447-4727-be5d-c19b2075ca84} - c:\program files\callingid\toolbar\CallingIDIE.dll
    TB: CallingID: {10134636-e7af-4ac5-a1dc-c7c44bb97d81} - c:\program files\callingid\toolbar\CallingIDIE.dll
    TB: WOT: {71576546-354d-41c9-aae8-31f2ec22bf0d} - c:\program files\wot\WOT.dll
    TB: AVG Security Toolbar: {ccc7a320-b3ca-4199-b1a6-9f516dd69829} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    TB: {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No File
    TB: {724D43A0-0D85-11D4-9908-00400523E39A} - No File
    TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
    TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
    EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
    mRun: [EWBACKUP] "c:\program files\softswift\enhanced windows backup\EWBackup.exe" /Q /START
    mRun: [SystemTray] SysTray.Exe
    mRun: [Run StartupMonitor] StartupMonitor.exe
    mRun: [ZoneAlarm Client] "c:\program files\zone labs\zonealarm\zlclient.exe "
    mRun: [SnoopFreeUI] SnoopFreeUI.exe
    mRun: [AVG9_TRAY] c:\progra~1\avg\avg9\avgtray.exe
    dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
    IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    Trusted Zone: nortonconfidenceonline.com\td
    DPF: DirectAnimation Java Classes
    DPF: Microsoft XML Parser for Java
    DPF: {05317530-B882-449D-9421-18D94FA3ED34} - hxxp://www.sis.com/ocis/OSInfo.cab
    DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} - hxxp://www.creative.com/softwareupdate/su/ocx/15031/CTSUEng.cab
    DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} - hxxp://www.pcpitstop.com/betapit/PCPitStop.CAB
    DPF: {16095503-786F-4097-AED6-5D567A26D760} - hxxp://www.sis.com/ocis/SiSAutodetectNT.cab
    DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab
    DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/C/0/C/C0CBBA88-A6F2-48D9-9B0E-1719D1177202/LegitCheckControl.cab
    DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} - hxxp://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
    DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\yinsthelper.dll
    DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - hxxp://download.bitdefender.com/resources/scan8/oscan8.cab
    DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} - hxxp://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
    DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} - hxxp://www.creative.com/softwareupdate/su/ocx/15101/CTSUEng.cab
    DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} - hxxp://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
    DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
    DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} - hxxp://acs.pandasoftware.com/activescan/as5free/asinst.cab
    DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} - hxxp://www.sibelius.com/download/software/win/ActiveXPlugin.cab
    DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} - hxxp://ax.emsisoft.com/asquared.cab
    DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
    DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - hxxp://www.adobe.com/products/acrobat/nos/gp.cab
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab
    DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - hxxp://3dlifeplayer.dl.3dvia.com/player/install/installer.exe
    DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
    DPF: {F127B9BA-89EA-4B04-9C67-2074A9DF61FD} - hxxp://walmart.pnimedia.com/upload/activex/v2_0_0_9/PCAXSetupv2.0.0.9.cab?
    DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://www.creative.com/softwareupdate/su/ocx/15106/CTPID.cab
    DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} - hxxp://utilities.pcpitstop.com/optimize2/pcpitstop2.dll
    Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg9\avgpp.dll
    Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
    Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - c:\program files\wot\WOT.dll
    Notify: avgrsstarter - avgrsstx.dll
    SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
    SEH: ShellHook Class: {1869181a-9f50-4fcf-8bff-1b8588ecb85c} - c:\program files\callingid\linkadvisor\CIDLinkAdvisor.dll
    SEH: Microsoft AntiMalware ShellExecuteHook: {091eb208-39dd-417d-a5dd-7e2c2d8fb9cb} - c:\progra~1\window~4\MpShHook.dll
    mASetup: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "c:\progra~1\outloo~1\setup50.exe" /APP:OE /CALLER:IE50 /user /install
    mASetup: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "c:\progra~1\outloo~1\setup50.exe" /app:eek:e /caller:ie50 /user /install - "c:\progra~1\outloo~1\setup50.exe" /APP:OE /CALLER:WIN9X /user /install
    mASetup: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "c:\progra~1\outloo~1\setup50.exe" /app:eek:e /caller:ie50 /user /install - "c:\progra~1\outloo~1\setup50.exe" /app:eek:e /caller:win9x /user /install - "c:\progra~1\outloo~1\setup50.exe" /APP:OE /CALLER:IE50 /user /install
    mASetup: {7790769C-0471-11d2-AF11-00C04FA35D02} - "c:\progra~1\outloo~1\setup50.exe" /APP:WAB /CALLER:WIN9X /user /install
    mASetup: {7790769C-0471-11d2-AF11-00C04FA35D02} - "c:\progra~1\outloo~1\setup50.exe" /app:wab /caller:win9x /user /install - "c:\progra~1\outloo~1\setup50.exe" /APP:WAB /CALLER:IE50 /user /install
    mASetup: {9EF0045A-CDD9-438e-95E6-02B9AFEC8E11} - c:\windows\system32\updcrl.exe -e -u c:\windows\system\verisignpub1.crl
    Hosts: 127.0.0.1 www.spywareinfo.com

    ============= SERVICES / DRIVERS ===============

    R0 pssnap;Paramount Software Snapshot Filter;c:\windows\system32\drivers\pssnap.sys [2008-5-20 15328]
    R0 SnoopFree;SnoopFree Driver;c:\windows\system32\drivers\SnopFree.sys [2009-4-15 9472]
    R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-3-25 216200]
    R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2009-3-25 29512]
    R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-3-25 242696]
    R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2008-12-4 8944]
    R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2008-12-4 55024]
    R1 vsdatant;vsdatant;c:\windows\system32\vsdatant.sys [2009-1-14 353672]
    R2 avg9wd;AVG Free WatchDog;c:\program files\avg\avg9\avgwdsvc.exe [2010-4-6 308064]
    R2 SnoopFreeSvc;Snoop Free Service;System32\SnoopFreeSvc.exe --> System32\SnoopFreeSvc.exe [?]
    R2 vsmon;TrueVector Internet Monitor;c:\windows\system32\zonelabs\vsmon.exe -service --> c:\windows\system32\zonelabs\vsmon.exe -service [?]
    S0 Lbd;Lbd;c:\windows\system32\drivers\lbd.sys --> c:\windows\system32\drivers\Lbd.sys [?]
    S2 WinDefend;Windows Defender;c:\program files\windows defender\MsMpEng.exe [2006-11-3 13592]
    S3 CachemanXPService;CachemanXP;c:\progra~1\cachem~1\CachemanXP.exe [2006-10-4 208384]
    S3 PAC207;Basic Webcam;c:\windows\system32\drivers\PFC027.SYS [2006-11-20 506112]
    S3 PSMounter;Macrium Reflect Image Explorer Service;c:\windows\system32\drivers\psmounter.sys [2008-7-8 31712]
    S3 ReflectService;Macrium Reflect Image Mounting Service;c:\program files\macrium\reflect\ReflectService.exe [2008-8-6 216032]
    S3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2008-12-4 7408]
    S3 TomTomHOMEService;TomTomHOMEService;c:\program files\tomtom home 2\TomTomHOMEService.exe [2009-11-13 92008]

    ============== File Associations ===============

    JSEFile=c:\install\SCRIPTSENTRY.exe "%1" %*
    VBEFile=c:\install\SCRIPTSENTRY.exe "%1" %*
    VBSFile=c:\install\SCRIPTSENTRY.exe "%1" %*

    =============== Created Last 30 ================

    2010-04-13 00:44:54 0 d-----w- c:\program files\TrendMicro
    2010-04-07 00:18:56 12464 ----a-w- c:\windows\system32\avgrsstx.dll

    ==================== Find3M ====================

    2010-04-07 00:19:01 242696 ----a-w- c:\windows\system32\drivers\avgtdix.sys
    2010-04-07 00:16:32 216200 ----a-w- c:\windows\system32\drivers\avgldx86.sys
    2010-03-30 04:46:30 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
    2010-03-30 04:45:52 20824 ----a-w- c:\windows\system32\drivers\mbam.sys
    2010-03-10 06:15:52 420352 ----a-w- c:\windows\system32\vbscript.dll
    2010-03-10 06:15:52 420352 ----a-w- c:\windows\system32\dllcache\vbscript.dll
    2010-02-25 15:54:36 11070976 ------w- c:\windows\system32\dllcache\ieframe.dll
    2010-02-24 13:11:07 455680 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
    2010-02-24 13:11:07 455680 ----a-w- c:\windows\system32\dllcache\mrxsmb.sys
    2010-02-24 09:54:25 173056 ------w- c:\windows\system32\dllcache\ie4uinit.exe
    2010-02-17 13:10:28 2189952 ----a-w- c:\windows\system32\ntoskrnl.exe
    2010-02-17 13:10:28 2189952 ----a-w- c:\windows\system32\dllcache\ntoskrnl.exe
    2010-02-16 14:08:49 2146304 ----a-w- c:\windows\system32\dllcache\ntkrnlmp.exe
    2010-02-16 13:25:04 2066816 ----a-w- c:\windows\system32\ntkrnlpa.exe
    2010-02-16 13:25:04 2066816 ----a-w- c:\windows\system32\dllcache\ntkrnlpa.exe
    2010-02-16 13:25:04 2024448 ----a-w- c:\windows\system32\dllcache\ntkrpamp.exe
    2010-02-12 04:33:11 100864 ----a-w- c:\windows\system32\dllcache\6to4svc.dll
    2010-02-12 04:33:11 100864 ----a-w- c:\windows\system32\6to4svc.dll
    2010-02-11 12:02:15 226880 ----a-w- c:\windows\system32\dllcache\tcpip6.sys
    2004-08-10 21:30:42 266 -csh--w- c:\program files\desktop.ini
    2004-08-10 21:30:42 11079 -c-h--w- c:\program files\folder.htt
    2010-01-16 18:55:32 16384 --sha-w- c:\windows\system32\config\systemprofile\cookies\index.dat
    2010-01-12 03:27:56 16384 --sha-w- c:\windows\system32\config\systemprofile\ietldcache\index.dat
    2010-01-16 18:55:32 32768 --sha-w- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\index.dat
    2008-06-15 19:05:54 32768 --sha-w- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008061520080616\index.dat
    2010-01-16 18:55:32 32768 --sha-w- c:\windows\system32\config\systemprofile\local settings\temporary internet files\content.ie5\index.dat

    ============= FINISH: 12:06:42.75 ===============
     
    Last edited: 2010/04/17
  2. 2010/04/17
    wildfire

    wildfire Getting Old

    Joined:
    2008/04/21
    Messages:
    4,649
    Likes Received:
    124
    Bronie, Crunchie et all...

    In case you miss it this is a followup from this thread
     

  3. to hide this advert.

  4. 2010/04/17
    Bigalx58

    Bigalx58 Well-Known Member Thread Starter

    Joined:
    2006/05/29
    Messages:
    205
    Likes Received:
    1
    Sorry, I don't know why this post appears twice. I would like to keep this one. Thanks.
     
  5. 2010/04/18
    crunchie

    crunchie Inactive

    Joined:
    2010/01/12
    Messages:
    982
    Likes Received:
    5
    Bigalx58. Please post the ATTACH part of the scan so we can take a look.
     
  6. 2010/04/18
    Bigalx58

    Bigalx58 Well-Known Member Thread Starter

    Joined:
    2006/05/29
    Messages:
    205
    Likes Received:
    1
    I'm sorry, but what I posted is what I found after the scan. I don't know where the Attach part is. It looks like I did something wrong. What can I do to get the Attach part?
    Thanks.
     
  7. 2010/04/18
    Bigalx58

    Bigalx58 Well-Known Member Thread Starter

    Joined:
    2006/05/29
    Messages:
    205
    Likes Received:
    1
    OK I got it. I ran the scan again. I'm having a hard time opening the desktop so it could be some time before I can post it. Do I need to zip it? If so , how can I do that and will I be able to do it with the state that this desktop is in?
    PS. I've posted it....hope that's OK.
     
    Last edited: 2010/04/18
  8. 2010/04/18
    Bigalx58

    Bigalx58 Well-Known Member Thread Starter

    Joined:
    2006/05/29
    Messages:
    205
    Likes Received:
    1
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_10-03-17.01)

    Microsoft Windows XP Home Edition
    Boot Device: \Device\HarddiskVolume1
    Install Date: 12/6/2005 12:25:23 PM
    System Uptime: 4/18/2010 10:34:46 AM (0 hours ago)

    Motherboard: MICRO-STAR INTERNATIONAL CO., LTD | | MS-7005
    Processor: Intel(R) Celeron(R) CPU 2.40GHz | Socket 478 | 2404/100mhz

    ==== Disk Partitions =========================

    A: is Removable
    C: is FIXED (NTFS) - 37 GiB total, 14.737 GiB free.
    D: is CDROM ()

    ==== Disabled Device Manager Items =============

    ==== System Restore Points ===================

    RP1882: 1/18/2010 9:51:00 AM - Avg8 Update
    RP1883: 1/19/2010 12:05:07 PM - System Checkpoint
    RP1884: 1/20/2010 12:09:27 PM - System Checkpoint
    RP1885: 1/21/2010 1:39:13 PM - System Checkpoint
    RP1886: 1/22/2010 9:32:09 AM - Software Distribution Service 3.0
    RP1887: 1/23/2010 12:34:09 PM - System Checkpoint
    RP1888: 1/24/2010 3:49:52 PM - System Checkpoint
    RP1889: 1/25/2010 6:19:16 PM - System Checkpoint
    RP1890: 1/26/2010 9:27:04 PM - System Checkpoint
    RP1891: 1/27/2010 8:51:33 AM - Avg8 Update
    RP1892: 1/28/2010 12:05:09 PM - System Checkpoint
    RP1893: 1/29/2010 3:00:48 PM - System Checkpoint
    RP1894: 1/30/2010 7:22:37 PM - System Checkpoint
    RP1895: 2/1/2010 11:25:46 AM - System Checkpoint
    RP1896: 2/3/2010 12:13:55 PM - System Checkpoint
    RP1897: 2/4/2010 1:24:47 PM - System Checkpoint
    RP1898: 2/5/2010 3:17:28 PM - System Checkpoint
    RP1899: 2/6/2010 7:18:31 PM - System Checkpoint
    RP1900: 2/8/2010 11:15:26 AM - System Checkpoint
    RP1901: 2/9/2010 5:17:53 PM - System Checkpoint
    RP1902: 2/10/2010 10:18:09 AM - Software Distribution Service 3.0
    RP1903: 2/12/2010 5:19:50 PM - System Checkpoint
    RP1904: 2/13/2010 5:40:45 PM - System Checkpoint
    RP1905: 2/14/2010 6:05:38 PM - System Checkpoint
    RP1906: 2/15/2010 7:16:25 PM - System Checkpoint
    RP1907: 2/17/2010 12:09:15 PM - System Checkpoint
    RP1908: 4/6/2010 7:32:08 PM - Avg8 Update
    RP1909: 4/6/2010 8:16:08 PM - Software Distribution Service 3.0
    RP1910: 4/7/2010 1:13:35 PM - Avg Update
    RP1911: 4/7/2010 1:20:13 PM - Avg Update
    RP1912: 4/8/2010 11:06:56 AM - Removed StudioTax 2009
    RP1913: 4/8/2010 11:07:31 AM - Installed StudioTax 2009
    RP1914: 4/9/2010 11:35:34 AM - System Checkpoint
    RP1915: 4/10/2010 1:14:01 PM - System Checkpoint
    RP1916: 4/11/2010 3:41:12 PM - System Checkpoint
    RP1917: 4/12/2010 3:45:14 PM - Aprilslowpc
    RP1918: 4/12/2010 8:44:53 PM - Installed HiJackThis
    RP1919: 4/13/2010 6:45:12 PM - Revo Uninstaller's restore point - AMUST 1-Defender
    RP1920: 4/13/2010 6:48:55 PM - Revo Uninstaller's restore point - Spybot - Search & Destroy
    RP1921: 4/13/2010 8:07:05 PM - Revo Uninstaller's restore point - Foxit Reader
    RP1922: 4/13/2010 8:09:00 PM - Revo Uninstaller's restore point - Foxit Reader
    RP1923: 4/13/2010 9:08:19 PM - Removed Ask Toolbar.
    RP1924: 4/14/2010 11:00:20 AM - Software Distribution Service 3.0
    RP1925: 4/14/2010 9:28:50 PM - Software Distribution Service 3.0
    RP1926: 4/16/2010 12:20:18 PM - System Checkpoint
    RP1927: 4/17/2010 12:37:21 PM - System Checkpoint
    RP1928: 4/18/2010 9:30:52 AM - Restore Operation

    ==== Installed Programs ======================

    Adobe Atmosphere Player for Acrobat and Adobe Reader
    Adobe Download Manager
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player Plugin
    Adobe Shockwave Player
    ArcSoft Media Card Companion
    ArcSoft Print Creations
    ArcSoft Print Creations - Album Page
    ArcSoft Print Creations - Funhouse
    ArcSoft Print Creations - Greeting Card
    ArcSoft Print Creations - Photo Book
    ArcSoft Print Creations - Photo Calendar
    ArcSoft Print Creations - Scrapbook
    ArcSoft Print Creations - Slimline Card
    Atomic Clock Sync
    AVG Free 9.0
    Basic Webcam
    Belarc Advisor 7.2
    Bridge Master 2000
    CachemanXP 1.12
    CallingID Link Advisor
    Canon Inkjet Printer/Scanner/Fax Extended Survey Program
    Canon MP Navigator EX 2.1
    Canon MX320 series MP Drivers
    Canon Utilities Easy-PhotoPrint EX
    Canon Utilities My Printer
    Canon Utilities Solution Menu
    CCleaner
    Creative System Information
    Creative ZEN
    Critical Update for Windows Media Player 11 (KB959772)
    DeepBurner v1.8.0.224
    DeepBurner v1.9.0.228
    DeepRipper v 1.1
    Double Drive
    Driver Detective
    EasyCleaner
    English Forms And Guides For GriffTax
    Enhanced Windows Backup
    Eraser 5.86
    Fast Duplicate File Finder 1.1.0.1
    Foxit Reader
    getPlus(R)_ocx
    Google Earth
    HiJackThis
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
    Hotfix for Windows Internet Explorer 7 (KB947864)
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 11 (KB939683)
    Hotfix for Windows XP (KB932716-v2)
    Hotfix for Windows XP (KB945060-v3)
    Hotfix for Windows XP (KB952287)
    Hotfix for Windows XP (KB954550-v5)
    Hotfix for Windows XP (KB954708)
    Hotfix for Windows XP (KB961118)
    Hotfix for Windows XP (KB970653-v3)
    Hotfix for Windows XP (KB976098-v2)
    Hotfix for Windows XP (KB979306)
    Index.dat Suite
    Internet Explorer Q903235
    Java(TM) 6 Update 17
    Java(TM) 6 Update 7
    Juniper Networks Host Checker
    Juniper Terminal Services Client
    Junk Mail filter update
    Karaoke Manager SD
    Learn to Play Bridge
    Learn to Play Bridge 2
    Lernout & Hauspie TruVoice American English TTS Engine
    Logitech MouseWare 9.79.1
    Macrium Reflect - Free Edition
    Malwarebytes' Anti-Malware
    Microsoft .NET Framework 2.0 Service Pack 2
    Microsoft .NET Framework 3.0 Service Pack 2
    Microsoft .NET Framework 3.5 SP1
    Microsoft Application Error Reporting
    Microsoft Bootvis
    Microsoft Choice Guard
    Microsoft Compression Client Pack 1.0 for Windows XP
    Microsoft Data Access Components KB870669
    Microsoft Internationalized Domain Names Mitigation APIs
    Microsoft National Language Support Downlevel APIs
    Microsoft Office 2000 SR-1 Professional
    Microsoft SQL Server 2005 Compact Edition [ENU]
    Microsoft User-Mode Driver Framework Feature Pack 1.0
    Microsoft Visual C Runtime
    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    Microsoft Visual C++ 2005 Redistributable
    MSN Music Assistant
    MSVCRT
    MSXML 4.0 SP2 (KB925672)
    MSXML 4.0 SP2 (KB927978)
    MSXML 4.0 SP2 (KB936181)
    MSXML 4.0 SP2 (KB954430)
    MSXML 4.0 SP2 (KB973688)
    Panda ActiveScan
    PC Alert 4
    QuickTime
    Real Alternative 1.43
    Realtek AC'97 Audio
    Recuva
    Revo Uninstaller 1.85
    SanDisk ImageMate Reader/Writer
    Security Update for Windows Internet Explorer 7 (KB928090)
    Security Update for Windows Internet Explorer 7 (KB929969)
    Security Update for Windows Internet Explorer 7 (KB931768)
    Security Update for Windows Internet Explorer 7 (KB933566)
    Security Update for Windows Internet Explorer 7 (KB937143)
    Security Update for Windows Internet Explorer 7 (KB938127)
    Security Update for Windows Internet Explorer 7 (KB939653)
    Security Update for Windows Internet Explorer 7 (KB942615)
    Security Update for Windows Internet Explorer 7 (KB944533)
    Security Update for Windows Internet Explorer 7 (KB950759)
    Security Update for Windows Internet Explorer 7 (KB953838)
    Security Update for Windows Internet Explorer 7 (KB956390)
    Security Update for Windows Internet Explorer 7 (KB958215)
    Security Update for Windows Internet Explorer 7 (KB960714)
    Security Update for Windows Internet Explorer 7 (KB961260)
    Security Update for Windows Internet Explorer 7 (KB963027)
    Security Update for Windows Internet Explorer 7 (KB969897)
    Security Update for Windows Internet Explorer 7 (KB972260)
    Security Update for Windows Internet Explorer 7 (KB974455)
    Security Update for Windows Internet Explorer 8 (KB971961)
    Security Update for Windows Internet Explorer 8 (KB976325)
    Security Update for Windows Internet Explorer 8 (KB978207)
    Security Update for Windows Internet Explorer 8 (KB981332)
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player (KB954155)
    Security Update for Windows Media Player (KB968816)
    Security Update for Windows Media Player (KB973540)
    Security Update for Windows Media Player 10 (KB911565)
    Security Update for Windows Media Player 10 (KB917734)
    Security Update for Windows Media Player 11 (KB936782)
    Security Update for Windows Media Player 11 (KB954154)
    Security Update for Windows Media Player 6.4 (KB925398)
    Security Update for Windows XP (KB913433)
    Security Update for Windows XP (KB923561)
    Security Update for Windows XP (KB923689)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950760)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951376)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952004)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953839)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954459)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956572)
    Security Update for Windows XP (KB956744)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB956844)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB958690)
    Security Update for Windows XP (KB958869)
    Security Update for Windows XP (KB959426)
    Security Update for Windows XP (KB960225)
    Security Update for Windows XP (KB960715)
    Security Update for Windows XP (KB960803)
    Security Update for Windows XP (KB960859)
    Security Update for Windows XP (KB961371)
    Security Update for Windows XP (KB961373)
    Security Update for Windows XP (KB961501)
    Security Update for Windows XP (KB968537)
    Security Update for Windows XP (KB969059)
    Security Update for Windows XP (KB969898)
    Security Update for Windows XP (KB969947)
    Security Update for Windows XP (KB970238)
    Security Update for Windows XP (KB970430)
    Security Update for Windows XP (KB971468)
    Security Update for Windows XP (KB971486)
    Security Update for Windows XP (KB971557)
    Security Update for Windows XP (KB971633)
    Security Update for Windows XP (KB971657)
    Security Update for Windows XP (KB971961)
    Security Update for Windows XP (KB972270)
    Security Update for Windows XP (KB973346)
    Security Update for Windows XP (KB973354)
    Security Update for Windows XP (KB973507)
    Security Update for Windows XP (KB973525)
    Security Update for Windows XP (KB973869)
    Security Update for Windows XP (KB973904)
    Security Update for Windows XP (KB974112)
    Security Update for Windows XP (KB974318)
    Security Update for Windows XP (KB974392)
    Security Update for Windows XP (KB974571)
    Security Update for Windows XP (KB975025)
    Security Update for Windows XP (KB975467)
    Security Update for Windows XP (KB975560)
    Security Update for Windows XP (KB975561)
    Security Update for Windows XP (KB975713)
    Security Update for Windows XP (KB977165)
    Security Update for Windows XP (KB977816)
    Security Update for Windows XP (KB977914)
    Security Update for Windows XP (KB978037)
    Security Update for Windows XP (KB978251)
    Security Update for Windows XP (KB978262)
    Security Update for Windows XP (KB978338)
    Security Update for Windows XP (KB978601)
    Security Update for Windows XP (KB978706)
    Security Update for Windows XP (KB979309)
    Security Update for Windows XP (KB979683)
    Security Update for Windows XP (KB980232)
    Segoe UI
    SiS 650_651_M650_M652_740
    SiS 900 PCI Fast Ethernet Adapter Driver
    SiSAGP driver
    Skype™ 4.1
    SnoopFree Privacy Shield
    SpywareBlaster 4.2
    StartupMonitor
    StudioTax 2007
    StudioTax 2008
    StudioTax 2009
    SUPERAntiSpyware Free Edition
    TomTom HOME 2.7.3.1894
    TomTom HOME Visual Studio Merge Modules
    Trivia Munchers Deluxe
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
    Update for Windows Internet Explorer 7 (KB976749)
    Update for Windows Internet Explorer 8 (KB975364)
    Update for Windows Internet Explorer 8 (KB976662)
    Update for Windows Internet Explorer 8 (KB980182)
    Update for Windows XP (KB951072-v2)
    Update for Windows XP (KB951978)
    Update for Windows XP (KB955759)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB961503)
    Update for Windows XP (KB967715)
    Update for Windows XP (KB968389)
    Update for Windows XP (KB971737)
    Update for Windows XP (KB973687)
    Update for Windows XP (KB973815)
    USB Storage Driver
    UT2000
    VC 9.0 Runtime
    Virtools 3D Life Player
    Visual C++ 2008 x86 Runtime - (v9.0.30729)
    Visual C++ 2008 x86 Runtime - v9.0.30729.01
    WebCam Suite 2.0
    WebFldrs XP
    Windows Backup Utility
    Windows Defender
    Windows Defender Signatures
    Windows Feature Pack for Storage (32-bit) - IMAPI update for Blu-Ray
    Windows Genuine Advantage Notifications (KB905474)
    Windows Genuine Advantage v1.3.0254.0
    Windows Genuine Advantage Validation Tool (KB892130)
    Windows Imaging Component
    Windows Internet Explorer 7
    Windows Internet Explorer 8
    Windows Live Call
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live Mail
    Windows Live Messenger
    Windows Live Photo Gallery
    Windows Live Sign-in Assistant
    Windows Live Sync
    Windows Live Upload Tool
    Windows Media Format 11 runtime
    Windows Media Player 11
    Windows XP Service Pack 3
    WOT for Internet Explorer
    ZENcast Organizer
    ZoneAlarm
    ZoneAlarm Spy Blocker

    ==== Event Viewer Messages From Past Week ========

    4/17/2010 1:37:00 PM, error: Print [6161] - The document Microsoft Word - Happy Tappers Agenda.doc owned by AC failed to print on printer Canon MX320 series Printer (Copy 1). Data type: NT EMF 1.008. Size of the spool file in bytes: 65536. Number of bytes printed: 15712. Total number of pages in the document: 2. Number of pages printed: 0. Client machine: \\ALEX. Win32 error code returned by the print processor: 0 (0x0).
    4/13/2010 4:55:12 PM, error: Service Control Manager [7023] - The Application Management service terminated with the following error: The specified module could not be found.
    4/13/2010 4:02:18 PM, error: MRxSmb [8003] - The master browser has received a server announcement from the computer USER-F30927C70D that believes that it is the master browser for the domain on transport NetBT_Tcpip_{8F52DA1E-06A. The master browser is stopping or an election is being forced.
    4/13/2010 1:40:35 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Lbd

    ==== End Of File ===========================
     
  9. 2010/04/18
    crunchie

    crunchie Inactive

    Joined:
    2010/01/12
    Messages:
    982
    Likes Received:
    5
    Ok. Can you update MBA-M (MalwareBytesAnti-Malware) and run a scan. Post the log when finished please.

    See if you are able to do an on-line scan;

    Please use the Internet Explorer browser (or FireFox with IETab), and do an online scan with [color= "blue"]Kaspersky Online Scanner[/color]

    Note: If you have used this particular scanner before, you MAY HAVE TO UNINSTALL the program through Add/Remove Programs before downloading the new ActiveX component

    Click Yes, when prompted to install its ActiveX component.
    (Note.. for Internet [color= "#3333FF"]Explorer 7[/color] users: If at any time you have trouble with the "Accept" button of the license, click on the "Zoom" tool located at the bottom right of the IE window and set the zoom to 75 %. Once the license has been accepted, reset to 100%.)
    The program launches and downloads the latest definition files.
    • Once the files are downloaded click on Next
    • Click on Scan Settings and configure as follows:
      • Scan using the following Anti-Virus database:
        • [color= "#6666CC"]Extended[/color]
      • Scan Options:
        • [color= "#6666CC"]Scan Archives[/color]
        • [color= "#6666CC"]Scan Mail Bases[/color]
    • Click OK and, under select a target to scan, select My Computer
    When the scan is done, in the [color= "Navy"]Scan is completed [/color]window (below), any infection is displayed.
    There is no option to clean/disinfect, however, we need to analyze the information on the report.

    To obtain the report:
    Click on: Save Report As (above - red blinking arrow)
    Next, in the [color= "Navy"]Save as [/color]prompt, [color= "navy"]Save in[/color] area, select: Desktop
    In the [color= "navy"]File name[/color] area, use KScan, or something similar
    In [color= "navy"]Save as type[/color], click the drop arrow and select: Text file [*.txt]
    Then, click: Save
    Please post the [color= "Navy"]Kaspersky Online Scanner Report [/color]in your reply.
     
  10. 2010/04/18
    Bigalx58

    Bigalx58 Well-Known Member Thread Starter

    Joined:
    2006/05/29
    Messages:
    205
    Likes Received:
    1
    Malwarebytes' Anti-Malware 1.45
    www.malwarebytes.org

    Database version: 4005

    Windows 5.1.2600 Service Pack 3
    Internet Explorer 8.0.6001.18702

    4/18/2010 9:41:41 PM
    mbam-log-2010-04-18 (21-41-41).txt

    Scan type: Full scan (C:\|)
    Objects scanned: 187972
    Time elapsed: 1 hour(s), 7 minute(s), 0 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 0

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    (No malicious items detected)

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    (No malicious items detected)
     
  11. 2010/04/18
    Bigalx58

    Bigalx58 Well-Known Member Thread Starter

    Joined:
    2006/05/29
    Messages:
    205
    Likes Received:
    1
    Will run Kaspersky later...it's getting too late.
     
  12. 2010/04/18
    crunchie

    crunchie Inactive

    Joined:
    2010/01/12
    Messages:
    982
    Likes Received:
    5
    No worries.
     
  13. 2010/04/19
    Bigalx58

    Bigalx58 Well-Known Member Thread Starter

    Joined:
    2006/05/29
    Messages:
    205
    Likes Received:
    1
    I've started another scan,,,but I couldn't find the things you were referring to, like, Next, Extended, etc but it seems that it will scan what you need...perhps this scan is newer?
     
  14. 2010/04/19
    crunchie

    crunchie Inactive

    Joined:
    2010/01/12
    Messages:
    982
    Likes Received:
    5
    Yeah, I will have to update my canned :).
     
  15. 2010/04/21
    Bigalx58

    Bigalx58 Well-Known Member Thread Starter

    Joined:
    2006/05/29
    Messages:
    205
    Likes Received:
    1
    G'day mate. I was finally able to complete the Kaspersky scan and the report was blank...no threats. I also scanned the 'critical areas', by mistake...it too, showed no threats found. I hope I did things properly. The computer is still continuing to run with problems.
     
  16. 2010/04/21
    crunchie

    crunchie Inactive

    Joined:
    2010/01/12
    Messages:
    982
    Likes Received:
    5
    Can you try something for a bit? You have two anti-virus programs running. I want you to uninstall one of them as you should only ever run one AV at any given time.
    Also want you to disable ZoneAlarm Firewall and enable the Windows firewall instead.
    See how the pc is now.

    Do you know what temperature the cpu is running at? If not, you can find out by downloading either Coretemp, HWmonitor or Everest free which should all give a reading.
     
  17. 2010/04/21
    Bigalx58

    Bigalx58 Well-Known Member Thread Starter

    Joined:
    2006/05/29
    Messages:
    205
    Likes Received:
    1
    The cpu temps are: THRM: 30 c; ACPI: 30-32c; TMPIN1:30-32c; TMPIN0:30-34c; Assembly: 32c. I have disabled ZA. I thought that I was only running AVG...what's the other anti virus that I'm running?
    PS After further running, the cpu temps have gone up about 2-3 degree across the board. For what it's worth, the computer has indicated that I must defrag again...the last time I ran the defragger was 2 days ago. Is this normal?
     
    Last edited: 2010/04/21
  18. 2010/04/21
    crunchie

    crunchie Inactive

    Joined:
    2010/01/12
    Messages:
    982
    Likes Received:
    5
    You are currently running
    AVG Anti-Virus Free
    ZoneAlarm Security Suite Antivirus

    Not sure what is happening with the defragmenter. Perhaps it never scanned correctly the first time?

    Temps seem fine, although load temps are more indicative of any problems. I don't believe though that, looking at those idle temps, there is a problem with temps.
    Has there been any changes since disabling the firewall/AV?
     
  19. 2010/04/21
    Bigalx58

    Bigalx58 Well-Known Member Thread Starter

    Joined:
    2006/05/29
    Messages:
    205
    Likes Received:
    1
    Since I've disabled ZA,which is the Free Ed and I didn't think that the antivirus worked in the free edition. The computer seems to be running smoother :) I'll give it a few more days, but it looks promising. Perhaps I should be getting rid of ZA? From what I have read, Windows Firewall isn't regarded to be that good. What would you suggest? I'm using PC Tools Firewall Plus ( Free) in my laptop right now and things seem to be fine.
     
  20. 2010/04/21
    crunchie

    crunchie Inactive

    Joined:
    2010/01/12
    Messages:
    982
    Likes Received:
    5
    I am a big fan of Comodo's firewall/AV setup. Used it for over a year with no problem.
    ZA has been a cause of a few problems such as yours. Hopefully it (the pc) is ok now.
     
  21. 2010/04/22
    Bigalx58

    Bigalx58 Well-Known Member Thread Starter

    Joined:
    2006/05/29
    Messages:
    205
    Likes Received:
    1
    It would appear that ZA was the culprit!! My computer is working OK now!:)Thanks so much for your help! All the best!
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.