BleepingComputer.com: Computer runs super slow! Am i infected?

Jump to content

Forum Rules

When posting your problem, do not run and post a ComboFix log. ComboFix is a tool that should only be run under the supervision of someone who has been trained in its use. Using it on your own can cause problems with your computer. Any posts containing CF Logs will be ignored.

To receive help, you should instead provide a detailed description of your problem, detailed word-for-word error messages that you are receiving, screenshots of strange behaviour, and your operating system. This information is much more useful to our helpers than a ComboFix log.


If you have not received help after three days, please post a link to your topic HERE.
  • 2 Pages +
  • 1
  • 2
  • You cannot start a new topic
  • You cannot reply to this topic

Computer runs super slow! Am i infected?

#16 User is offline   crewjones33 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 56
  • Joined: 14-October 10

Posted 13 November 2010 - 02:02 PM

I was wondering if you could give me any suggestions on how to update my drivers. Windows update doesn't really do it. Also i just installed an internal card reader this morning. It worked breifly and then i got a error message, I think it said " USB device has exceeded the power limits of its hub port " or something to that nature. Now the device will not work at all. I am lost.

#17 User is offline   Budapest 

  • Bleepin' Cynic
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Moderator
  • Posts: 22,235
  • Joined: 11-November 06
  • Gender:Male

Posted 13 November 2010 - 04:57 PM

Please download VEW and save it to your Desktop: http://images.malwareremoval.com/vino/VEW.exe

Double-click VEW.exe then under Select log to query, select:
Application
System


Under Select type to list, select:
Critical (Vista only)
Error


Click the radio button for Number of events
Type 20 in the 1 to 20 box
Then click the Run button.
Notepad will open with the output log.

In Notepad, click Edit > Select all then Edit > Copy
Reply to this post, click in the reply window and press Ctrl+V on your keyboard to paste the log.
The power of accurate observation is commonly called cynicism by those who haven't got it.

—George Bernard Shaw

#18 User is offline   crewjones33 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 56
  • Joined: 14-October 10

Posted 13 November 2010 - 05:28 PM

Vino's Event Viewer v01c run on Windows XP in English
Report run at 13/11/2010 5:28:11 PM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 13/11/2010 5:27:56 PM
Type: error Category: 1
Event: 485 Source: ESENT
SearchIndexer (3168) An attempt to delete the file "C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft\Search\Data\Applications\Windows\tmp.edb" failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ". The delete file operation will fail with error -1032 (0xfffffbf8).

Log: 'Application' Date/Time: 13/11/2010 5:27:55 PM
Type: error Category: 3
Event: 3013 Source: Windows Search Service
The entry <C:\DOCUMENTS AND SETTINGS\JUSTIN.HOME\DESKTOP\VEW.EXE> in the hash map cannot be updated.

Context: Application, SystemIndex Catalog

Details:
A device attached to the system is not functioning. (0x8007001f)


Log: 'Application' Date/Time: 13/11/2010 5:27:55 PM
Type: error Category: 3
Event: 7040 Source: Windows Search Service
The search service has detected corrupted data files in the index. The service will attempt to automatically correct this problem by rebuilding the index.

Context: Windows Application, SystemIndex Catalog

Details:
The content index metadata cannot be read. (0xc0041801)


Log: 'Application' Date/Time: 13/11/2010 5:27:42 PM
Type: error Category: 3
Event: 492 Source: ESENT
SearchIndexer (3168) The logfile sequence in "C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft\Search\Data\Applications\Windows\" has been halted due to a fatal error. No further updates are possible for the databases that use this logfile sequence. Please correct the problem and restart or restore from backup.

Log: 'Application' Date/Time: 13/11/2010 5:27:42 PM
Type: error Category: 3
Event: 413 Source: ESENT
SearchIndexer (3168) Unable to create a new logfile because the database cannot write to the log drive. The drive may be read-only, out of disk space, misconfigured, or corrupted. Error -1032.

Log: 'Application' Date/Time: 13/11/2010 5:27:42 PM
Type: error Category: 1
Event: 486 Source: ESENT
SearchIndexer (3168) An attempt to move the file "C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log" to "C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft\Search\Data\Applications\Windows\MSS01CCE.log" failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ". The move file operation will fail with error -1032 (0xfffffbf8).

Log: 'Application' Date/Time: 13/11/2010 1:53:39 PM
Type: error Category: 0
Event: 1001 Source: Application Error
Fault bucket 1742296637.

Log: 'Application' Date/Time: 13/11/2010 1:53:35 PM
Type: error Category: 0
Event: 1000 Source: Application Error
Faulting application devices.exe, version 5.5.0.789, faulting module unknown, version 0.0.0.0, fault address 0x0000312d.

Log: 'Application' Date/Time: 13/11/2010 1:40:51 PM
Type: error Category: 0
Event: 1013 Source: MsiInstaller
Product: InstallMgr -- AlreadyInstalled

Log: 'Application' Date/Time: 13/11/2010 1:30:34 PM
Type: error Category: 0
Event: 10005 Source: MsiInstaller
Product: ccc-core-static -- Internal Error 2753. installShell.exe

Log: 'Application' Date/Time: 13/11/2010 12:59:38 PM
Type: error Category: 0
Event: 8 Source: crypt32
Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: The specified server cannot perform the requested operation.

Log: 'Application' Date/Time: 13/11/2010 12:59:38 PM
Type: error Category: 0
Event: 8 Source: crypt32
Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: The specified server cannot perform the requested operation.

Log: 'Application' Date/Time: 13/11/2010 12:59:38 PM
Type: error Category: 0
Event: 8 Source: crypt32
Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This operation returned because the timeout period expired.

Log: 'Application' Date/Time: 13/11/2010 12:24:48 PM
Type: error Category: 0
Event: 1013 Source: MsiInstaller
Product: InstallMgr -- AlreadyInstalled

Log: 'Application' Date/Time: 13/11/2010 12:06:27 PM
Type: error Category: 0
Event: 1013 Source: MsiInstaller
Product: InstallMgr -- AlreadyInstalled

Log: 'Application' Date/Time: 13/11/2010 11:53:30 AM
Type: error Category: 0
Event: 1013 Source: MsiInstaller
Product: InstallMgr -- AlreadyInstalled

Log: 'Application' Date/Time: 13/11/2010 11:37:28 AM
Type: error Category: 0
Event: 1013 Source: MsiInstaller
Product: InstallMgr -- AlreadyInstalled

Log: 'Application' Date/Time: 13/11/2010 11:32:27 AM
Type: error Category: 0
Event: 1013 Source: MsiInstaller
Product: InstallMgr -- AlreadyInstalled

Log: 'Application' Date/Time: 10/11/2010 5:51:14 PM
Type: error Category: 0
Event: 1013 Source: MsiInstaller
Product: InstallMgr -- AlreadyInstalled

Log: 'Application' Date/Time: 10/11/2010 4:48:45 AM
Type: error Category: 0
Event: 1013 Source: MsiInstaller
Product: InstallMgr -- AlreadyInstalled

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 13/11/2010 1:40:11 PM
Type: error Category: 0
Event: 7000 Source: Service Control Manager
The lxdpCATSCustConnectService service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 13/11/2010 1:40:11 PM
Type: error Category: 0
Event: 7009 Source: Service Control Manager
Timeout (30000 milliseconds) waiting for the lxdpCATSCustConnectService service to connect.

Log: 'System' Date/Time: 13/11/2010 12:24:54 PM
Type: error Category: 0
Event: 7000 Source: Service Control Manager
The lxdpCATSCustConnectService service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 13/11/2010 12:24:54 PM
Type: error Category: 0
Event: 7009 Source: Service Control Manager
Timeout (30000 milliseconds) waiting for the lxdpCATSCustConnectService service to connect.

Log: 'System' Date/Time: 13/11/2010 12:06:31 PM
Type: error Category: 0
Event: 7000 Source: Service Control Manager
The lxdpCATSCustConnectService service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 13/11/2010 12:06:31 PM
Type: error Category: 0
Event: 7009 Source: Service Control Manager
Timeout (30000 milliseconds) waiting for the lxdpCATSCustConnectService service to connect.

Log: 'System' Date/Time: 13/11/2010 11:54:04 AM
Type: error Category: 0
Event: 7000 Source: Service Control Manager
The lxdpCATSCustConnectService service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 13/11/2010 11:54:04 AM
Type: error Category: 0
Event: 7009 Source: Service Control Manager
Timeout (30000 milliseconds) waiting for the lxdpCATSCustConnectService service to connect.

Log: 'System' Date/Time: 13/11/2010 11:51:22 AM
Type: error Category: 0
Event: 7000 Source: Service Control Manager
The lxdpCATSCustConnectService service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 13/11/2010 11:51:22 AM
Type: error Category: 0
Event: 7009 Source: Service Control Manager
Timeout (30000 milliseconds) waiting for the lxdpCATSCustConnectService service to connect.

Log: 'System' Date/Time: 13/11/2010 11:37:44 AM
Type: error Category: 0
Event: 7000 Source: Service Control Manager
The lxdpCATSCustConnectService service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 13/11/2010 11:37:44 AM
Type: error Category: 0
Event: 7009 Source: Service Control Manager
Timeout (30000 milliseconds) waiting for the lxdpCATSCustConnectService service to connect.

Log: 'System' Date/Time: 13/11/2010 11:31:58 AM
Type: error Category: 0
Event: 7000 Source: Service Control Manager
The lxdpCATSCustConnectService service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 13/11/2010 11:31:58 AM
Type: error Category: 0
Event: 7009 Source: Service Control Manager
Timeout (30000 milliseconds) waiting for the lxdpCATSCustConnectService service to connect.

Log: 'System' Date/Time: 10/11/2010 5:51:18 PM
Type: error Category: 0
Event: 7000 Source: Service Control Manager
The lxdpCATSCustConnectService service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

Log: 'System' Date/Time: 10/11/2010 5:51:18 PM
Type: error Category: 0
Event: 7009 Source: Service Control Manager
Timeout (30000 milliseconds) waiting for the lxdpCATSCustConnectService service to connect.

Log: 'System' Date/Time: 10/11/2010 5:48:51 PM
Type: error Category: 0
Event: 10005 Source: DCOM
DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Log: 'System' Date/Time: 10/11/2010 4:55:10 AM
Type: error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load: Aavmker4 AFD aswSP aswTdi Fips intelppm IPSec MRxSmb NetBIOS NetBT RasAcd Rdbss SASDIFSV SASKUTIL Tcpip

Log: 'System' Date/Time: 10/11/2010 4:55:10 AM
Type: error Category: 0
Event: 7001 Source: Service Control Manager
The IPSEC Services service depends on the IPSEC driver service which failed to start because of the following error: A device attached to the system is not functioning.

Log: 'System' Date/Time: 10/11/2010 4:55:10 AM
Type: error Category: 0
Event: 7001 Source: Service Control Manager
The Bonjour Service service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.

#19 User is offline   crewjones33 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 56
  • Joined: 14-October 10

Posted 16 November 2010 - 05:37 PM

Didn't know if we were done, or your just super busy.

#20 User is offline   Budapest 

  • Bleepin' Cynic
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Moderator
  • Posts: 22,235
  • Joined: 11-November 06
  • Gender:Male

Posted 16 November 2010 - 05:40 PM

Sorry I missed this topic.

Right click on the C drive in Explorer and go Properties > Tools > Check Now (under Error Checking). Check both boxes then click "Start Now". A message will pop up saying that Error Checking will run after you restart the computer. Restart the computer and Error Checking will run automatically after the restart. After it’s finished it will restart into Windows automatically.
The power of accurate observation is commonly called cynicism by those who haven't got it.

—George Bernard Shaw

#21 User is offline   crewjones33 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 56
  • Joined: 14-October 10

Posted 18 November 2010 - 06:04 PM

That is finished and it seems to be helping. Do you have any ideal how i can resolve my card reader problem?

#22 User is offline   Budapest 

  • Bleepin' Cynic
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Moderator
  • Posts: 22,235
  • Joined: 11-November 06
  • Gender:Male

Posted 18 November 2010 - 06:06 PM

First I want to have a look at the log from the chkdsk we just ran.

Go Start > Run and type "eventvwr.msc" (without the quotes). Click on Application and select the most recent winlogon entry. It should give the chkdsk log.

Post the log back here in your next reply.
The power of accurate observation is commonly called cynicism by those who haven't got it.

—George Bernard Shaw

#23 User is offline   crewjones33 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 56
  • Joined: 14-October 10

Posted 18 November 2010 - 06:34 PM

Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1001
Date: 11/16/2010
Time: 7:33:36 PM
User: N/A
Computer: HOME
Description:
Checking file system on C:
The type of the file system is NTFS.

A disk check has been scheduled.
Windows will now check the disk.
Cleaning up minor inconsistencies on the drive.
Cleaning up 6598 unused index entries from index $SII of file 0x9.
Cleaning up 6598 unused index entries from index $SDH of file 0x9.
Cleaning up 6598 unused security descriptors.
CHKDSK is verifying Usn Journal...
Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
Free space verification is complete.

117210208 KB total disk space.
114151244 KB in 124818 files.
58412 KB in 14014 indexes.
0 KB in bad sectors.
444540 KB in use by the system.
65536 KB occupied by the log file.
2556012 KB available on disk.

4096 bytes in each allocation unit.
29302552 total allocation units on disk.
639003 allocation units available on disk.

Internal Info:
10 8e 02 00 5a 1e 02 00 05 38 03 00 00 00 00 00 ....Z....8......
23 09 00 00 02 00 00 00 cd 20 00 00 00 00 00 00 #........ ......
aa 19 d5 07 00 00 00 00 6c 07 18 60 00 00 00 00 ........l..`....
40 e2 3d 63 00 00 00 00 7c 7d ec 78 0a 00 00 00 @.=c....|}.x....
ee 66 07 80 00 00 00 00 6e 7d cb d3 0b 00 00 00 .f......n}......
99 9e 36 00 00 00 00 00 98 38 07 00 92 e7 01 00 ..6......8......
00 00 00 00 00 30 3d 37 1b 00 00 00 be 36 00 00 .....0=7.....6..

Windows has finished checking your disk.
Please wait while your computer restarts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

#24 User is offline   Budapest 

  • Bleepin' Cynic
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Moderator
  • Posts: 22,235
  • Joined: 11-November 06
  • Gender:Male

Posted 18 November 2010 - 08:44 PM

What is the make and model number of your computer?
The power of accurate observation is commonly called cynicism by those who haven't got it.

—George Bernard Shaw

#25 User is offline   crewjones33 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 56
  • Joined: 14-October 10

Posted 19 November 2010 - 04:37 AM

There is no make and model. I built the computer myself about 5 yrs ago. It is a gigabyte motherboard, celeron 2.9 processer, 2 gigabytes of ram.

#26 User is offline   Budapest 

  • Bleepin' Cynic
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Moderator
  • Posts: 22,235
  • Joined: 11-November 06
  • Gender:Male

Posted 19 November 2010 - 05:09 PM

Check your devices in Device Manager (Start > Run > type "devmgmt.msc" (without the quotes) and press Enter). Look for any "!", "?" or "X" symbols.

Also, exactly what problem are you having with your card reader?
The power of accurate observation is commonly called cynicism by those who haven't got it.

—George Bernard Shaw

#27 User is offline   crewjones33 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 56
  • Joined: 14-October 10

Posted 20 November 2010 - 05:49 PM

There are no kind of errors at all in the device manager. I installed the device it worked for about five minutes. Then an error message came up and said " usb device has exceeded the power limits" or something close to that.

#28 User is offline   Budapest 

  • Bleepin' Cynic
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Moderator
  • Posts: 22,235
  • Joined: 11-November 06
  • Gender:Male

Posted 21 November 2010 - 04:07 AM

Can you try reinstalling it. And if you get an error message please copy the EXACT message and post it back here.
The power of accurate observation is commonly called cynicism by those who haven't got it.

—George Bernard Shaw

Share this topic:


  • 2 Pages +
  • 1
  • 2
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users