Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help Forums Windows Startup Programs Database Virus, Spyware, and Malware Removal Guides Computer Tutorials Uninstall Database File Database Computer Glossary Computer Resources
 

Welcome Guest ( Log In | Click here to Register a free account now! )



Register a free account to unlock additional features at BleepingComputer.com
Welcome to Bleeping Computer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Want a New HP LaserJet MFP? Trade in your old printer and receive $1,000 in savings!
Trade in your old printer and receive up to $1,000 in saving on a new HP LaserJet Multifunction Printer. Click here for savings!
MalwareBytes Anti-Malware Download

> Forum Guidelines

Read the following topic before creating a new topic in this forum. It contains instructions on the what we would like you to post, which will enable us to help you more quickly.

Preparation Guide For Use Before Using Malware Removal Tools and Requesting Help


DO NOT RUN ComboFix unless requested to.


Only members of the Malware Response Team or Moderators are allowed to help people with logs. Anyone else should refrain from posting to another user's log.


When posting a log please put the type of infection you have in the topic title. IE: Winfixer, Virtumonde, WinTools, WebSearch, Home Search Assistant, etc.


Do not bump your topic. We try to resolve logs on a first come/first served basis. By bumping your log you will be pushed back in line due to the new date of your bump.

6 Pages V  « < 3 4 5 6 >  
Closed TopicStart new topic
> i think i have a hacker or virus!! please help
elise025
post Jan 22 2010, 04:30 AM
Post #61


Bleepin' Blonde
******

Group: Moderator
Posts: 16,070
Joined: 5-October 07
From: Home
Member No.: 160,991



Make sure Combofix is named "combofix.exe" (if you downloaded it when there was still an old copy, it might have been automatically renamed).


--------------------
Regards,
Elise
"The mind is its own place, and in itself can make a heaven of hell, a hell of heaven."
John Milton

Become a BleepingComputer fan on Facebook
Follow us on Twitter
Go to the top of the page
 
+Quote Post
kshoney44
post Jan 22 2010, 01:30 PM
Post #62


Member
**

Group: Members
Posts: 43
Joined: 28-December 09
Member No.: 425,342



ComboFix 10-01-21.08 - Owner 01/22/2010 13:10:30.4.1 - x86
Running from: c:\documents and settings\Owner\Desktop\ComboFix.exe
AV: Microsoft Security Essentials *On-access scanning disabled* (Updated) {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
.

((((((((((((((((((((((((( Files Created from 2009-12-22 to 2010-01-22 )))))))))))))))))))))))))))))))
.

2010-01-19 13:43 . 2010-01-19 13:43 -------- d-----w- C:\_OTL
2010-01-18 21:27 . 2010-01-18 21:27 -------- d-----w- c:\program files\ESET
2010-01-15 00:53 . 2010-01-15 00:57 -------- dc-h--w- c:\windows\ie8
2010-01-14 22:48 . 2010-01-14 22:49 -------- d-----w- c:\program files\Microsoft Security Essentials
2010-01-14 20:04 . 2010-01-07 21:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-14 20:04 . 2010-01-07 21:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-14 20:04 . 2010-01-14 20:05 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-12 17:03 . 2010-01-12 18:32 -------- d-----w- C:\ComboFix2
2010-01-12 04:26 . 2010-01-12 04:26 -------- d-----w- C:\677a6e0afe04d46de88eaefdba101e89
2010-01-11 19:22 . 2010-01-11 19:21 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-01-04 15:40 . 2010-01-04 15:40 -------- d-----w- c:\documents and settings\Owner\Local Settings\Application Data\PCHealth
2010-01-04 09:01 . 2010-01-04 09:01 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\PCHealth
2010-01-03 04:18 . 2010-01-03 04:18 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\Identities
2010-01-03 03:33 . 2010-01-03 03:33 52224 ----a-w- c:\documents and settings\Administrator\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2010-01-03 03:33 . 2010-01-03 03:33 117760 ----a-w- c:\documents and settings\Administrator\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2010-01-03 03:33 . 2010-01-03 03:33 -------- d-----w- c:\documents and settings\Administrator\Application Data\SUPERAntiSpyware.com
2010-01-01 06:53 . 2010-01-01 06:53 -------- d-s---w- c:\documents and settings\Owner\%USERPROFILE%
2009-12-29 23:31 . 2009-12-29 23:31 -------- d-sh--w- c:\documents and settings\Administrator\PrivacIE
2009-12-29 23:19 . 2009-12-29 23:19 13104 ----a-w- c:\documents and settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-12-29 23:18 . 2009-12-29 23:18 -------- d-sh--w- c:\documents and settings\Administrator\IETldCache
2009-12-29 13:20 . 2009-08-07 00:23 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-12-29 13:20 . 2009-08-07 00:23 215920 ----a-w- c:\windows\system32\muweb.dll
2009-12-29 09:43 . 2009-12-29 09:44 -------- d-----w- C:\8d1f879bc5941325460c55907fa7
2009-12-29 09:34 . 2010-01-14 16:12 181120 ------w- c:\windows\system32\MpSigStub.exe
2009-12-29 05:31 . 2009-12-29 05:31 -------- d-sh--w- c:\documents and settings\LocalService\IETldCache
2009-12-29 05:06 . 2009-12-29 05:06 25992 ----a-w- c:\windows\system32\pgdfgsvc.exe
2009-12-29 04:55 . 2008-04-13 19:36 8832 -c--a-w- c:\windows\system32\dllcache\wmiacpi.sys
2009-12-29 04:54 . 2008-04-14 01:12 53760 -c--a-w- c:\windows\system32\dllcache\vfwwdm32.dll
2009-12-29 04:53 . 2008-04-13 19:40 149376 -c--a-w- c:\windows\system32\dllcache\tffsport.sys
2009-12-29 04:52 . 2001-08-17 17:51 58368 -c--a-w- c:\windows\system32\dllcache\smiminib.sys
2009-12-29 04:51 . 2001-07-21 19:29 18400 -c--a-w- c:\windows\system32\dllcache\sgsmld.sys
2009-12-29 04:50 . 2004-08-04 06:31 20992 -c--a-w- c:\windows\system32\dllcache\rtl8139.sys
2009-12-29 04:50 . 2001-08-17 17:12 19017 -c--a-w- c:\windows\system32\dllcache\rtl8029.sys
2009-12-29 04:50 . 2001-08-17 17:19 30720 -c--a-w- c:\windows\system32\dllcache\rthwcls.sys
2009-12-29 04:50 . 2002-09-03 16:56 132608 -c--a-w- c:\windows\system32\dllcache\rsvp.exe
2009-12-29 04:50 . 2001-08-18 03:36 9216 -c--a-w- c:\windows\system32\dllcache\rsmgrstr.dll
2009-12-29 04:50 . 2001-08-17 17:19 3840 -c--a-w- c:\windows\system32\dllcache\rpfun.sys
2009-12-29 04:50 . 2008-04-13 19:40 79104 -c--a-w- c:\windows\system32\dllcache\rocket.sys
2009-12-29 04:50 . 2001-08-17 17:12 37563 -c--a-w- c:\windows\system32\dllcache\rlnet5.sys
2009-12-29 04:50 . 2002-09-03 16:56 9728 -c--a-w- c:\windows\system32\dllcache\reset.exe
2009-12-29 04:50 . 2001-08-18 03:36 86097 -c--a-w- c:\windows\system32\dllcache\reslog32.dll
2009-12-29 04:50 . 2001-08-17 18:51 19584 -c--a-w- c:\windows\system32\dllcache\rasirda.sys
2009-12-29 04:50 . 2001-08-17 18:28 714762 -c--a-w- c:\windows\system32\dllcache\r2mdmkxx.sys
2009-12-29 04:50 . 2001-08-17 18:28 899146 -c--a-w- c:\windows\system32\dllcache\r2mdkxga.sys
2009-12-29 04:48 . 2001-08-18 03:36 39424 -c--a-w- c:\windows\system32\dllcache\ovcoms.exe
2009-12-29 04:47 . 2008-04-13 19:46 85248 -c--a-w- c:\windows\system32\dllcache\nabtsfec.sys
2009-12-29 04:46 . 2001-08-17 18:52 6528 -c--a-w- c:\windows\system32\dllcache\miniqic.sys
2009-12-29 04:45 . 2001-08-18 03:36 37376 -c--a-w- c:\windows\system32\dllcache\kousd.dll
2009-12-29 04:45 . 2008-04-14 01:11 253952 -c--a-w- c:\windows\system32\dllcache\kdsusd.dll
2009-12-29 04:45 . 2008-04-14 01:11 48640 -c--a-w- c:\windows\system32\dllcache\kdsui.dll
2009-12-29 04:44 . 2001-08-18 03:36 8192 -c--a-w- c:\windows\system32\dllcache\kbdkor.dll
2009-12-29 04:44 . 2001-08-18 03:36 8704 -c--a-w- c:\windows\system32\dllcache\kbdjpn.dll
2009-12-29 04:44 . 2008-04-13 19:39 14592 -c--a-w- c:\windows\system32\dllcache\kbdhid.sys
2009-12-29 04:44 . 2008-04-14 01:09 6144 -c--a-w- c:\windows\system32\dllcache\kbd106.dll
2009-12-29 04:44 . 2001-08-17 19:55 5632 -c--a-w- c:\windows\system32\dllcache\kbd103.dll
2009-12-29 04:42 . 2002-09-03 16:24 102463 -c--a-w- c:\windows\system32\dllcache\imepadsm.dll
2009-12-29 04:41 . 2002-09-03 16:24 10129408 -c--a-w- c:\windows\system32\dllcache\hwxkor.dll
2009-12-29 04:40 . 2001-08-17 19:56 1733120 -c--a-w- c:\windows\system32\dllcache\g400d.dll
2009-12-29 04:39 . 2001-08-17 17:12 24618 -c--a-w- c:\windows\system32\dllcache\fa410nd5.sys
2009-12-29 04:39 . 2001-08-17 17:12 16074 -c--a-w- c:\windows\system32\dllcache\fa312nd5.sys
2009-12-29 04:39 . 2001-08-17 17:11 11850 -c--a-w- c:\windows\system32\dllcache\f3ab18xj.sys
2009-12-29 04:39 . 2001-08-17 17:11 12362 -c--a-w- c:\windows\system32\dllcache\f3ab18xi.sys
2009-12-29 04:39 . 2001-08-17 18:52 7040 -c--a-w- c:\windows\system32\dllcache\exabyte2.sys
2009-12-29 04:39 . 2001-08-17 17:12 16998 -c--a-w- c:\windows\system32\dllcache\ex10.sys
2009-12-29 04:37 . 2001-08-17 17:20 334208 -c--a-w- c:\windows\system32\dllcache\ds1wdm.sys
2009-12-29 04:36 . 2001-08-17 17:13 91305 -c--a-w- c:\windows\system32\dllcache\dimaint.sys
2009-12-29 04:35 . 2001-08-18 03:36 27648 -c--a-w- c:\windows\system32\dllcache\cyzports.dll
2009-12-29 04:34 . 2001-08-17 17:13 49182 -c--a-w- c:\windows\system32\dllcache\cem56n5.sys
2009-12-29 04:33 . 2001-08-17 17:11 26568 -c--a-w- c:\windows\system32\dllcache\bcm4e5.sys
2009-12-29 04:29 . 2001-08-17 19:07 101888 -c--a-w- c:\windows\system32\dllcache\adpu160m.sys
2009-12-29 04:28 . 2001-08-17 19:56 66048 -c--a-w- c:\windows\system32\dllcache\s3legacy.dll
2009-12-24 19:52 . 2009-12-24 19:52 -------- d-sh--w- c:\documents and settings\Owner\IECompatCache
2009-12-24 18:39 . 2009-12-24 18:39 -------- d-sh--w- c:\documents and settings\Owner\PrivacIE
2009-12-24 18:26 . 2009-12-24 18:26 -------- d-sh--w- c:\documents and settings\Owner\IETldCache
2009-12-24 17:54 . 2009-10-29 07:45 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2009-12-24 17:54 . 2009-10-29 07:45 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2009-12-24 17:54 . 2009-10-29 07:45 594432 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2009-12-24 17:54 . 2009-10-29 07:45 246272 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2009-12-24 17:54 . 2009-10-29 07:45 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2009-12-24 17:54 . 2009-10-29 07:45 11069952 -c----w- c:\windows\system32\dllcache\ieframe.dll
2009-12-24 17:54 . 2010-01-15 01:50 -------- d-----w- c:\windows\ie8updates
2009-12-24 17:53 . 2009-10-02 04:44 92160 -c----w- c:\windows\system32\dllcache\iecompat.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-14 20:05 . 2009-12-10 00:29 -------- d-----w- c:\documents and settings\Owner\Application Data\Malwarebytes
2010-01-14 20:04 . 2009-12-10 00:28 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-01-14 15:26 . 2009-12-10 00:43 -------- d-----w- c:\documents and settings\Owner\Application Data\SUPERAntiSpyware.com
2010-01-14 15:26 . 2009-12-10 00:43 -------- d-----w- c:\program files\SUPERAntiSpyware
2010-01-11 19:26 . 2008-05-22 03:39 -------- d-----w- c:\program files\Java
2010-01-06 02:18 . 2008-05-22 06:09 -------- d-----w- c:\documents and settings\Owner\Application Data\LimeWire
2009-12-16 18:55 . 2009-12-16 18:55 152576 ----a-w- c:\documents and settings\Owner\Application Data\Sun\Java\jre1.6.0_17\lzma.dll
2009-12-16 18:54 . 2009-12-16 18:54 79488 ----a-w- c:\documents and settings\Owner\Application Data\Sun\Java\jre1.6.0_17\gtapi.dll
2009-12-16 18:51 . 2008-05-22 03:29 -------- d-----w- c:\program files\LimeWire
2009-12-13 22:54 . 2009-12-13 22:49 -------- d-----w- c:\documents and settings\All Users\Application Data\NOS
2009-12-13 22:49 . 2009-12-13 22:49 -------- d-----w- c:\program files\NOS
2009-12-10 00:44 . 2009-12-10 00:44 -------- d-----w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2009-12-07 05:10 . 2008-06-05 20:55 -------- d-----w- c:\program files\Windows Live Safety Center
2009-12-01 17:46 . 2008-05-22 03:09 13104 -c--a-w- c:\documents and settings\Owner\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-12-01 16:25 . 2009-12-01 16:25 -------- dc----w- c:\documents and settings\All Users\Application Data\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6}
2009-12-01 15:42 . 2009-12-01 15:42 -------- d-----w- c:\program files\MSBuild
2009-12-01 15:42 . 2009-12-01 15:42 -------- d-----w- c:\program files\Reference Assemblies
2009-11-30 05:45 . 2009-11-30 05:45 61224 ----a-w- c:\documents and settings\Owner\GoToAssistDownloadHelper.exe
2009-11-30 05:30 . 2009-11-30 05:30 -------- d-----w- c:\documents and settings\Owner\Application Data\McAfee
2009-11-30 01:31 . 2009-11-30 01:31 -------- d-----w- c:\documents and settings\Owner\Application Data\AVG8
2009-11-21 15:51 . 2002-09-03 16:26 471552 ----a-w- c:\windows\AppPatch\aclayers.dll
2009-10-29 04:48 . 2009-10-29 04:48 499712 ----a-w- c:\windows\system32\msvcp71.dll
2009-10-29 04:48 . 2009-10-29 04:48 348160 ----a-w- c:\windows\system32\msvcr71.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\System32\igfxtray.exe" [2002-06-20 155648]
"HotKeysCmds"="c:\windows\System32\hkcmd.exe" [2002-06-20 114688]
"Motive SmartBridge"="c:\progra~1\SBCSEL~1\SMARTB~1\MotiveSB.exe" [2005-08-24 442455]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2010-01-11 149280]
"MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2009-09-13 1048392]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2007-02-26 437160]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0pgdfgsvc C 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^AT&T Self Support Tool.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\AT&T Self Support Tool.lnk
backup=c:\windows\pss\AT&T Self Support Tool.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCMSMMSG]
2003-08-29 11:59 122880 ----a-w- c:\windows\BCMSMMSG.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
getPlusHelper REG_MULTI_SZ getPlusHelper
.
Contents of the 'Scheduled Tasks' folder

2010-01-19 c:\windows\Tasks\MP Scheduled Scan.job
- c:\program files\Microsoft Security Essentials\MpCmdRun.exe [2009-07-02 22:36]

2010-01-22 c:\windows\Tasks\MpIdleTask.job
- c:\program files\Microsoft Security Essentials\MpCmdRun.exe [2009-07-02 22:36]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/search?q=internet+explorer&rls=com.microsoft:en-us:IE-Address&ie=UTF-8&oe=UTF-8&sourceid=ie7&rlz=1I7ADBF_en
uInternet Settings,ProxyOverride = 127.0.0.1
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
Trusted Zone: facebook.com\apps
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-22 13:19
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'explorer.exe'(2812)
c:\windows\system32\ieframe.dll
c:\windows\system32\OneX.DLL
c:\windows\system32\eappprxy.dll
c:\windows\system32\webcheck.dll
.
Completion time: 2010-01-22 13:27:52
ComboFix-quarantined-files.txt 2010-01-22 18:27
ComboFix2.txt 2010-01-12 18:26
ComboFix3.txt 2010-01-11 21:05
ComboFix4.txt 2010-01-10 23:07

Pre-Run: 28,879,482,880 bytes free
Post-Run: 28,875,550,720 bytes free

- - End Of File - - D6B63FF0F3C98F4BE4A8904C7CA7E037
Go to the top of the page
 
+Quote Post
elise025
post Jan 22 2010, 01:43 PM
Post #63


Bleepin' Blonde
******

Group: Moderator
Posts: 16,070
Joined: 5-October 07
From: Home
Member No.: 160,991



Well, everything looks okay there...

Those CPU problems happened after we changed the page file size? If thats the case, lets change it back. It seems unlikely, but who knows...


--------------------
Regards,
Elise
"The mind is its own place, and in itself can make a heaven of hell, a hell of heaven."
John Milton

Become a BleepingComputer fan on Facebook
Follow us on Twitter
Go to the top of the page
 
+Quote Post
kshoney44
post Jan 22 2010, 05:21 PM
Post #64


Member
**

Group: Members
Posts: 43
Joined: 28-December 09
Member No.: 425,342



what do i change it to?
Go to the top of the page
 
+Quote Post
elise025
post Jan 23 2010, 03:29 AM
Post #65


Bleepin' Blonde
******

Group: Moderator
Posts: 16,070
Joined: 5-October 07
From: Home
Member No.: 160,991



Sorry, forgot to mention that ohmy.gif

Initial size 512
Maximum size 768

Click set after modifying the entries.

Let me know if this changes anything.


--------------------
Regards,
Elise
"The mind is its own place, and in itself can make a heaven of hell, a hell of heaven."
John Milton

Become a BleepingComputer fan on Facebook
Follow us on Twitter
Go to the top of the page
 
+Quote Post
kshoney44
post Jan 24 2010, 08:26 PM
Post #66


Member
**

Group: Members
Posts: 43
Joined: 28-December 09
Member No.: 425,342



i don't think it made much of a difference to be honest sad.gif ....i just noticed combofix has some sort of bug...... does that mean my computer has that bug as well???
Go to the top of the page
 
+Quote Post
elise025
post Jan 25 2010, 05:35 AM
Post #67


Bleepin' Blonde
******

Group: Moderator
Posts: 16,070
Joined: 5-October 07
From: Home
Member No.: 160,991



No worries about that Combofix bug, your computer was not affected by it smile.gif

Do you remember if your computer is more slow than before all problems started?


--------------------
Regards,
Elise
"The mind is its own place, and in itself can make a heaven of hell, a hell of heaven."
John Milton

Become a BleepingComputer fan on Facebook
Follow us on Twitter
Go to the top of the page
 
+Quote Post
kshoney44
post Jan 25 2010, 09:22 AM
Post #68


Member
**

Group: Members
Posts: 43
Joined: 28-December 09
Member No.: 425,342



uuummmmm, i wouldn't say that its more slow.....just slow! i think the main issue right now for me is the "not responding" issue.
Go to the top of the page
 
+Quote Post
elise025
post Jan 25 2010, 09:28 AM
Post #69


Bleepin' Blonde
******

Group: Moderator
Posts: 16,070
Joined: 5-October 07
From: Home
Member No.: 160,991



Well, slow it will be anyway because it has only 128 mb or RAM. There is little you can do about that except for buying more RAM.

This can also cause the "non responding" errors if you try to open too many programs at a time.

Is there a specific program that keeps freezing, or all of them.


--------------------
Regards,
Elise
"The mind is its own place, and in itself can make a heaven of hell, a hell of heaven."
John Milton

Become a BleepingComputer fan on Facebook
Follow us on Twitter
Go to the top of the page
 
+Quote Post
kshoney44
post Jan 25 2010, 03:43 PM
Post #70


Member
**

Group: Members
Posts: 43
Joined: 28-December 09
Member No.: 425,342



its all of them. the thing is, i pretty much always only have one program running at a time....two tops. usually its facebook and bleeping...or one or the other. my CPU goes from 0,0,0,0, 4, 78,0,100,0,0,0...its just crazy!! my cousin is going to update mt RAM for my in 2 weeks.
Go to the top of the page
 
+Quote Post
elise025
post Jan 26 2010, 05:22 AM
Post #71


Bleepin' Blonde
******

Group: Moderator
Posts: 16,070
Joined: 5-October 07
From: Home
Member No.: 160,991



In that case, please post me one last DDS log for review. If this is clean, we will finish things hereand if after you upgrade the RAM you still have those issues, you can send me a PM, so we can pick up this topic again.


--------------------
Regards,
Elise
"The mind is its own place, and in itself can make a heaven of hell, a hell of heaven."
John Milton

Become a BleepingComputer fan on Facebook
Follow us on Twitter
Go to the top of the page
 
+Quote Post
kshoney44
post Feb 2 2010, 12:40 PM
Post #72


Member
**

Group: Members
Posts: 43
Joined: 28-December 09
Member No.: 425,342




UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT

DDS (Ver_09-12-01.01)

Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 3/8/2008 07:37:35 PM
System Uptime: 1/31/2010 04:50:22 PM (44 hours ago)

Motherboard: Dell Computer Corporation | |
Processor: Intel® Pentium® 4 CPU 1.80GHz | Socket 478 | 1794/400mhz

==== Disk Partitions =========================

A: is Removable
C: is FIXED (NTFS) - 37 GiB total, 27.912 GiB free.
D: is CDROM ()
E: is CDROM ()

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT

DDS (Ver_09-12-01.01)

Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 3/8/2008 07:37:35 PM
System Uptime: 1/31/2010 04:50:22 PM (44 hours ago)

Motherboard: Dell Computer Corporation | |
Processor: Intel® Pentium® 4 CPU 1.80GHz | Socket 478 | 1794/400mhz

==== Disk Partitions =========================

A: is Removable
C: is FIXED (NTFS) - 37 GiB total, 27.912 GiB free.
D: is CDROM ()
E: is CDROM ()

==== Disabled Device Manager Items =============

==== System Restore Points ===================

RP654: 12/29/2009 02:36:59 PM - Software Distribution Service 3.0
RP655: 12/29/2009 03:07:16 PM - Software Distribution Service 3.0
RP656: 12/29/2009 03:31:08 PM - Software Distribution Service 3.0
RP657: 12/30/2009 02:39:14 PM - Software Distribution Service 3.0
RP658: 12/30/2009 02:55:59 PM - Software Distribution Service 3.0
RP659: 12/30/2009 03:35:04 PM - Software Distribution Service 3.0
RP660: 12/30/2009 05:26:01 PM - Software Distribution Service 3.0
RP661: 12/30/2009 06:03:19 PM - Software Distribution Service 3.0
RP662: 12/31/2009 06:54:27 PM - System Checkpoint
RP663: 1/1/2010 01:03:07 AM - Removed SUPERAntiSpyware Professional
RP664: 1/1/2010 01:50:29 AM - Software Distribution Service 3.0
RP665: 1/1/2010 05:30:41 PM - Installed SUPERAntiSpyware Free Edition
RP666: 1/1/2010 05:52:33 PM - Software Distribution Service 3.0
RP667: 1/1/2010 09:03:10 PM - Software Distribution Service 3.0
RP668: 1/1/2010 09:17:14 PM - Software Distribution Service 3.0
RP669: 1/2/2010 02:21:34 PM - Software Distribution Service 3.0
RP670: 1/3/2010 02:47:00 AM - Software Distribution Service 3.0
RP671: 1/4/2010 03:31:34 AM - System Checkpoint
RP672: 1/5/2010 04:31:28 AM - System Checkpoint
RP673: 1/5/2010 10:04:26 PM - Installed Microsoft Fix it 50195
RP674: 1/6/2010 10:27:32 PM - System Checkpoint
RP675: 1/7/2010 08:55:34 AM - Software Distribution Service 3.0
RP676: 1/8/2010 09:03:54 AM - System Checkpoint
RP677: 1/8/2010 10:16:18 PM - Software Distribution Service 3.0
RP678: 1/9/2010 01:23:04 PM - Software Distribution Service 3.0
RP679: 1/9/2010 01:42:25 PM - Software Distribution Service 3.0
RP680: 1/9/2010 01:53:58 PM - Software Distribution Service 3.0
RP681: 1/9/2010 02:10:46 PM - Software Distribution Service 3.0
RP682: 1/9/2010 10:25:27 PM - Software Distribution Service 3.0
RP683: 1/10/2010 02:14:10 PM - Software Distribution Service 3.0
RP684: 1/11/2010 10:39:40 AM - Software Distribution Service 3.0
RP685: 1/11/2010 02:20:54 PM - Installed Java™ 6 Update 17
RP686: 1/11/2010 02:26:20 PM - Removed Java™ 6 Update 6
RP687: 1/11/2010 09:03:22 PM - Software Distribution Service 3.0
RP688: 1/11/2010 11:13:24 PM - Software Distribution Service 3.0
RP689: 1/11/2010 11:25:38 PM - Software Distribution Service 3.0
RP690: 1/12/2010 09:41:53 AM - Software Distribution Service 3.0
RP691: 1/13/2010 10:23:10 AM - System Checkpoint
RP692: 1/13/2010 11:00:41 PM - Software Distribution Service 3.0
RP693: 1/14/2010 10:25:26 AM - Removed SUPERAntiSpyware Free Edition
RP694: 1/14/2010 05:57:46 PM - Software Distribution Service 3.0
RP695: 1/14/2010 06:35:03 PM - Software Distribution Service 3.0
RP696: 1/14/2010 07:01:09 PM - Software Distribution Service 3.0
RP697: 1/14/2010 08:41:07 PM - Software Distribution Service 3.0
RP698: 1/16/2010 07:40:51 AM - System Checkpoint
RP699: 1/16/2010 01:54:06 PM - Software Distribution Service 3.0
RP700: 1/17/2010 03:11:36 AM - Software Distribution Service 3.0
RP701: 1/18/2010 06:43:38 AM - System Checkpoint
RP702: 1/19/2010 07:07:38 AM - System Checkpoint
RP703: 1/20/2010 09:35:46 AM - System Checkpoint
RP704: 1/20/2010 03:27:12 PM - Software Distribution Service 3.0
RP705: 1/21/2010 09:34:08 AM - Software Distribution Service 3.0
RP706: 1/21/2010 03:30:48 PM - Software Distribution Service 3.0
RP707: 1/22/2010 03:21:36 PM - Software Distribution Service 3.0
RP708: 1/23/2010 03:31:19 PM - Software Distribution Service 3.0
RP709: 1/24/2010 02:37:15 AM - Software Distribution Service 3.0
RP710: 1/24/2010 03:26:36 PM - Software Distribution Service 3.0
RP711: 1/25/2010 03:30:20 PM - Software Distribution Service 3.0
RP712: 1/26/2010 03:13:26 PM - Software Distribution Service 3.0
RP713: 1/27/2010 03:29:13 PM - Software Distribution Service 3.0
RP714: 1/28/2010 03:25:02 PM - Software Distribution Service 3.0
RP715: 1/29/2010 03:50:40 PM - System Checkpoint
RP716: 1/30/2010 12:47:50 PM - Software Distribution Service 3.0
RP717: 1/31/2010 02:05:03 AM - Software Distribution Service 3.0
RP718: 1/31/2010 12:54:40 PM - Software Distribution Service 3.0
RP719: 2/1/2010 01:54:37 PM - System Checkpoint
RP720: 2/1/2010 05:05:11 PM - Software Distribution Service 3.0

==== Installed Programs ======================

Adobe Download Manager
Adobe Flash Player 10 ActiveX
Adobe Shockwave Player 11.5
AusLogics Disk Defrag
AusLogics Registry Defrag
Auto Care
B44Inst
BCM V.92 56K Modem
Broadcom 440x Driver Installer
BroadJump Client Foundation
CCleaner (remove only)
CheckIt Diagnostics
Dell ResourceCD
ESET Online Scanner v3
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB954550-v5)
Intel® Extreme Graphics Driver Software
Java™ 6 Update 17
LimeWire 4.16.7
Malwarebytes' Anti-Malware
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Antimalware
Microsoft Application Error Reporting
Microsoft Easy Assist
Microsoft Security Essentials
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Windows Live OneCare Resources v2.0.2500.32
Microsoft Windows OneCare Live v2.0.2500.32
PerformanceTest
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Media Player 9 (KB936782)
SoundMAX
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
WebFldrs XP
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 8
Windows XP Service Pack 3
Yahoo! Toolbar

==== Event Viewer Messages From Past Week ========

1/31/2010 04:50:59 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: IntelIde
1/31/2010 04:50:54 PM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC0000001' while processing the file '' on the volume 'HarddiskVolume1'. It has stopped monitoring the volume.

==== End Of File ===========================

==== Disabled Device Manager Items =============

==== System Restore Points ===================

RP654: 12/29/2009 02:36:59 PM - Software Distribution Service 3.0
RP655: 12/29/2009 03:07:16 PM - Software Distribution Service 3.0
RP656: 12/29/2009 03:31:08 PM - Software Distribution Service 3.0
RP657: 12/30/2009 02:39:14 PM - Software Distribution Service 3.0
RP658: 12/30/2009 02:55:59 PM - Software Distribution Service 3.0
RP659: 12/30/2009 03:35:04 PM - Software Distribution Service 3.0
RP660: 12/30/2009 05:26:01 PM - Software Distribution Service 3.0
RP661: 12/30/2009 06:03:19 PM - Software Distribution Service 3.0
RP662: 12/31/2009 06:54:27 PM - System Checkpoint
RP663: 1/1/2010 01:03:07 AM - Removed SUPERAntiSpyware Professional
RP664: 1/1/2010 01:50:29 AM - Software Distribution Service 3.0
RP665: 1/1/2010 05:30:41 PM - Installed SUPERAntiSpyware Free Edition
RP666: 1/1/2010 05:52:33 PM - Software Distribution Service 3.0
RP667: 1/1/2010 09:03:10 PM - Software Distribution Service 3.0
RP668: 1/1/2010 09:17:14 PM - Software Distribution Service 3.0
RP669: 1/2/2010 02:21:34 PM - Software Distribution Service 3.0
RP670: 1/3/2010 02:47:00 AM - Software Distribution Service 3.0
RP671: 1/4/2010 03:31:34 AM - System Checkpoint
RP672: 1/5/2010 04:31:28 AM - System Checkpoint
RP673: 1/5/2010 10:04:26 PM - Installed Microsoft Fix it 50195
RP674: 1/6/2010 10:27:32 PM - System Checkpoint
RP675: 1/7/2010 08:55:34 AM - Software Distribution Service 3.0
RP676: 1/8/2010 09:03:54 AM - System Checkpoint
RP677: 1/8/2010 10:16:18 PM - Software Distribution Service 3.0
RP678: 1/9/2010 01:23:04 PM - Software Distribution Service 3.0
RP679: 1/9/2010 01:42:25 PM - Software Distribution Service 3.0
RP680: 1/9/2010 01:53:58 PM - Software Distribution Service 3.0
RP681: 1/9/2010 02:10:46 PM - Software Distribution Service 3.0
RP682: 1/9/2010 10:25:27 PM - Software Distribution Service 3.0
RP683: 1/10/2010 02:14:10 PM - Software Distribution Service 3.0
RP684: 1/11/2010 10:39:40 AM - Software Distribution Service 3.0
RP685: 1/11/2010 02:20:54 PM - Installed Java™ 6 Update 17
RP686: 1/11/2010 02:26:20 PM - Removed Java™ 6 Update 6
RP687: 1/11/2010 09:03:22 PM - Software Distribution Service 3.0
RP688: 1/11/2010 11:13:24 PM - Software Distribution Service 3.0
RP689: 1/11/2010 11:25:38 PM - Software Distribution Service 3.0
RP690: 1/12/2010 09:41:53 AM - Software Distribution Service 3.0
RP691: 1/13/2010 10:23:10 AM - System Checkpoint
RP692: 1/13/2010 11:00:41 PM - Software Distribution Service 3.0
RP693: 1/14/2010 10:25:26 AM - Removed SUPERAntiSpyware Free Edition
RP694: 1/14/2010 05:57:46 PM - Software Distribution Service 3.0
RP695: 1/14/2010 06:35:03 PM - Software Distribution Service 3.0
RP696: 1/14/2010 07:01:09 PM - Software Distribution Service 3.0
RP697: 1/14/2010 08:41:07 PM - Software Distribution Service 3.0
RP698: 1/16/2010 07:40:51 AM - System Checkpoint
RP699: 1/16/2010 01:54:06 PM - Software Distribution Service 3.0
RP700: 1/17/2010 03:11:36 AM - Software Distribution Service 3.0
RP701: 1/18/2010 06:43:38 AM - System Checkpoint
RP702: 1/19/2010 07:07:38 AM - System Checkpoint
RP703: 1/20/2010 09:35:46 AM - System Checkpoint
RP704: 1/20/2010 03:27:12 PM - Software Distribution Service 3.0
RP705: 1/21/2010 09:34:08 AM - Software Distribution Service 3.0
RP706: 1/21/2010 03:30:48 PM - Software Distribution Service 3.0
RP707: 1/22/2010 03:21:36 PM - Software Distribution Service 3.0
RP708: 1/23/2010 03:31:19 PM - Software Distribution Service 3.0
RP709: 1/24/2010 02:37:15 AM - Software Distribution Service 3.0
RP710: 1/24/2010 03:26:36 PM - Software Distribution Service 3.0
RP711: 1/25/2010 03:30:20 PM - Software Distribution Service 3.0
RP712: 1/26/2010 03:13:26 PM - Software Distribution Service 3.0
RP713: 1/27/2010 03:29:13 PM - Software Distribution Service 3.0
RP714: 1/28/2010 03:25:02 PM - Software Distribution Service 3.0
RP715: 1/29/2010 03:50:40 PM - System Checkpoint
RP716: 1/30/2010 12:47:50 PM - Software Distribution Service 3.0
RP717: 1/31/2010 02:05:03 AM - Software Distribution Service 3.0
RP718: 1/31/2010 12:54:40 PM - Software Distribution Service 3.0
RP719: 2/1/2010 01:54:37 PM - System Checkpoint
RP720: 2/1/2010 05:05:11 PM - Software Distribution Service 3.0

==== Installed Programs ======================

Adobe Download Manager
Adobe Flash Player 10 ActiveX
Adobe Shockwave Player 11.5
AusLogics Disk Defrag
AusLogics Registry Defrag
Auto Care
B44Inst
BCM V.92 56K Modem
Broadcom 440x Driver Installer
BroadJump Client Foundation
CCleaner (remove only)
CheckIt Diagnostics
Dell ResourceCD
ESET Online Scanner v3
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB954550-v5)
Intel® Extreme Graphics Driver Software
Java™ 6 Update 17
LimeWire 4.16.7
Malwarebytes' Anti-Malware
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Antimalware
Microsoft Application Error Reporting
Microsoft Easy Assist
Microsoft Security Essentials
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Windows Live OneCare Resources v2.0.2500.32
Microsoft Windows OneCare Live v2.0.2500.32
PerformanceTest
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Media Player 9 (KB936782)
SoundMAX
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
WebFldrs XP
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 8
Windows XP Service Pack 3
Yahoo! Toolbar

==== Event Viewer Messages From Past Week ========

1/31/2010 04:50:59 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: IntelIde
1/31/2010 04:50:54 PM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC0000001' while processing the file '' on the volume 'HarddiskVolume1'. It has stopped monitoring the volume.

==== End Of File ===========================
Go to the top of the page
 
+Quote Post
elise025
post Feb 2 2010, 01:30 PM
Post #73


Bleepin' Blonde
******

Group: Moderator
Posts: 16,070
Joined: 5-October 07
From: Home
Member No.: 160,991



That was only attach.txt, can you please also post me the dds.txt log produced by DDS? (the one with running processes, pseudo HJT section, Services/Drivers and so on).


--------------------
Regards,
Elise
"The mind is its own place, and in itself can make a heaven of hell, a hell of heaven."
John Milton

Become a BleepingComputer fan on Facebook
Follow us on Twitter
Go to the top of the page
 
+Quote Post
kshoney44
post Feb 3 2010, 10:55 AM
Post #74


Member
**

Group: Members
Posts: 43
Joined: 28-December 09
Member No.: 425,342




DDS (Ver_09-12-01.01) - NTFSx86
Run by Owner at 10:34:39.87 on Wed 02/03/2010
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.126.22 [GMT -5:00]

AV: Microsoft Security Essentials *On-access scanning disabled* (Updated) {BCF43643-A118-4432-AEDE-D861FCBCFCDF}

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
c:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\WINDOWS\system32\imapi.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Program Files\internet explorer\iexplore.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\Owner\Desktop\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.com/search?q=internet+explorer&rls=com.microsoft:en-us:IE-Address&ie=UTF-8&oe=UTF-8&sourceid=ie7&rlz=1I7ADBF_en
uInternet Settings,ProxyOverride = 127.0.0.1
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
TB: {A057A204-BACC-4D26-9990-79A187E2698E} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Motive SmartBridge] c:\progra~1\sbcsel~1\smartb~1\MotiveSB.exe
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [MSSE] "c:\program files\microsoft security essentials\msseces.exe" -hide
dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBC} - c:\program files\java\jre6\bin\jp2iexp.dll
Trusted Zone: facebook.com\apps
DPF: DirectAnimation Java Classes - file://c:\windows\java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83}
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/swdir8d196a.cab
DPF: {48DD0448-9209-4F81-9F6D-D83562940134}
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1211409827093
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Notify: igfxcui - igfxsrvc.dll

============= SERVICES / DRIVERS ===============

R1 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2009-6-18 142832]

=============== Created Last 30 ================

2010-01-19 13:43:14 0 d-----w- C:\_OTL
2010-01-18 21:27:26 0 d-----w- c:\program files\ESET
2010-01-15 00:53:12 0 dc-h--w- c:\windows\ie8
2010-01-14 22:48:29 0 d-----w- c:\program files\Microsoft Security Essentials
2010-01-14 20:04:41 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-14 20:04:20 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-14 20:04:18 0 d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-12 17:03:57 0 d-----w- C:\ComboFix2
2010-01-12 04:26:47 0 d-----w- C:\677a6e0afe04d46de88eaefdba101e89
2010-01-11 19:22:12 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-01-10 22:08:25 0 d-sha-r- C:\cmdcons
2010-01-10 22:01:15 77312 ----a-w- c:\windows\MBR.exe
2010-01-10 22:01:15 261632 ----a-w- c:\windows\PEV.exe
2010-01-10 22:01:15 161792 ----a-w- c:\windows\SWREG.exe
2010-01-10 22:01:14 98816 ----a-w- c:\windows\sed.exe

==================== Find3M ====================

2010-01-14 16:12:06 181120 ------w- c:\windows\system32\MpSigStub.exe
2009-12-29 05:06:31 25992 ----a-w- c:\windows\system32\pgdfgsvc.exe
2009-11-30 05:45:03 61224 ----a-w- c:\documents and settings\owner\GoToAssistDownloadHelper.exe

============= FINISH: 10:36:25.37 ===============

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT

DDS (Ver_09-12-01.01)

Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 3/8/2008 07:37:35 PM
System Uptime: 1/31/2010 04:50:22 PM (66 hours ago)

Motherboard: Dell Computer Corporation | |
Processor: Intel® Pentium® 4 CPU 1.80GHz | Socket 478 | 1794/400mhz

==== Disk Partitions =========================

A: is Removable
C: is FIXED (NTFS) - 37 GiB total, 27.879 GiB free.
D: is CDROM ()
E: is CDROM ()

==== Disabled Device Manager Items =============

==== System Restore Points ===================

RP654: 12/29/2009 02:36:59 PM - Software Distribution Service 3.0
RP655: 12/29/2009 03:07:16 PM - Software Distribution Service 3.0
RP656: 12/29/2009 03:31:08 PM - Software Distribution Service 3.0
RP657: 12/30/2009 02:39:14 PM - Software Distribution Service 3.0
RP658: 12/30/2009 02:55:59 PM - Software Distribution Service 3.0
RP659: 12/30/2009 03:35:04 PM - Software Distribution Service 3.0
RP660: 12/30/2009 05:26:01 PM - Software Distribution Service 3.0
RP661: 12/30/2009 06:03:19 PM - Software Distribution Service 3.0
RP662: 12/31/2009 06:54:27 PM - System Checkpoint
RP663: 1/1/2010 01:03:07 AM - Removed SUPERAntiSpyware Professional
RP664: 1/1/2010 01:50:29 AM - Software Distribution Service 3.0
RP665: 1/1/2010 05:30:41 PM - Installed SUPERAntiSpyware Free Edition
RP666: 1/1/2010 05:52:33 PM - Software Distribution Service 3.0
RP667: 1/1/2010 09:03:10 PM - Software Distribution Service 3.0
RP668: 1/1/2010 09:17:14 PM - Software Distribution Service 3.0
RP669: 1/2/2010 02:21:34 PM - Software Distribution Service 3.0
RP670: 1/3/2010 02:47:00 AM - Software Distribution Service 3.0
RP671: 1/4/2010 03:31:34 AM - System Checkpoint
RP672: 1/5/2010 04:31:28 AM - System Checkpoint
RP673: 1/5/2010 10:04:26 PM - Installed Microsoft Fix it 50195
RP674: 1/6/2010 10:27:32 PM - System Checkpoint
RP675: 1/7/2010 08:55:34 AM - Software Distribution Service 3.0
RP676: 1/8/2010 09:03:54 AM - System Checkpoint
RP677: 1/8/2010 10:16:18 PM - Software Distribution Service 3.0
RP678: 1/9/2010 01:23:04 PM - Software Distribution Service 3.0
RP679: 1/9/2010 01:42:25 PM - Software Distribution Service 3.0
RP680: 1/9/2010 01:53:58 PM - Software Distribution Service 3.0
RP681: 1/9/2010 02:10:46 PM - Software Distribution Service 3.0
RP682: 1/9/2010 10:25:27 PM - Software Distribution Service 3.0
RP683: 1/10/2010 02:14:10 PM - Software Distribution Service 3.0
RP684: 1/11/2010 10:39:40 AM - Software Distribution Service 3.0
RP685: 1/11/2010 02:20:54 PM - Installed Java™ 6 Update 17
RP686: 1/11/2010 02:26:20 PM - Removed Java™ 6 Update 6
RP687: 1/11/2010 09:03:22 PM - Software Distribution Service 3.0
RP688: 1/11/2010 11:13:24 PM - Software Distribution Service 3.0
RP689: 1/11/2010 11:25:38 PM - Software Distribution Service 3.0
RP690: 1/12/2010 09:41:53 AM - Software Distribution Service 3.0
RP691: 1/13/2010 10:23:10 AM - System Checkpoint
RP692: 1/13/2010 11:00:41 PM - Software Distribution Service 3.0
RP693: 1/14/2010 10:25:26 AM - Removed SUPERAntiSpyware Free Edition
RP694: 1/14/2010 05:57:46 PM - Software Distribution Service 3.0
RP695: 1/14/2010 06:35:03 PM - Software Distribution Service 3.0
RP696: 1/14/2010 07:01:09 PM - Software Distribution Service 3.0
RP697: 1/14/2010 08:41:07 PM - Software Distribution Service 3.0
RP698: 1/16/2010 07:40:51 AM - System Checkpoint
RP699: 1/16/2010 01:54:06 PM - Software Distribution Service 3.0
RP700: 1/17/2010 03:11:36 AM - Software Distribution Service 3.0
RP701: 1/18/2010 06:43:38 AM - System Checkpoint
RP702: 1/19/2010 07:07:38 AM - System Checkpoint
RP703: 1/20/2010 09:35:46 AM - System Checkpoint
RP704: 1/20/2010 03:27:12 PM - Software Distribution Service 3.0
RP705: 1/21/2010 09:34:08 AM - Software Distribution Service 3.0
RP706: 1/21/2010 03:30:48 PM - Software Distribution Service 3.0
RP707: 1/22/2010 03:21:36 PM - Software Distribution Service 3.0
RP708: 1/23/2010 03:31:19 PM - Software Distribution Service 3.0
RP709: 1/24/2010 02:37:15 AM - Software Distribution Service 3.0
RP710: 1/24/2010 03:26:36 PM - Software Distribution Service 3.0
RP711: 1/25/2010 03:30:20 PM - Software Distribution Service 3.0
RP712: 1/26/2010 03:13:26 PM - Software Distribution Service 3.0
RP713: 1/27/2010 03:29:13 PM - Software Distribution Service 3.0
RP714: 1/28/2010 03:25:02 PM - Software Distribution Service 3.0
RP715: 1/29/2010 03:50:40 PM - System Checkpoint
RP716: 1/30/2010 12:47:50 PM - Software Distribution Service 3.0
RP717: 1/31/2010 02:05:03 AM - Software Distribution Service 3.0
RP718: 1/31/2010 12:54:40 PM - Software Distribution Service 3.0
RP719: 2/1/2010 01:54:37 PM - System Checkpoint
RP720: 2/1/2010 05:05:11 PM - Software Distribution Service 3.0
RP721: 2/2/2010 05:08:08 PM - Software Distribution Service 3.0

==== Installed Programs ======================

Adobe Download Manager
Adobe Flash Player 10 ActiveX
Adobe Shockwave Player 11.5
AusLogics Disk Defrag
AusLogics Registry Defrag
Auto Care
B44Inst
BCM V.92 56K Modem
Broadcom 440x Driver Installer
BroadJump Client Foundation
CCleaner (remove only)
CheckIt Diagnostics
Dell ResourceCD
ESET Online Scanner v3
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB954550-v5)
Intel® Extreme Graphics Driver Software
Java™ 6 Update 17
LimeWire 4.16.7
Malwarebytes' Anti-Malware
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Antimalware
Microsoft Application Error Reporting
Microsoft Easy Assist
Microsoft Security Essentials
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Windows Live OneCare Resources v2.0.2500.32
Microsoft Windows OneCare Live v2.0.2500.32
PerformanceTest
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Media Player 9 (KB936782)
SoundMAX
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
WebFldrs XP
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 8
Windows XP Service Pack 3
Yahoo! Toolbar

==== Event Viewer Messages From Past Week ========

1/31/2010 04:50:59 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: IntelIde
1/31/2010 04:50:54 PM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC0000001' while processing the file '' on the volume 'HarddiskVolume1'. It has stopped monitoring the volume.

==== End Of File ===========================
Go to the top of the page
 
+Quote Post
elise025
post Feb 3 2010, 11:14 AM
Post #75


Bleepin' Blonde
******

Group: Moderator
Posts: 16,070
Joined: 5-October 07
From: Home
Member No.: 160,991



Hello kshoney44,

Things look okay. If problems still persist after upgrading the RAM, feel free to PM me so we can pick up things again.

ALL CLEAN
--------------
Your machine appears to be clean, please take the time to read below on how to secure the machine and take the necessary steps to keep it clean smile.gif

Please do the following to remove the remaining programs from your PC:
  • Delete the tools used during the disinfection:
    • Click start > run and type combofix /uninstall, press enter. This will remove Combofix from your computer.
    • Delete DDS, GMER (this is a random named file) and RootRepeal.
    • Run OTL and click Cleanup. Follow the prompts and allow a reboot.
Please read these advices, in order to prevent reinfecting your PC:
  1. Install and update the following programs regularly:
    • an outbound firewall
      A comprehensive tutorial and a list of possible firewalls can be found here.
    • an AntiVirus Software
      It is imperative that you update your AntiVirus Software on regular basis.If you do not update your AntiVirus Software then it will not be able to catch the latest threats.
    • an Anti-Spyware program
      Malware Byte's Anti Malware is an excellent Anti-Spyware scanner. It's scan times are usually under ten minutes, and has excellent detection and removal rates.
      SUPERAntiSpyware is another good scanner with high detection and removal rates.
      Both programs are free for non commercial home use but provide a resident and do not nag if you purchase the paid versions.
    • Spyware Blaster
      A tutorial for Spywareblaster can be found here. If you wish, the commercial version provides automatic updating.
    • MVPs hosts file
      A tutorial for MVPs hosts file can be found here. If you would like automatic updates you might want to take a look at HostMan host file manager. For more information on thehosts file, and what it can do for you,please consult the Tutorial on the Hosts file
  2. Keep Windows (and your other Microsoft software) up to date!
    I cannot stress how important this is enough. Often holes are found in Internet Explorer or Windows itself that require patching. Sometimes these holes will allow an attacker unrestricted access to your computer.
    Therefore, please, visit the Microsoft Update Website and follow the on screen instructions to setup Microsoft Update. Also follow the instructions to update your system. Please REBOOT and repeat this process until there are no more updates to install!!
  3. Keep your other software up to date as well
    Software does not need to be made by Microsoft to be insecure. You can use the Secunia Online Software occasionally to help you check for out of date software on yourmachine.
  4. Stay up to date!
    The MOST IMPORTANT part of any security setup is keeping the software up to date. Malware writers release new variants every single day. If your software updates don't keep up, then the malware will always be one step ahead. Not a good thing sad.gif.
Some more links you might find of interest:

Please reply to this topic if you have read the above information. If your computer is working fine, this topic will be closed afterwards.



--------------------
Regards,
Elise
"The mind is its own place, and in itself can make a heaven of hell, a hell of heaven."
John Milton

Become a BleepingComputer fan on Facebook
Follow us on Twitter
Go to the top of the page
 
+Quote Post

6 Pages V  « < 3 4 5 6 >
Closed TopicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 



Lo-Fi Version Time is now: 6th September 2010 - 03:26 AM


Advertise   |   About Us   |   Terms of Use   |   Privacy Policy   |   Contact Us   |   Site Map   |   Chat   |   Tutorials   |   Uninstall List
Discussion Forums   |   The Computer Glossary   |   Resources   |   RSS Feeds   |   Startups   |   The File Database   |   Virus Removal Guides

© 2003-2010 All Rights Reserved Bleeping Computer LLC.