postheadericon PC very slow….

Hi

My PC is running at the speed of a turtle, I’m pretty sure I have lots of rubbish on here. I am running windows xp. I have posted a HJT log for you to look at. Hope you can help. Many thanks for any help you give me.

Logfile of Trend Micro HijackThis v2.0.0 (BETA) Scan saved at 2:08:21 PM, on 29/05/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) Boot mode: Normal

Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe C:\Program Files\QuickTime\qttask.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Brother\ControlCenter3\brccMCtl.exe C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\System32\snmp.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\MsPMSPSv.exe C:\WINDOWS\system32\fxssvc.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\Program Files\Grisoft\AVG Free\avgcc.exe C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe C:\Program Files\LimeWire\LimeWire.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Documents and Settings\bondandbond\Desktop\HiJackThis_v2.exe

R1 – HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR R0 – HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.xtra.co.nz/ R1 – HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/cust…/www.yahoo.com R0 – HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R1 – HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/…/www.yahoo.com R1 – HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R3 – URLSearchHook: Yahoo! Toolbar – {EF99BD32-C1FB-11D2-892F-0090271D4F88} – (no file) O2 – BHO: Adobe PDF Reader Link Helper – {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} – C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 – BHO: (no name) – {53707962-6F74-2D53-2644-206D7942484F} – C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 – BHO: SSVHelper Class – {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} – C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O4 – HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun O4 – HKLM\..\Run: [BrMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN O4 – HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 – HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 – HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 – HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User ‘LOCAL SERVICE’) O4 – HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User ‘LOCAL SERVICE’) O4 – HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User ‘NETWORK SERVICE’) O4 – HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User ‘SYSTEM’) O4 – HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User ‘Default user’) O4 – S-1-5-18 Startup: AutoPlay.exe (User ‘SYSTEM’) O4 – .DEFAULT Startup: AutoPlay.exe (User ‘Default user’) O4 – .DEFAULT User Startup: AutoPlay.exe (User ‘Default user’) O8 – Extra context menu item: E&xport to Microsoft Excel – res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000 O9 – Extra button: InterCasino $$$ – {909AAEB6-C2CB-4AB5-A7BB-C33B72AB4BFB} – C:\Documents and Settings\bondandbond\Desktop\InterCasino $$$.lnk O9 – Extra ‘Tools’ menuitem: InterCasino $$$ – {909AAEB6-C2CB-4AB5-A7BB-C33B72AB4BFB} – C:\Documents and Settings\bondandbond\Desktop\InterCasino $$$.lnk O9 – Extra button: InterCasino $$$ – {909AAEB6-C2CB-4AB5-A7BB-C33B72AB4BFB} – C:\Documents and Settings\bondandbond\Desktop\InterCasino $$$.lnk (HKCU) O9 – Extra ‘Tools’ menuitem: InterCasino $$$ – {909AAEB6-C2CB-4AB5-A7BB-C33B72AB4BFB} – C:\Documents and Settings\bondandbond\Desktop\InterCasino $$$.lnk (HKCU) O16 – DPF: JT’s Blocks – http://download.games.yahoo.com/game…s/y/blt1_x.cab O16 – DPF: Toki Toki Boom – http://download.games.yahoo.com/game…ts/y/vtm_x.cab O16 – DPF: Yahoo! Blackjack – http://download.games.yahoo.com/game…ts/y/jt0_x.cab O16 – DPF: Yahoo! Canasta – http://download.games.yahoo.com/game…ts/y/yt1_x.cab O16 – DPF: Yahoo! Dice – http://download.games.yahoo.com/game…s/y/dct4_x.cab O16 – DPF: Yahoo! Dots – http://download.games.yahoo.com/game…s/y/dtt1_x.cab O16 – DPF: Yahoo! Go – http://download.games.yahoo.com/game…ts/y/gt2_x.cab O16 – DPF: Yahoo! Graffiti – http://download.games.yahoo.com/game…s/y/grt5_x.cab O16 – DPF: Yahoo! Literati – http://download.games.yahoo.com/game…ts/y/tt4_x.cab O16 – DPF: Yahoo! MahJong – http://download.games.yahoo.com/game…ts/y/ot0_x.cab O16 – DPF: Yahoo! MahJong Solitaire – http://download.games.yahoo.com/game…/y/mjst4_x.cab O16 – DPF: Yahoo! Pool 2 – http://download.games.yahoo.com/game…s/y/pote_x.cab O16 – DPF: Yahoo! Pyramids – http://download.games.yahoo.com/game…s/y/pyt1_x.cab O16 – DPF: Yahoo! Reversi – http://download.games.yahoo.com/game…ts/y/rt0_x.cab O16 – DPF: Yahoo! Spelldown – http://download.games.yahoo.com/game…s/y/sdt1_x.cab O16 – DPF: Yahoo! Word Racer – http://download.games.yahoo.com/game…ts/y/wt1_x.cab O16 – DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) – http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab O16 – DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) – http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab O16 – DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) – http://housecall60.trendmicro.com/housecall/xscan60.cab O16 – DPF: {08EE4BCE-527E-4760-B11A-B829415E9103} (MaxisGolfTeleX Control) – http://www.simgolf.ea.com/teleport/s…sGolfTeleX.cab O16 – DPF: {09C6CAC0-936E-40A0-BC26-707480103DC3} (shizmoo Class) – http://www.uproar.com/applets/active…side_web18.cab O16 – DPF: {1671869C-25B3-4C80-9446-8AE6111F8765} (MaxisHotDateTeleX Control) – http://thesims.ea.com/teleport/hotda…tDateTeleX.cab O16 – DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) – http://go.microsoft.com/fwlink/?LinkID=39204 O16 – DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) – https://www-secure.symantec.com/tech…l/LSSupCtl.cab O16 – DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) – C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 – DPF: {5D1E3FA5-64FF-4387-9418-F1D67AFB2247} (MaxisSuperstarTeleX Control) – http://thesims.ea.com/teleport/super…rstarTeleX.cab O16 – DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) – http://download.bitdefender.com/reso…an8/oscan8.cab O16 – DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) – http://update.microsoft.com/microsof…?1132602849218 O16 – DPF: {6F6DBC29-7A0C-4AC0-A42D-10EC70678526} (Word Cubes Control) – http://www.worldwinner.com/games/v44…e/wordcube.cab O16 – DPF: {7F8C8173-AD80-4807-AA75-5672F22B4582} (ICSScanner Class) – http://download.zonelabs.com/bin/pro…anner37470.cab O16 – DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) – http://www.worldwinner.com/games/shared/wwlaunch.cab O16 – DPF: {90F7E144-984F-4FA6-83A7-C9C8DCB9974C} (RSActiveXObj Control) – http://www.radarsync.com/RSActiveX.ocx O16 – DPF: {94299420-321F-4FF9-A247-62A23EBB640B} (WordMojo Control) – http://www.worldwinner.com/games/v45…o/wordmojo.cab O16 – DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) – http://acs.pandasoftware.com/actives…ree/asinst.cab O16 – DPF: {9D8D7672-93FF-417E-9024-C16AD141C50C} (Haunted Control) – http://www.worldwinner.com/games/v49…ed/haunted.cab O16 – DPF: {A44B714B-EE0F-453E-9300-A69B321FEF6C} (MaxisSimsFamilyTeleX Control) – http://thesims.ea.com/teleport/famil…amilyTeleX.cab O16 – DPF: {ABB660B6-6694-407B-950A-EDBA5A159722} (DVCDownloadControl) – http://download.games.yahoo.com/game…oadControl.cab O16 – DPF: {AE9DCB17-F804-11D2-A44A-0020182C1446} (IntraLaunch.MainControl) – file://E:\SuperCD\IntraLaunch.CAB O16 – DPF: {B06CE1BC-5D9D-4676-BD28-1752DBF394E0} (Hangman Control) – http://www.worldwinner.com/games/v40…an/hangman.cab O16 – DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) – http://messenger.msn.com/download/Ms…Downloader.cab O16 – DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} – http://us.dl1.yimg.com/download.yaho…tocomplete.cab O16 – DPF: {BA94245D-2AA0-4953-9D9F-B0EE4CC02C43} (Tile City Control) – http://www.worldwinner.com/games/v41…y/tilecity.cab O16 – DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (ASquaredScanForm Element) – http://www.windowsecurity.com/trojanscan/axscan.cab O16 – DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) – http://www.worldwinner.com/games/v42/paint/paint.cab O16 – DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) – https://www-secure.symantec.com/tech…l/SymAData.cab O16 – DPF: {D77EF652-9A6B-40C8-A4B9-1C0697C6CF41} (TikGames Online Control) – http://download.games.yahoo.com/game…/goldfever.cab O16 – DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} – http://download.games.yahoo.com/game…ploader_v6.cab O16 – DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) – http://download.games.yahoo.com/game…meLauncher.cab O16 – DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) – http://chat.msn.com/bin/msnchat45.cab O16 – DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Object) – https://casinoclassic.microgaming.co…c/FlashAX2.cab O22 – SharedTaskScheduler: Browseui preloader – {438755C2-A8BA-11D1-B96B-00A0C90312E1} – C:\WINDOWS\System32\browseui.dll O22 – SharedTaskScheduler: Component Categories cache daemon – {8C7461EF-2B13-11d2-BE35-3078302C2030} – C:\WINDOWS\System32\browseui.dll O22 – SharedTaskScheduler: OLE Object – {F5708AB7-AFB6-4F3B-9F4C-7467DE34AED6} – (no file) O23 – Service: Adobe LM Service – Adobe Systems – C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 – Service: AVG7 Alert Manager Server (Avg7Alrt) – GRISOFT, s.r.o. – C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe O23 – Service: AVG7 Update Service (Avg7UpdSvc) – GRISOFT, s.r.o. – C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe O23 – Service: AVG E-mail Scanner (AVGEMS) – GRISOFT, s.r.o. – C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe O23 – Service: InstallDriver Table Manager (IDriverT) – Macrovision Corporation – C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 – Service: NVIDIA Display Driver Service (NVSvc) – NVIDIA Corporation – C:\WINDOWS\system32\nvsvc32.exe O23 – Service: Pml Driver HPZ12 – HP – C:\WINDOWS\System32\HPZipm12.exe

— End of file – 11554 bytes

Related Posts with Thumbnails

Similar articles

  • Computer becomes real slow, but not sure whats wrong
    This few days my computer has become really laggy, but when I used Ad-aware and Spybot S&D they didn’t find anything. So please help me check and see if my logfile is clean, thanks in advance. here’s the logfile: Logfile of HijackThis v1.99.1 Scan saved at 11:23:33 PM, on 6/7/2005 Platform:
    ...
  • Laptop running very slow – D-A
    I am currently running a Toshiba Satellite 1800 laptop and it has started to run very very slowly. I have run spybot S&D, ad-aware SE, AVG antivirus and AVG antispyware. I have deleted a lot of low use programs from my hard drive and defragmented the hard drive. I don’t know what else to do.
    ...
  • Computer running extremely slow
    Logfile of HijackThis v1.99.1 Scan saved at 8:25:24 AM, on 12/15/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe C:\Program Files\Dell\Bluetooth Software\bin\btwdins.exe C:\Program Files\ewido\security suite\ewidoctrl.exe C:\WINDOWS\runservice.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\wltrysvc.exe C:\WINDOWS\System32\bcmwltry.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\WINDOWS\BCMSMMSG.exe C:\WINDOWS\System32\WLTRAY.exe
    ...
  • HelP! My Computer is going Mega Slow! What’s wrong??
    Update your HJT. Boot in Safe Mode. UNinstall anything to do with this crap: C:\PROGRA~1\AWS\WEATHE~1\Weather.exe C:\Program Files\Warez P2P Client\warez.exe Run HJT on its own and let it ‘fix’(if still there): C:\Program Files\Winamp\winampa.exe C:\PROGRA~1\AWS\WEATHE~1\Weather.exe C:\Program Files\Warez P2P Client\warez.exe R1 – HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dellnet.com R0 – HKCU\Software\Microsoft\Internet Explorer\Main,Start
    ...
  • Computer very slow
    Hello, Here is the second part of the hijack this file: Part 2, O14 – IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=kpl020581&firstName=Keda&qs=L BHBKPJLJDPIJDDHCJPPKHDCBFDHADDKOIDMKFBNBOEJJKBHEOB OKKLPHDHMKDJEPNJBAKOIPDEAGOCHILDIMLAMEJIHAFGMDBBJJ LGGDHEPEOOMANFLBBLONGDOEDBE|GPEAPPBDDGNMCNOPADEEAA GOBAFDF O16 – DPF: Fortune Bingo by pogo – http://superbingo.pogo.com/applet-5….-ob-assets.cab O16 – DPF: Yahoo! Chat 1.3 – http://jcs.chat.dcn.yahoo.com/c174/chat.cab O16 – DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) – http://messenger.zone.msn.com/binary…r.cab31267.cab O16 – DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class)
    ...

Leave a Reply

  • chong: Alongside slimming the startup list, also run a diskcleanup. After that a full defrag will help speedup...
  • Eric Hollis: I have no doubt that breaking the symmetry of treating all icons (desktop or not) as windows would...
  • Nancey Haag: After that my machine performed MUCH better. I know this shouldn’t make a difference, but it was...
  • Jacob Bowles: “Well MacOSXHints has it wrong. Sorry guys, what is slowing down your machines is the size of the...
  • Daryl House: To do this set up a cron script to automatically delete it every night at around 2 am.