1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Solved computer is very slow, and locking up on most apps.

Discussion in 'Malware and Virus Removal Archive' started by mva5493, 2007/11/12.

  1. 2007/11/12
    mva5493

    mva5493 Well-Known Member Thread Starter

    Joined:
    2007/01/29
    Messages:
    287
    Likes Received:
    0
    [Resolved] computer is very slow, and locking up on most apps.

    I had a few problems with this computer in another threadhttp://www.windowsbbs.com/showthread.php?t=66797&highlight=mva5493
    The only thing not resolved at that time was a memory upgrade, well I upgraded the memory from 256mb to 512 mb. And that is where the problems started, it seemed to work fine at first. now nothing is working correctly, most of the apps on the computer from solitare to wordperfect either load really slow or lock up the computer. I am wondering if the computer is infected again. I removed the memory to see if that fixed the problems and it did not. One of the other problems is when connecting to the internet the modem will not disconnect and also leaves static in the phone line as long the phone cord is connected to the port of the back of the computer. I have removed aol from the computer it looks like norton is missing a few files so will probably reinstall that as well. The computer is running windows xp sp2, norton internet security, aol 9.0 (will be reinstalling that)

    I have also tried doing an online scan and I have two problems, one is that the computer disconnects from the internet at random, the other is that if it does stay connected for a few minutes it locks up before a scan can be completed.
     
    Last edited: 2007/11/12
  2. 2007/11/12
    mva5493

    mva5493 Well-Known Member Thread Starter

    Joined:
    2007/01/29
    Messages:
    287
    Likes Received:
    0
    I did a scan with dss here are the results:
    Deckard's System Scanner v20071014.68
    Run by Ellen on 2007-11-12 18:56:23
    Computer is in Normal Mode.
    --------------------------------------------------------------------------------

    -- System Restore --------------------------------------------------------------

    Successfully created a Deckard's System Scanner Restore Point.


    -- Last 5 Restore Point(s) --
    84: 2007-11-12 23:56:37 UTC - RP734 - Deckard's System Scanner Restore Point
    83: 2007-11-12 01:03:35 UTC - RP733 - System Checkpoint
    82: 2007-11-10 23:38:50 UTC - RP732 - System Checkpoint
    81: 2007-11-09 22:38:56 UTC - RP731 - System Checkpoint
    80: 2007-11-08 21:38:54 UTC - RP730 - System Checkpoint


    -- First Restore Point --
    1: 2007-08-15 06:05:55 UTC - RP651 - System Checkpoint


    Performed disk cleanup.

    Total Physical Memory: 510 MiB (512 MiB recommended).


    -- HijackThis (run as Ellen.exe) -----------------------------------------------

    Unable to find log (file not found); running clone.
    -- HijackThis Clone ------------------------------------------------------------


    Emulating logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 2007-11-12 18:57:53
    Platform: Windows XP Service Pack 2 (5.01.2600)
    MSIE: Internet Explorer (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\SYSTEM32\smss.exe
    C:\WINDOWS\SYSTEM32\winlogon.exe
    C:\WINDOWS\SYSTEM32\services.exe
    C:\WINDOWS\SYSTEM32\lsass.exe
    C:\WINDOWS\SYSTEM32\svchost.exe
    C:\WINDOWS\SYSTEM32\svchost.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
    C:\WINDOWS\SYSTEM32\spoolsv.exe
    C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\WINDOWS\SYSTEM32\svchost.exe
    C:\WINDOWS\SYSTEM32\hkcmd.exe
    C:\Program Files\Dell\Media Experience\PCMService.exe
    C:\WINDOWS\SYSTEM32\dla\tfswctrl.exe
    C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\Program Files\Windows Media Player\wmplayer.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\WINDOWS\SYSTEM32\FREECELL.EXE
    E:\dss.exe
    C:\Program Files\Hijackthis\Ellen.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.com/spbasic.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = iexplore
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\SYSTEM32\dla\tfswshx.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe "
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe "
    O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe "
    O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton AntiVirus\osCheck.exe "
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe "
    O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
    O4 - HKUS\S-1-5-18\..\Run: [Symantec NetDriver Warning] C:\PROGRA~1\SYMNET~1\SNDWarn.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [Symantec NetDriver Warning] C:\PROGRA~1\SYMNET~1\SNDWarn.exe (User 'Default user')
    O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
    O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
    O9 - Extra button: (no name) - CmdMapping - (file missing)
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
    O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {1EF9F042-C2EB-4293-8213-474CAEEF531D} (TmHcmsX Control) - http://www.trendsecure.com/framework/control/en-US/activex/TmHcmsX.CAB
    O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} () - http://download.mcafee.com/molbin/shared/mcinsctl/en-us/4,0,0,84/mcinsctl.cab
    O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) - http://catalog.update.microsoft.com.../en/x86/MuCatalogWebControl.cab?1187796850296
    O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1130089796140
    O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/securityadvisor/virusinfo/webscan.cab
    O16 - DPF: {9522B3FB-7A2B-4646-8AF6-36E7F593073C} () - http://a19.g.akamai.net/7/19/7125/4058/ftp.coupons.com/r3302/Coupons.cab
    O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} () - http://download.mcafee.com/molbin/shared/mcgdmgr/en-us/1,0,0,21/mcgdmgr.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    O18 - Protocol: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll
    O18 - Protocol: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll
    O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
    O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\isPwdSvc.exe
    O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\SYSTEM32\DRIVERS\KodakCCS.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_2.EXE
    O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe


    --
    End of file - 7179 bytes

    -- File Associations -----------------------------------------------------------

    All associations okay.


    -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

    R1 omci (OMCI WDM Device Driver) - c:\windows\system32\drivers\omci.sys <Not Verified; Dell Computer Corporation; OMCI Driver>

    S3 DCamUSBSQTECH (Dual-Mode DSC(2770)) - c:\windows\system32\drivers\sqcaptur.sys <Not Verified; Service & Quality Technology.; SQ913>
    S3 DSproct - c:\program files\dellsupport\gtaction\triggers\dsproct.sys <Not Verified; Gteko Ltd.; processt>
    S3 iAimTV2 - c:\windows\system32\drivers\watv03nt.sys (file missing)
    S3 SQTECH9080 (MegaCam(PID_9080_00)) - c:\windows\system32\drivers\capt9080.sys <Not Verified; Service & Quality Technology.; SQ908>
    S3 WUSB54GPV4SRV (Linksys Home Wireless-G USB Adaptor Driver) - c:\windows\system32\drivers\rt2500usb.sys <Not Verified; Ralink Technology Inc.; Ralink 802.11g Wireless USB Adapters>


    -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

    R2 aawservice (Ad-Aware 2007 Service) - "c:\program files\lavasoft\ad-aware 2007\aawservice.exe" <Not Verified; Lavasoft AB; Ad-Aware 2007 Service>


    -- Device Manager: Disabled ----------------------------------------------------

    Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
    Description: Broadcom 440x 10/100 Integrated Controller
    Device ID: PCI\VEN_14E4&DEV_4401&SUBSYS_81271028&REV_01\4&3B1CAF2B&0&48F0
    Manufacturer: Broadcom
    Name: Broadcom 440x 10/100 Integrated Controller
    PNP Device ID: PCI\VEN_14E4&DEV_4401&SUBSYS_81271028&REV_01\4&3B1CAF2B&0&48F0
    Service: bcm4sbxp


    -- Scheduled Tasks -------------------------------------------------------------

    2007-11-06 11:06:18 556 --a------ C:\WINDOWS\Tasks\Norton AntiVirus - Run Full System Scan - Ellen.job


    -- Files created between 2007-10-12 and 2007-11-12 -----------------------------

    2007-11-12 12:11:30 0 d-------- C:\Documents and Settings\Ellen\.housecall6.6
    2007-10-12 07:02:31 0 d-------- C:\Documents and Settings\Ellen\Shared
    2007-10-12 07:02:30 0 d-------- C:\Documents and Settings\Ellen\Incomplete


    -- Find3M Report ---------------------------------------------------------------

    2007-11-12 13:22:11 0 d-------- C:\Documents and Settings\Ellen\Application Data\LimeWire
    2007-11-07 15:07:30 0 d-------- C:\Program Files\Common Files\AOL
    2007-11-05 14:33:27 0 d-a------ C:\Program Files\Common Files
    2007-11-05 14:32:51 0 d-------- C:\Documents and Settings\Ellen\Application Data\AOL
    2007-11-05 14:28:46 0 d-------- C:\Program Files\AOL Deskbar
    2007-11-05 14:28:31 0 d-------- C:\Program Files\AOL Toolbar
    2007-10-26 13:00:02 0 d-------- C:\Program Files\Java
    2007-10-26 12:58:33 0 d--h----- C:\Program Files\InstallShield Installation Information
    2007-10-12 07:05:14 0 d-------- C:\Program Files\Common Files\Symantec Shared
    2007-10-11 15:32:44 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard
    2007-10-11 15:32:43 0 d-------- C:\Program Files\eSnips
    2007-10-11 11:06:16 0 d-------- C:\Documents and Settings\Ellen\Application Data\AdobeUM
    2007-09-20 02:24:11 0 d-------- C:\Program Files\Common Files\Java


    -- Registry Dump ---------------------------------------------------------------

    *Note* empty entries & legit default entries are not shown


    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "IgfxTray "= "C:\WINDOWS\system32\igfxtray.exe" [10/19/2005 07:59 AM]
    "HotKeysCmds "= "C:\WINDOWS\system32\hkcmd.exe" [10/19/2005 07:59 AM]
    "PCMService "= "C:\Program Files\Dell\Media Experience\PCMService.exe" [04/11/2004 08:15 PM]
    "dla "= "C:\WINDOWS\system32\dla\tfswctrl.exe" [03/15/2004 01:04 AM]
    "UpdateManager "= "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" [08/19/2003 01:01 AM]
    "HP Component Manager "= "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" [12/22/2003 08:38 AM]
    "AOLDialer "= "C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" []
    "ccApp "= "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [01/10/2007 12:59 AM]
    "osCheck "= "C:\Program Files\Norton AntiVirus\osCheck.exe" [01/14/2007 02:11 AM]
    "TkBellExe "= "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [12/19/2004 02:34 PM]
    "QuickTime Task "= "C:\Program Files\QuickTime\qttask.exe" [10/22/2005 06:52 PM]
    "SunJavaUpdateSched "= "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" [07/12/2007 03:00 AM]

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "Yahoo! Pager "= "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" [05/02/2006 02:51 PM]

    [HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
    "Symantec NetDriver Warning "=C:\PROGRA~1\SYMNET~1\SNDWarn.exe

    C:\Documents and Settings\Ellen\Start Menu\Programs\Startup\
    DESKTOP.INI [9/3/2002 9:00:00 AM]

    C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
    DESKTOP.INI [9/3/2002 9:00:00 AM]
    Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe [10/8/2004 12:47:49 AM]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
    @= "Service "

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]
    @= "Service "

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
    @= "Volume shadow copy "


    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{95d87c0b-215a-11d9-8fae-806d6172696f}]
    play\Command- "C:\Program Files\Windows Media Player\wmplayer.exe" /prefetch:3 /device:AudioCD "%L "

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bf72b8a4-5193-11dc-914f-00038a000015}]
    AutoRun\command- F:\setupSNK.exe




    -- End of Deckard's System Scanner: finished at 2007-11-12 19:00:02 ------------
     

  3. to hide this advert.

  4. 2007/11/12
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    Hi mva5493 :)

    Logs appear clean, but just added??

    2007-11-12 13:22:11 0 d-------- C:\Documents and Settings\Ellen\Application Data\LimeWire

    ugghhh!! :p


    I think you'll find the problem is the modem. First, check for updated drivers, then whether there are updates available or not, uninstall it via Device manager then shutdown. Physically remove the modem and then reseat it. It should be detected and re-installed upon startup. Point it to the new drivers upon installation if there are any.

    If no help, try another modem.

    Make sure the modem isn't causing problems with performance otherwise ....... start the computer with the modem removed and see how things go.
     
  5. 2007/11/12
    mva5493

    mva5493 Well-Known Member Thread Starter

    Joined:
    2007/01/29
    Messages:
    287
    Likes Received:
    0
    I did remove the modem and reseat it in another slot. I did manage to get to the internet with the intention of downloading drivers, and aol. I removed it because it was giving me errors that said it needed to be reinstalled. On the enty about limewire, (not my computer, my sister's she was on the internet and got a popup asking to install limewire. She told it to install, I told her to delete when I saw it on the desktop. That file I accessed today when I saw the hjt log, thought I had deleted it, guess not. :eek: Will remove it and try a different running without the modem and see what happens (tomorrow). will report back here whether it works or not.
     
  6. 2007/11/24
    mva5493

    mva5493 Well-Known Member Thread Starter

    Joined:
    2007/01/29
    Messages:
    287
    Likes Received:
    0
    Sorry I haven't posted here with updates..but with the holidays, haven't had much time to work on the computer. I tried uninstalling the modem, then reinstalling (new drivers) and not only reseating it but also, I tried reseating it in a separate pci slot. No change, so I changed to modem. Now it is connecting to the internet, and staying connected without any problems. I also removed the traces of limewire. She was downloading it around the time I posted that scan. I canceled the download, but didn't clean up all the files at that time. It has been removed now. so unless it continues to have problems, I am done wiht the machine. Thanks for the help once again.

    Valerie
     
  7. 2007/11/24
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    Glad to hear you got it sorted. Thanks for the update Valerie. :)
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.