WiredWX Hobby Weather ToolsLog in

 


Computer is freezing up and running slow

2 posters

descriptionComputer is freezing up and running slow EmptyComputer is freezing up and running slow

more_horiz
I have a problem with my computer freezing up and running slow. I am using windows xp and i start the computer up which takes a long time to load up. Then I go to open something up like spybot, my computer or anything and it takes forever to open then it will freeze up on me. Then I wait awhile and then it unfreezes and sometimes it doesn't. It takes a long time for it to unfreeze sometimes. If it doesn't unfreeze I have to shut of the computer manually by hand. I have a lot of virus and anti spyware programs. I don't know which ones to use if any will help my problem. I can't believe i am on the internet right now cause it freeze up to or want load up. So i hope someone can help fix my computer so it stops freezing up and running slow.

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
Hello.

Please visit this webpage for instructions for downloading and running ComboFix:

http://www.bleepingcomputer.com/combofix/how-to-use-combofix

Post the log from ComboFix when you've accomplished that.

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
Internet keeps freezing up as I type I type a little then i have to wait forever to type again it keeps doing it on in on again. It freezes up after every word i type. It is taking me forever to send this message. Took me forever to run combofix and get the log and i was about to give up but didn't. So her is the log from Combofix.

ComboFix 10-01-19.01 - Jonathan Murray 01/19/2010 16:41:35.2.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.479.115 [GMT -5:00]
Running from: c:\program files\ComboFix.exe
AV: AVG Internet Security *On-access scanning disabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
FW: AVG Firewall *enabled* {8decf618-9569-4340-b34a-d78d28969b66}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\program files\Internet Explorer\SET53.tmp
c:\program files\Internet Explorer\SET59.tmp
c:\windows\system32\UACyrrmxelhfvykjsm.db

.
((((((((((((((((((((((((( Files Created from 2009-12-19 to 2010-01-19 )))))))))))))))))))))))))))))))
.

2010-01-18 02:53 . 2010-01-18 02:54 595499 ----a-w- c:\program files\Autoruns.zip
2010-01-17 05:50 . 2010-01-17 05:50 -------- d-----w- c:\documents and settings\Jonathan Murray\Local Settings\Application Data\Threat Expert
2010-01-16 19:51 . 2010-01-16 19:55 -------- d-----w- c:\program files\hpHosts
2010-01-16 19:50 . 2010-01-16 19:50 1026759 ----a-w- c:\program files\hpHosts-Setup-Win32.exe
2010-01-16 05:09 . 2010-01-16 05:09 800544 ----a-w- c:\program files\jre-6u17-windows-i586-iftw-rv.exe
2010-01-16 04:55 . 2010-01-16 04:59 27386256 ----a-w- c:\program files\AdbeRdr930_en_US.exe
2010-01-15 22:07 . 2010-01-15 22:07 843187 ----a-w- c:\program files\SecurityCheck.exe
2010-01-14 23:13 . 2010-01-14 23:13 2672312 ----a-w- c:\program files\esetsmartinstaller_enu.exe
2010-01-13 20:05 . 2010-01-19 20:14 3829479 ----a-r- c:\program files\ComboFix.exe
2010-01-13 02:56 . 2009-11-21 15:51 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2010-01-11 04:40 . 2009-11-10 15:26 767952 ----a-w- c:\windows\BDTSupport.dll
2010-01-11 04:40 . 2009-11-10 15:28 149456 ----a-w- c:\windows\SGDetectionTool.dll
2010-01-11 04:40 . 2009-11-10 15:28 165840 ----a-w- c:\windows\PCTBDRes.dll
2010-01-11 04:40 . 2009-11-10 15:28 1640400 ----a-w- c:\windows\PCTBDCore.dll
2010-01-11 04:40 . 2009-10-28 06:36 1152444 ----a-w- c:\windows\UDB.zip
2010-01-11 04:40 . 2008-11-26 17:08 131 ----a-w- c:\windows\IDB.zip
2010-01-11 04:04 . 2010-01-11 04:08 34628432 ----a-w- c:\program files\sdsetup.exe
2010-01-10 23:40 . 2010-01-10 23:40 -------- d-----w- c:\documents and settings\Administrator.JONATHAN\Application Data\SUPERAntiSpyware.com
2010-01-10 22:03 . 2010-01-19 17:36 0 ----a-w- c:\documents and settings\Jonathan Murray\Local Settings\Application Data\prvlcl.dat
2010-01-07 21:39 . 2010-01-07 23:30 -------- d-----w- C:\$AVG
2010-01-07 21:38 . 2010-01-07 21:38 12464 ----a-w- c:\windows\system32\avgrsstx.dll
2010-01-07 21:38 . 2010-01-19 20:24 -------- d-----w- c:\windows\system32\drivers\Avg
2010-01-07 21:36 . 2010-01-07 21:36 25608 ----a-w- c:\windows\system32\drivers\AVGIDSxx.sys
2010-01-07 21:36 . 2010-01-07 21:36 161800 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2010-01-07 21:36 . 2010-01-07 21:36 360584 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2010-01-07 21:36 . 2010-01-07 21:36 333192 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2010-01-07 21:36 . 2010-01-07 21:36 28424 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2010-01-07 21:34 . 2010-01-07 21:34 50968 ----a-w- c:\windows\system32\avgfwdx.dll
2010-01-07 21:34 . 2010-01-07 21:34 30104 ----a-w- c:\windows\system32\drivers\avgfwdx.sys
2010-01-07 21:34 . 2010-01-07 21:34 -------- d-----w- c:\program files\AVG
2010-01-07 21:34 . 2010-01-11 13:17 -------- d-----w- c:\documents and settings\All Users\Application Data\avg9
2010-01-07 18:43 . 2010-01-07 20:25 163713 ----a-w- c:\windows\system32\drivers\sfi.dat
2010-01-07 18:34 . 2010-01-07 20:27 -------- d-----w- c:\program files\COMODO
2010-01-07 18:28 . 2010-01-07 18:33 40603920 ----a-w- c:\program files\CIS_Setup_3.13.125662.579_XP_Vista_x32.exe
2010-01-07 18:00 . 2010-01-07 18:00 891248 ----a-w- c:\program files\avg_free_stb_all_9_40_cnet.exe
2010-01-05 22:45 . 2010-01-05 22:45 -------- d-----w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2010-01-05 22:44 . 2010-01-05 22:45 -------- d-----w- c:\program files\SUPERAntiSpyware
2010-01-05 22:44 . 2010-01-05 22:44 -------- d-----w- c:\documents and settings\Jonathan Murray\Application Data\SUPERAntiSpyware.com
2010-01-05 22:44 . 2010-01-05 22:44 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-01-05 22:42 . 2010-01-05 22:44 7451168 ----a-w- c:\program files\SUPERAntiSpywarePro.exe
2010-01-05 18:43 . 2010-01-05 18:43 -------- d-----w- c:\documents and settings\Jonathan Murray\Application Data\Malwarebytes
2010-01-05 18:42 . 2010-01-07 21:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-05 18:42 . 2010-01-05 18:42 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-01-05 18:42 . 2010-01-07 21:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-05 18:42 . 2010-01-11 22:26 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-05 18:40 . 2010-01-05 18:41 5061520 ----a-w- c:\program files\mbam-setup.exe
2010-01-02 02:55 . 2010-01-05 05:20 8086544 ----a-w- c:\program files\Firefox Setup 3.5.6.exe
2009-12-23 08:35 . 2009-12-23 14:54 -------- d-----w- C:\a725013441aa0de15deab303a87e0b7b
2009-12-23 04:35 . 2009-12-23 07:19 -------- d-----w- C:\0b93e35ba6ecc3299040c52d
2009-12-23 02:14 . 2009-12-23 19:55 -------- d-----w- c:\program files\Unlocker
2009-12-22 06:42 . 2009-12-22 06:42 -------- d-s---w- c:\documents and settings\NetworkService\UserData

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-19 17:43 . 2008-05-16 01:32 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2010-01-18 03:11 . 2004-03-25 03:00 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2010-01-16 05:12 . 2009-10-11 22:11 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-01-16 05:12 . 2004-12-01 21:15 -------- d-----w- c:\program files\Java
2010-01-16 05:05 . 2004-03-24 01:01 -------- d-----w- c:\program files\Common Files\Adobe
2010-01-13 17:55 . 2008-05-16 23:20 -------- d-----w- c:\program files\Spyware Doctor
2010-01-13 05:24 . 2009-06-01 23:24 0 ----a-w- C:\qinfo.dat
2010-01-11 18:32 . 2005-01-08 16:28 -------- d-----w- c:\program files\Spybot - Search & Destroy
2010-01-11 18:21 . 2009-06-02 20:26 -------- d-----w- c:\program files\Spybot - Search & Destroy1
2010-01-05 05:49 . 2009-12-04 00:27 -------- d-----w- c:\documents and settings\Jonathan Murray\Application Data\BitTorrent
2010-01-04 06:55 . 2009-08-31 05:12 -------- d-----w- c:\program files\WildGames
2010-01-04 06:29 . 2010-01-04 06:29 44024 ----a-w- c:\program files\bookmarks1-3-09.html
2009-12-31 05:26 . 2006-01-30 19:12 44240 ----a-w- c:\documents and settings\LocalService\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-12-23 20:28 . 2008-12-14 01:25 -------- d-----w- c:\documents and settings\All Users\Application Data\SmartSound Software Inc
2009-12-23 20:20 . 2004-03-23 22:31 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-12-23 19:32 . 2004-04-07 23:57 44240 ----a-w- c:\documents and settings\Jonathan Murray\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-12-23 15:22 . 2006-05-30 20:25 -------- d-----w- c:\documents and settings\All Users\Application Data\Sonic
2009-12-23 15:19 . 2006-05-30 20:25 -------- d-----w- c:\program files\Common Files\Sonic Shared
2009-12-23 15:18 . 2006-05-30 20:22 -------- d-----w- c:\program files\Common Files\Roxio Shared
2009-12-23 15:18 . 2006-05-30 20:23 -------- d-----w- c:\documents and settings\All Users\Application Data\Roxio
2009-12-05 07:42 . 2009-12-05 07:41 -------- d-----w- c:\documents and settings\Jonathan Murray\Application Data\Nero
2009-12-05 07:41 . 2009-12-05 07:41 -------- d-----w- c:\documents and settings\All Users\Application Data\LightScribe
2009-12-05 07:41 . 2007-04-04 16:59 -------- d-----w- c:\program files\Common Files\LightScribe
2009-12-05 07:39 . 2009-12-05 07:20 -------- d-----w- c:\program files\Common Files\Nero
2009-12-05 07:38 . 2007-04-04 16:55 -------- d-----w- c:\program files\Nero
2009-12-05 07:25 . 2007-04-04 16:55 -------- d-----w- c:\documents and settings\All Users\Application Data\Nero
2009-12-05 06:33 . 2009-12-05 06:08 214167816 ----a-w- c:\program files\Nero-9.4.26.0_trial.exe
2009-12-04 23:36 . 2009-12-04 23:30 -------- d-----w- c:\program files\Cucusoft
2009-12-04 23:35 . 2009-12-04 23:35 2081039 ----a-w- c:\program files\dvd-author.exe
2009-12-04 23:29 . 2009-12-04 23:29 3119665 ----a-w- c:\program files\dvd-burner.exe
2009-12-04 23:26 . 2009-12-04 23:26 -------- d-----w- c:\documents and settings\Jonathan Murray\Application Data\AnvSoft
2009-12-04 23:26 . 2009-12-04 23:26 -------- d-----w- c:\program files\AnvSoft
2009-12-04 23:26 . 2009-12-04 23:24 15672013 ----a-w- c:\program files\avc-free.exe
2009-12-04 23:23 . 2009-12-04 22:56 -------- d-----w- c:\documents and settings\Jonathan Murray\Application Data\Vso
2009-12-04 23:23 . 2009-12-04 22:56 47360 ----a-w- c:\documents and settings\Jonathan Murray\Application Data\pcouffin.sys
2009-12-04 22:56 . 2009-12-04 22:56 47360 ------w- c:\windows\system32\drivers\pcouffin.sys
2009-12-04 22:54 . 2009-12-04 22:52 18026336 ----a-w- c:\program files\vsoConvertXtoDVD4_setup.exe
2009-12-04 22:22 . 2009-12-04 22:11 -------- d-----w- c:\documents and settings\Jonathan Murray\Application Data\DivX
2009-12-04 19:53 . 2009-12-04 19:52 -------- d-----w- c:\program files\DivX
2009-12-04 19:52 . 2009-12-04 19:52 -------- d-----w- c:\program files\Common Files\DivX Shared
2009-12-04 19:51 . 2009-12-04 19:49 23804080 ----a-w- c:\program files\DivXInstaller.exe
2009-12-04 19:14 . 2009-12-04 19:14 6104788 ----a-w- c:\program files\burnaware_free242.exe
2009-12-04 00:26 . 2009-12-04 00:25 -------- d-----w- c:\program files\BitTorrent
2009-12-04 00:14 . 2009-12-04 00:13 3066744 ----a-w- c:\program files\BitTorrent-6.3c.exe
2009-12-02 23:12 . 2009-12-02 23:12 8084968 ----a-w- c:\program files\Firefox Setup 3.5.5.exe
2009-12-02 00:03 . 2008-01-06 17:12 -------- d-----w- c:\documents and settings\Jonathan Murray\Application Data\LimeWire
2009-11-21 15:51 . 2003-11-08 12:00 471552 ----a-w- c:\windows\AppPatch\aclayers.dll
2009-11-14 00:47 . 2009-11-14 00:47 90112 ------w- c:\windows\system32\dpl100.dll
2009-11-14 00:47 . 2009-11-14 00:47 856064 ------w- c:\windows\system32\divx_xx0c.dll
2009-11-14 00:47 . 2009-11-14 00:47 856064 ------w- c:\windows\system32\divx_xx07.dll
2009-11-14 00:47 . 2009-11-14 00:47 847872 ------w- c:\windows\system32\divx_xx0a.dll
2009-11-14 00:47 . 2009-11-14 00:47 843776 ------w- c:\windows\system32\divx_xx16.dll
2009-11-14 00:47 . 2009-11-14 00:47 839680 ------w- c:\windows\system32\divx_xx11.dll
2009-11-14 00:47 . 2009-11-14 00:47 696320 ------w- c:\windows\system32\DivX.dll
2009-11-09 16:20 . 2009-06-02 04:10 207792 ----a-w- c:\windows\system32\drivers\PCTCore.sys
2009-11-05 06:03 . 2001-09-17 05:56 77607 ----a-w- c:\windows\PCHEALTH\HELPCTR\OfflineCache\index.dat
2009-10-30 16:11 . 2009-06-02 04:11 233136 ----a-w- c:\windows\system32\drivers\pctgntdi.sys
2009-10-29 05:38 . 2003-11-08 12:00 667136 ------w- c:\windows\system32\wininet.dll
2009-10-07 20:01 . 2009-10-07 20:01 3340064 ----a-w- c:\program files\UnityWebPlayer.exe
2009-10-04 17:12 . 2009-10-04 17:11 12541248 ----a-w- c:\program files\RLCSetup.exe
2009-09-15 19:44 . 2009-09-15 19:42 25685128 ----a-w- c:\program files\wordview_en-us.exe
2009-09-15 19:26 . 2009-09-15 19:26 13824 ----a-r- c:\program files\TRU_Unicru_92908.doc
2009-09-12 20:16 . 2009-09-12 20:16 4122416 ----a-w- c:\program files\freeclip.exe
2009-09-11 23:10 . 2009-09-11 22:55 52736 ----a-w- c:\program files\oown_resume_template.doc
2009-09-04 19:49 . 2009-09-04 19:47 11729274 ----a-w- c:\program files\installeasyjob.exe
2009-09-02 19:29 . 2009-09-02 19:29 8050536 ----a-w- c:\program files\Firefox Setup 3.5.2.exe
2009-07-07 23:46 . 2009-07-07 23:45 359656 ----a-w- c:\program files\msicuu2.exe
2009-02-17 01:18 . 2009-02-16 04:28 16939888 ----a-w- c:\program files\IE8-WindowsXP-x86-ENU.exe
2008-11-23 17:56 . 2008-11-23 17:56 25740144 ----a-w- c:\program files\wmp11-windowsxp-x86-enu.exe
2008-09-06 03:18 . 2005-01-03 03:29 1505160 ----a-w- c:\program files\install_easyshare.exe
2008-07-04 00:24 . 2008-07-04 00:21 1445888 ----a-w- c:\program files\WinsockxpFix.exe
2008-05-31 02:17 . 2008-05-31 02:07 9723880 ----a-w- c:\program files\spybotsd152.exe
2008-05-29 00:21 . 2008-05-29 00:21 1244712 ----a-w- c:\program files\SetupOneCare.exe
2008-05-28 03:12 . 2008-05-28 03:12 7608344 ----a-w- c:\program files\spyhunterFULL.exe
2008-05-09 13:47 . 2008-05-09 13:47 1206366 ----a-w- c:\program files\wrar371.exe
2008-05-09 13:43 . 2008-05-09 13:43 244784 ----a-w- c:\program files\gnie_s_dvd4-iml2iso.rar
2008-05-09 03:44 . 2008-05-09 03:44 10121656 ----a-w- c:\program files\Alcohol120_trial_1.9.7.6221.exe
2008-05-09 03:28 . 2008-05-09 03:28 1385051 ----a-w- c:\program files\cddvdgen.zip
2008-05-09 03:12 . 2008-05-09 03:12 899414 ----a-w- c:\program files\SetupDVDDecrypter_3.5.4.0.exe
2008-04-06 17:28 . 2008-04-06 17:28 569777 ----a-w- c:\program files\DVD43_4-2-0_Setup.exe
2008-01-05 18:20 . 2008-01-05 18:20 3381280 ----a-w- c:\program files\LimeWireWin.exe
2006-06-18 00:07 . 2006-06-18 00:07 1522527 ----a-w- c:\program files\dvdrip32572.exe
2006-06-12 18:48 . 2006-06-12 18:48 1160885 ----a-w- c:\program files\DVDRegionFree59.exe
2006-06-04 05:56 . 2006-06-04 05:56 302680 ----a-w- c:\program files\ac3filter_0_70b.exe
2006-06-04 05:50 . 2006-06-04 05:50 156181 ----a-w- c:\program files\MpegDecoder012.zip
2006-06-04 00:49 . 2006-06-04 00:49 6973792 ----a-w- c:\program files\iaplayer_2.60.12.0201_esd.exe
2006-06-03 21:08 . 2006-06-03 21:08 5753886 ----a-w- c:\program files\psp_video_express.exe
2006-05-15 00:22 . 2006-05-15 00:17 5779942 ----a-w- c:\program files\psp_movie_creator.exe
2006-05-14 21:15 . 2006-03-12 21:49 3457413 ----a-w- c:\program files\1clickdvdcopysetup.exe
2006-03-12 19:17 . 2006-03-12 19:17 521403 ----a-w- c:\program files\DVD43_3-7-0_Setup.exe
2006-03-12 16:38 . 2006-03-11 23:17 3878912 ----a-w- c:\program files\ICopyDVDs2_30DayTrial_EN_v4.1.0.2.exe
2006-01-30 01:05 . 2006-01-30 01:05 7391952 ----a-w- c:\program files\ewido-setup.exe
2005-11-03 23:52 . 2005-09-24 15:43 64 ---ha-w- c:\program files\AppUpdate.log
2005-09-25 14:31 . 2005-09-25 14:31 194835 ----a-w- c:\program files\ringtoneripper.exe
2005-09-24 02:14 . 2005-09-24 02:14 24265736 ----a-w- c:\program files\dotnetfx.exe
2005-03-03 23:40 . 2005-03-03 21:35 20798256 ----a-w- c:\program files\AdbeRdr70_enu_full.exe
2005-01-09 22:50 . 2005-01-09 22:39 2145414 ----a-w- c:\program files\OneTouch.exe
2005-01-08 02:48 . 2005-01-08 02:48 4354084 ----a-w- c:\program files\spybotsd13.exe
2004-02-20 07:38 . 2004-03-23 23:18 1760378 ----a-w- c:\program files\aaw6.exe
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2006-12-23 143360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2006-09-11 86960]
"HostManager"="c:\program files\Common Files\AOL\1155679928\ee\AOLSoftware.exe" [2006-09-26 50736]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2006-02-19 49152]
"LanguageShortcut"="c:\program files\CyberLink\PowerDVD\Language\Language.exe" [2006-12-06 54832]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"AVG9_TRAY"="c:\progra~1\AVG\AVG9\avgtray.exe" [2010-01-09 2033432]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2010-01-16 149280]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"tscuninstall"="c:\windows\system32\tscupgrd.exe" [2004-08-04 44544]

c:\documents and settings\All Users\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk.disabled [2006-12-23 1808]
HP Photosmart Premier Fast Start.lnk.disabled [2006-12-23 798]
NETGEAR WG311v3 Smart Wizard.lnk - c:\program files\NETGEAR\WG311v3\wlancfg5.exe [2006-1-26 1486848]

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 19:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2010-01-07 21:38 12464 ----a-w- c:\windows\system32\avgrsstx.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\OneCareMP]
@=""

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice]
@=""

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice]
@=""

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
backup=c:\windows\pss\Adobe Reader Speed Launch.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Kodak EasyShare software.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Kodak EasyShare software.lnk
backup=c:\windows\pss\Kodak EasyShare software.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Kodak software updater.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Kodak software updater.lnk
backup=c:\windows\pss\Kodak software updater.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Microsoft Works Calendar Reminders.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Microsoft Works Calendar Reminders.lnk
backup=c:\windows\pss\Microsoft Works Calendar Reminders.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
NvQTwk [X]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AOLDialer]
2006-10-23 12:50 71216 ----a-r- c:\program files\Common Files\AOL\ACS\AOLDial.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CARPService]
2002-01-03 03:06 4608 ------w- c:\windows\system32\carpserv.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\dvd43]
2008-03-01 19:49 826880 ----a-w- c:\program files\dvd43\DVD43_Tray.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMEKRMIG6.1]
2001-08-18 22:00 44032 ----a-w- c:\windows\ime\imkr6_1\imekrmig.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
2004-08-04 05:31 208952 ----a-w- c:\windows\ime\imjp8_1\imjpmig.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISTray]
2009-11-18 17:47 1243088 ----a-w- c:\program files\Spyware Doctor\pctsTray.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Microsoft Works Portfolio]
2000-07-13 20:00 311350 ----a-w- c:\program files\Microsoft Works\wkssb.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Microsoft Works Update Detection]
2000-07-13 20:00 28739 ----a-w- c:\program files\Microsoft Works\WkDetect.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Smapp]
2001-10-12 23:45 69632 ----a-w- c:\program files\Analog Devices\SoundMAX\SMTray.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WorksFUD]
2000-07-13 20:00 24576 ----a-w- c:\program files\Microsoft Works\wkfud.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"MCVSRte"=2 (0x2)

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe"

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

R0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2008-05-09 716272]
R2 msCMTSrvc;Content Monitoring Tool;c:\windows\system32\msCMTSrvc.exe [x]
R3 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwdx.sys [2010-01-07 30104]
R3 Roxio UPnP Renderer 11;Roxio UPnP Renderer 11;c:\program files\Roxio Creator 2009\Digital Home 11\RoxioUPnPRenderer11.exe [x]
R3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [2009-12-16 7408]
R3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe [2009-10-30 359624]
R3 SWNC8U12;Sierra Wireless MUX NDIS Driver (UMTS12);c:\windows\system32\DRIVERS\swnc8u12.sys [2007-06-15 82432]
R3 swumx12;Sierra Wireless USB MUX Driver (UMTS12);c:\windows\system32\DRIVERS\swumx12.sys [2007-06-15 66304]
R3 USB-100;SMC Compact USB to Ethernet converter;c:\windows\system32\DRIVERS\SMC2208.SYS [2001-09-25 27519]
S0 AVGIDSErHrxpx;AVG9IDSErHr;c:\windows\System32\Drivers\AVGIDSxx.sys [2010-01-07 25608]
S0 AvgRkx86;avgrkx86.sys;c:\windows\System32\Drivers\avgrkx86.sys [2010-01-07 161800]
S0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [2009-11-09 207792]
S1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\System32\Drivers\avgldx86.sys [2010-01-07 333192]
S1 AvgTdiX;AVG Network Redirector;c:\windows\System32\Drivers\avgtdix.sys [2010-01-07 360584]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2009-12-16 9968]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.sys [2009-12-16 74480]
S2 avg9emc;AVG E-mail Scanner;c:\program files\AVG\AVG9\avgemc.exe [2010-01-07 906520]
S2 avg9wd;AVG WatchDog;c:\program files\AVG\AVG9\avgwdsvc.exe [2010-01-09 285392]
S2 avgfws9;AVG Firewall;c:\program files\AVG\AVG9\avgfws9.exe [2010-01-15 2304192]
S2 AVGIDSAgent;AVG9IDSAgent;c:\program files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe AVGIDSAgent [x]
S2 Browser Defender Update Service;Browser Defender Update Service;c:\program files\Spyware Doctor\BDT\BDTUpdateService.exe [2009-11-10 112592]
S2 wwEngineSvc;Window Washer Engine;c:\program files\Webroot\Washer\WasherSvc.exe [2007-09-05 389448]
S3 Avgfwdx;Avgfwdx;c:\windows\system32\DRIVERS\avgfwdx.sys [2010-01-07 30104]
S3 AVGIDSDriverxpx;AVG9IDSDriver;c:\program files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_XP\AVGIDSDriver.sys [2010-01-07 122376]
S3 AVGIDSFilterxpx;AVG9IDSFilter;c:\program files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_XP\AVGIDSFilter.sys [2010-01-07 30216]
S3 AVGIDSShimxpx;AVG9IDSShim;c:\program files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_XP\AVGIDSShim.sys [2010-01-07 25736]


HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
ylmolrez

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2009-08-20 18:24 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Contents of the 'Scheduled Tasks' folder

2010-01-19 c:\windows\Tasks\RegCure Program Check.job
- c:\program files\RegCure\RegCure.exe [2008-04-21 21:21]

2009-12-24 c:\windows\Tasks\RegCure.job
- c:\program files\RegCure\RegCure.exe [2008-04-21 21:21]

2004-03-28 c:\windows\Tasks\Registration reminder 1.job
- c:\windows\System32\OOBE\oobebaln.exe [2006-04-09 00:12]

2004-03-23 c:\windows\Tasks\Registration reminder 2.job
- c:\windows\System32\OOBE\oobebaln.exe [2006-04-09 00:12]

2004-04-08 c:\windows\Tasks\Registration reminder 3.job
- c:\windows\System32\OOBE\oobebaln.exe [2006-04-09 00:12]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
mWindow Title =
uInternet Settings,ProxyServer = 168.94.74.68:8080
IE: &AOL Toolbar Search
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} - hxxp://downloads.ewido.net/ewidoOnlineScan.cab
DPF: {2C8EEB84-6D60-11D4-BD64-0050048A82BF} - hxxp://tech-c.mhi.aol.com/netagent/objects/custappx2.CAB
FF - ProfilePath - c:\documents and settings\Jonathan Murray\Application Data\Mozilla\Firefox\Profiles\2tis2day.default\
FF - prefs.js: browser.search.selectedEngine - Fast Browser Search
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - component: c:\program files\AVG\AVG9\Firefox\components\avgssff.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
FF - hȋdden: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.
- - - - ORPHANS REMOVED - - - -

MSConfigStartUp-SunJavaUpdateSched - c:\program files\Java\j2re1.4.2_06\bin\jusched.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-19 16:58
Windows 5.1.2600 Service Pack 3 NTFS

scanning hȋdden processes ...

scanning hȋdden autostart entries ...

scanning hȋdden files ...

scan completed successfully
hȋdden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(1568)
c:\program files\SUPERAntiSpyware\SASWINLO.dll
.
Completion time: 2010-01-19 17:24:48
ComboFix-quarantined-files.txt 2010-01-19 22:24
ComboFix2.txt 2010-01-13 22:03

Pre-Run: 18,574,524,416 bytes free
Post-Run: 18,533,933,056 bytes free

WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect /NoExecute=OptIn

Current=7 Default=7 Failed=2 LastKnownGood=8 Sets=1,2,3,4,5,6,7,8
- - End Of File - - 832495A42EF3ED8A8F642B898A495317

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
Computer is freezing up and running slow Mbamicontw5 Please download Malwarebytes Anti-Malware from Malwarebytes.org.
Alternate link: BleepingComputer.com.
(Note: if you already have the program installed, just follow the directions. No need to re-download or re-install!)

Double Click mbam-setup.exe to install the application.

(Note: if you already have the program installed, open Malwarebytes from the Start Menu or Desktop shortcut, click the Update tab, and click Check for Updates, before doing the scan as instructed below!)

  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Full Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
  • Please save the log to a location you will remember.
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy and paste the entire report in your next reply.

Extra Note:

If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately.

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
Hey my computer is really slow know it took me an hour just to get here and post a reply. You told me to do all this stuff before in another post cause i had the WIN32/Cryptor virus. After doing everything my computer became slow and freezes up. Takes an hour to do anything then when i get there like right herewhere i am typing it freezes after every letter i type or when i scoll down. I don't know i might have the Win32/Crytor virus or something else. Let me get that log for you it might take a really long time for me to send it if i can. I can't believe i got on the internet cause it took me all day to. I even tried a system restore didn't help.

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
Can't get on Firefox but i can get on internet explorer. why?

Malwarebytes' Anti-Malware 1.44
Database version: 3601
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

01/20/2010 2:05:13 PM
mbam-log-2010-01-20 (14-05-12).txt

Scan type: Full Scan (C:\|)
Objects scanned: 227037
Time elapsed: 4 hour(s), 8 minute(s), 49 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 8

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\System Volume Information\_restore{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP23\A0014192.sys (Malware.Trace) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP23\A0014132.sys (Malware.Trace) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP23\A0014260.sys (Malware.Trace) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP23\A0014412.sys (Malware.Trace) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP24\A0015672.sys (Malware.Trace) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP24\A0015741.sys (Malware.Trace) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP24\A0015884.sys (Malware.Trace) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8238BFE6-44BD-4B25-B0F7-CE65B3815CC9}\RP24\A0015808.sys (Malware.Trace) -> Quarantined and deleted successfully.

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
Let's do a diagnostic. This is a very small download.

Please download V-Tool, and save to your Desktop.
  • Double-click on vtool.zip, and extract the file to your Desktop.
  • Double-click on vtool.cmd to start.
  • !! IMPORTANT !!::: At each prompt ("Press any key to continue..."), wait 10 seconds before pressing a key. This tool needs time to process each prompt.
  • It will finish eventually and launch a log. Do NOT exit the tool. Allow it to finish. (vtool.txt)
  • Post the contents of it in your next reply.

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
V-Tool by DragonMaster Jay


Username: Jonathan Murray - Date: 01/20/2010 - Time: 21:59:25 - Number of processors: 1 - Arch.: x86 SF:


((((( Security Software information )))))


((((( System File Verify )))))

c:\windows\system32\cngaudit.dll is missing! (If Vista/7)

((((( System File Enumeration )))))

Volume in drive C has no label.
Volume Serial Number is E487-EF02

Directory of C:\WINDOWS\$hf_mig$\KB968389\SP2QFE

netlogon.dll
1 File(s) 408,064 bytes

Directory of C:\WINDOWS\$hf_mig$\KB975467\SP2QFE

netlogon.dll
1 File(s) 408,064 bytes

Directory of C:\WINDOWS\$NtServicePackUninstall$

scecli.dll atapi.sys netlogon.dll eventlog.dll
4 File(s) 738,432 bytes

Directory of C:\WINDOWS\$NtUninstallQ306583$

atapi.sys
1 File(s) 86,656 bytes

Directory of C:\WINDOWS\ERDNT\cache

scecli.dll beep.sys eventlog.dll
atapi.sys netlogon.dll
5 File(s) 745,344 bytes

Directory of C:\WINDOWS\ServicePackFiles\i386

scecli.dll atapi.sys netlogon.dll eventlog.dll
4 File(s) 741,120 bytes

Directory of C:\WINDOWS\system32

scecli.dll netlogon.dll eventlog.dll
3 File(s) 644,608 bytes

Directory of C:\WINDOWS\system32\dllcache

beep.sys
1 File(s) 4,224 bytes

Directory of C:\WINDOWS\system32\drivers

atapi.sys beep.sys
2 File(s) 100,736 bytes

Total Files Listed:
22 File(s) 3,877,248 bytes
0 Dir(s) 18,327,846,912 bytes free

-----------------------------

+++ End-of-file +++

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
Please download Rooter and Save it to your desktop

  1. Double click it to start the tool.
  2. Click Scan.
  3. Eventually, a Notepad file containing the report will open, also found at C:\Rooter.txt. Post that log in your next reply.

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
Can open up Firefox but it want load anything but I can use internet explorer. It is slow sometimes, fast sometimes and freezes up and it doesn't even log on sometimes. It is fast right now and i can believe it.

Rooter.exe (v1.0.2) by Eric_71
.
SeDebugPrivilege granted successfully ...
.
Windows XP Home Edition (5.1.2600) Service Pack 3
[32_bits] - x86 Family 6 Model 6 Stepping 2, AuthenticAMD
.
[wscsvc] (Security Center) RUNNING (state:4)
[SharedAccess] STOPPED (state:1) : Windows Firewall -> Disabled !
.
Internet Explorer 6.0.2900.5512
Mozilla Firefox 3.5.6 (en-US)
.
A:\ [Removable]
C:\ [Fixed-NTFS] .. ( Total:74 Go - Free:17 Go )
D:\ [CD_Rom]
E:\ [CD_Rom]
F:\ [CD_Rom]
.
Scan : 23:27.52
Path : C:\Program Files\Rooter.exe
User : Jonathan Murray ( Administrator -> YES )
.
----------------------\\ Processes
.
Locked [System Process] (0)
______ System (4)
______ \SystemRoot\System32\smss.exe (1432)
______ \??\C:\WINDOWS\system32\csrss.exe (1580)
______ \??\C:\WINDOWS\system32\winlogon.exe (1608)
______ C:\WINDOWS\system32\services.exe (1652)
______ C:\WINDOWS\system32\lsass.exe (1664)
______ C:\WINDOWS\system32\svchost.exe (1828)
______ C:\WINDOWS\system32\svchost.exe (1872)
______ C:\WINDOWS\System32\svchost.exe (172)
______ C:\WINDOWS\System32\svchost.exe (284)
______ C:\Program Files\AVG\AVG9\avgchsvx.exe (352)
______ C:\Program Files\AVG\AVG9\avgrsx.exe (360)
______ C:\WINDOWS\system32\svchost.exe (428)
______ C:\Program Files\AVG\AVG9\avgcsrvx.exe (496)
______ C:\WINDOWS\system32\spoolsv.exe (652)
Locked AVGIDSAgent.exe (952)
______ C:\WINDOWS\Explorer.EXE (1100)
______ C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (1456)
______ C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe (1480)
______ C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (1500)
______ C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe (1508)
______ C:\Program Files\Unlocker\UnlockerAssistant.exe (1552)
Locked avgtray.exe (1572)
______ C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (1940)
______ C:\Program Files\Webroot\Washer\wwDisp.exe (1988)
______ C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (264)
______ C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe (1312)
______ C:\Program Files\AVG\AVG9\Identity Protection\agent\bin\avgidsmonitor.exe (1024)
______ C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe (2776)
______ C:\WINDOWS\System32\svchost.exe (3684)
______ C:\WINDOWS\System32\alg.exe (3384)
______ C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe (3336)
Locked avgwdsvc.exe (2948)
Locked avgfws9.exe (3764)
______ C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe (912)
Locked avgam.exe (1912)
______ C:\Program Files\AVG\AVG9\avgnsx.exe (2616)
______ C:\Program Files\Common Files\LightScribe\LSSrvc.exe (1348)
______ C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe (3560)
______ C:\WINDOWS\System32\nvsvc32.exe (1628)
______ C:\Program Files\CyberLink\Shared Files\RichVideo.exe (1184)
______ C:\WINDOWS\System32\locator.exe (3356)
______ C:\WINDOWS\system32\slserv.exe (2436)
______ C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (3116)
______ C:\WINDOWS\System32\svchost.exe (4040)
______ C:\Program Files\Webroot\Washer\WasherSvc.exe (2940)
______ C:\Program Files\AVG\AVG9\avgemc.exe (2600)
______ C:\Program Files\AVG\AVG9\avgcsrvx.exe (3800)
______ C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (3700)
______ C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe (3380)
______ C:\WINDOWS\system32\wuauclt.exe (1804)
______ C:\Program Files\AVG\AVG9\avgcsrvx.exe (152)
______ C:\WINDOWS\System32\svchost.exe (3100)
______ C:\Program Files\Java\jre6\bin\jqs.exe (2292)
______ C:\Program Files\Internet Explorer\iexplore.exe (4756)
______ C:\Program Files\Rooter.exe (2348)
.
----------------------\\ Device\Harddisk0\
.
\Device\Harddisk0 [Sectors : 63 x 512 Bytes]
.
\Device\Harddisk0\Partition1 --[ MBR ]-- (Start_Offset:32256 | Length:80023233024)
.
----------------------\\ Scheduled Tasks
.
C:\WINDOWS\Tasks\desktop.ini
C:\WINDOWS\Tasks\RegCure Program Check.job
C:\WINDOWS\Tasks\RegCure.job
C:\WINDOWS\Tasks\Registration reminder 1.job
C:\WINDOWS\Tasks\Registration reminder 2.job
C:\WINDOWS\Tasks\Registration reminder 3.job
C:\WINDOWS\Tasks\SA.DAT
.
----------------------\\ Registry
.
.
----------------------\\ Files & Folders
.
----------------------\\ Scan completed at 23:28.45
.
C:\Rooter$\Rooter_1.txt - (21/01/2010 | 23:28.45)

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
Please create a Windows Restore Point!
  • Download Quick Restore Maker v2 by UntameDKreationZ.
  • Save the download to your Desktop. Then, double-click it and Extract all.
  • To Extract, click the Next button repeatedly. Then, it will finish.
  • Double-click the Folder, and then double-click QuickRestoreMaker.exe.
  • It will create a Windows Restore Point. Click Exit when done.


==

Please copy and paste the following in to Notepad:
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters]
"GlobalMaxTcpWindowSize"="256960"
"TcpWindowSize"="256960"
"DefaultTTL"="64"
"EnablePMTUDiscovery"="1"
"DisableTaskOffload"="0"

[HKEY_USERS.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"MaxConnectionsPerServer"=dword:00000010
"MaxConnectionsPer1_0Server"=dword:00000010

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"MaxConnectionsPerServer"=dword:00000010
"MaxConnectionsPer1_0Server"=dword:00000010

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\RemoteComputer\NameSpace\{D6277990-4C6A-11CF-8D87-00AA0060F5BF}]

[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\LanmanServer\Parameters]
"SizReqBuf"="16384"

[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\LanmanWorkstation\Parameters]
"MaxCmds"=dword:00000064
"MaxThreads"=dword:00000064
"MaxCollectionCount"="65535"

Then click File > Save as
File name: internetFIX.reg
Save as type: All Files
Location: Desktop

==

Once saved, Exit Notepad, and double-click on internetFIX.reg and confirm the prompts.

Then, restart your computer.

Let me know if this works or not to make the browsers work better.

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
My computer is still slow but not as slow as it was. Like when i go to start then click on my computer it still takes awhile to load up. It don't just load right up when i open it up That goes with every program. I still can't use Firefox Why? it opens up but want load up my homepage. I have to use Internet Explorer. It loads up but is slow and freezes up from time to time. I have hughes net satellite and it is suppose to be fast and is not. It takes awhile to load up internet. Is that cause my computer is slow? Why don't my programs open right up? It is faster then it was but they still don't open right up they have to load up and freeze up sometimes but not like it use to where i have to wait forever for it to unfreeze.

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
Seems like you still have a rootkit.

Please download the GMER Rootkit Scanner. Unzip it to your Desktop.

Before scanning, make sure all other running programs are closed and no other actions like a scheduled antivirus scan will occur while the scan is being performed. Do not use your computer for anything else during the scan.

Double-click gmer.exe. The program will begin to run.

**Caution**
These types of scans can produce false positives. Do NOT take any action on any
"<--- ROOKIT" entries unless advised!

If possible rootkit activity is found, you will be asked if you would like to perform a full scan.

  • Click NO
  • In the right panel, you will see a bunch of boxes that have been checked ... leave everything checked and ensure the Show all box is un-checked.
  • Now click the Scan button.
    Once the scan is complete, you may receive another notice about rootkit activity.
  • Click OK.
  • GMER will produce a log. Click on the [Save..] button, and in the File name area, type in "GMER.txt"
  • Save it where you can easily find it, such as your desktop.

Post the contents of GMER.txt in your next reply.

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-01-24 20:13:32
Windows 5.1.2600 Service Pack 3
Running: gmer.exe; Driver: C:\DOCUME~1\JONATH~1\LOCALS~1\Temp\fwrcypoc.sys


---- System - GMER 1.0.15 ----

SSDT PCTCore.sys (PC Tools KDS Core Driver/PC Tools) ZwCreateKey [0xF729AE52]
SSDT PCTCore.sys (PC Tools KDS Core Driver/PC Tools) ZwCreateProcess [0xF727BCDE]
SSDT PCTCore.sys (PC Tools KDS Core Driver/PC Tools) ZwCreateProcessEx [0xF727BED0]
SSDT PCTCore.sys (PC Tools KDS Core Driver/PC Tools) ZwDeleteKey [0xF729B640]
SSDT PCTCore.sys (PC Tools KDS Core Driver/PC Tools) ZwDeleteValueKey [0xF729B8F4]
SSDT speh.sys ZwEnumerateKey [0xF7387CA2]
SSDT speh.sys ZwEnumerateValueKey [0xF7388030]
SSDT PCTCore.sys (PC Tools KDS Core Driver/PC Tools) ZwOpenKey [0xF7299B44]
SSDT \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_XP\AVGIDSShim.sys (IDS Application Activity Monitor Loader Driver./AVG Technologies ) ZwOpenProcess [0xF77E8470]
SSDT speh.sys ZwQueryKey [0xF7388108]
SSDT speh.sys ZwQueryValueKey [0xF7387F88]
SSDT PCTCore.sys (PC Tools KDS Core Driver/PC Tools) ZwRenameKey [0xF729BD60]
SSDT PCTCore.sys (PC Tools KDS Core Driver/PC Tools) ZwSetValueKey [0xF729B112]
SSDT \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_XP\AVGIDSShim.sys (IDS Application Activity Monitor Loader Driver./AVG Technologies ) ZwTerminateProcess [0xF77E8520]
SSDT \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_XP\AVGIDSShim.sys (IDS Application Activity Monitor Loader Driver./AVG Technologies ) ZwTerminateThread [0xF77E85C0]
SSDT \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_XP\AVGIDSShim.sys (IDS Application Activity Monitor Loader Driver./AVG Technologies ) ZwWriteVirtualMemory [0xF77E8660]

INT 0x62 ? 8639DBF8
INT 0x73 ? 85FDABF8
INT 0x82 ? 8639DBF8

---- Kernel code sections - GMER 1.0.15 ----

? speh.sys The system cannot find the file specified. !
.text USBPORT.SYS!DllUnload F68CD8AC 5 Bytes JMP 85FDA1D8
.text aslhv33q.SYS F6645384 1 Byte [20]
.text aslhv33q.SYS F6645384 37 Bytes [20, 00, 00, 68, 00, 00, 00, ...]
.text aslhv33q.SYS F66453AA 24 Bytes [00, 00, 20, 00, 00, E0, 00, ...]
.text aslhv33q.SYS F66453C4 3 Bytes [00, 00, 00]
.text aslhv33q.SYS F66453C9 1 Byte [00]
.text ...

---- User code sections - GMER 1.0.15 ----

.text C:\Program Files\Webroot\Washer\wwDisp.exe[208] kernel32.dll!CreateThread + 1A 7C8106F1 4 Bytes CALL 0008F305 C:\Program Files\Webroot\Washer\wwDisp.exe (Window Washer Client Executable/Webroot Software, Inc.)
.text C:\WINDOWS\Explorer.EXE[1180] SHELL32.dll!SHFileOperationW 7CA70924 5 Bytes JMP 021A1102 C:\Program Files\Unlocker\UnlockerHook.dll

---- Kernel IAT/EAT - GMER 1.0.15 ----

IAT \WINDOWS\System32\Drivers\SCSIPORT.SYS[ntoskrnl.exe!DbgBreakPoint] 8639F2D8
IAT pci.sys[ntoskrnl.exe!IoDetachDevice] [F739A93C] speh.sys
IAT pci.sys[ntoskrnl.exe!IoAttachDeviceToDeviceStack] [F739A990] speh.sys
IAT atapi.sys[HAL.dll!READ_PORT_UCHAR] [F736B040] speh.sys
IAT atapi.sys[HAL.dll!READ_PORT_BUFFER_USHORT] [F736B13C] speh.sys
IAT atapi.sys[HAL.dll!READ_PORT_USHORT] [F736B0BE] speh.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_BUFFER_USHORT] [F736B7FC] speh.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_UCHAR] [F736B6D2] speh.sys
IAT \SystemRoot\System32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [F737AD92] speh.sys
IAT \SystemRoot\System32\DRIVERS\USBPORT.SYS[ntoskrnl.exe!DbgBreakPoint] 85FDA2D8
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlInitUnicodeString] 000000A5
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!swprintf] 000000E5
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeSetEvent] 000000F1
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoCreateSymbolicLink] 00000071
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoGetConfigurationInformation] 000000D8
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoDeleteSymbolicLink] 00000031
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmFreeMappingAddress] 00000015
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoFreeErrorLogEntry] 00000004
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoDisconnectInterrupt] 000000C7
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmUnmapIoSpace] 00000023
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!ObReferenceObjectByPointer] 000000C3
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IofCompleteRequest] 00000018
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlCompareUnicodeString] 00000096
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IofCallDriver] 00000005
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmAllocateMappingAddress] 0000009A
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoAllocateErrorLogEntry] 00000007
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoConnectInterrupt] 00000012
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoDetachDevice] 00000080
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeWaitForSingleObject] 000000E2
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeInitializeEvent] 000000EB
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeCancelTimer] 00000027
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlAnsiStringToUnicodeString] 000000B2
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlInitAnsiString] 00000075
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoBuildDeviceIoControlRequest] 00000009
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoQueueWorkItem] 00000083
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmMapIoSpace] 0000002C
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoInvalidateDeviceRelations] 0000001A
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoReportDetectedDevice] 0000001B
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoReportResourceForDetection] 0000006E
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlxAnsiStringToUnicodeSize] 0000005A
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!NlsMbCodePageTag] 000000A0
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!PoRequestPowerIrp] 00000052
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeInsertByKeyDeviceQueue] 0000003B
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!PoRegisterDeviceForIdleDetection] 000000D6
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!sprintf] 000000B3
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmMapLockedPagesSpecifyCache] 00000029
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!ObfDereferenceObject] 000000E3
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoGetAttachedDeviceReference] 0000002F
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoInvalidateDeviceState] 00000084
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!ZwClose] 00000053
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!ObReferenceObjectByHandle] 000000D1
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!ZwCreateDirectoryObject] 00000000
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoBuildSynchronousFsdRequest] 000000ED
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!PoStartNextPowerIrp] 00000020
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoCreateDevice] 000000FC
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlCopyUnicodeString] 000000B1
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoAllocateDriverObjectExtension] 0000005B
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlQueryRegistryValues] 0000006A
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!ZwOpenKey] 000000CB
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlFreeUnicodeString] 000000BE
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoStartTimer] 00000039
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeInitializeTimer] 0000004A
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoInitializeTimer] 0000004C
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeInitializeDpc] 00000058
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeInitializeSpinLock] 000000CF
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoInitializeIrp] 000000D0
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!ZwCreateKey] 000000EF
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlAppendUnicodeStringToString] 000000AA
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlIntegerToUnicodeString] 000000FB
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!ZwSetValueKey] 00000043
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeInsertQueueDpc] 0000004D
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KefAcquireSpinLockAtDpcLevel] 00000033
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoStartPacket] 00000085
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KefReleaseSpinLockFromDpcLevel] 00000045
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoBuildAsynchronousFsdRequest] 000000F9
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoFreeMdl] 00000002
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmUnlockPages] 0000007F
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoWriteErrorLogEntry] 00000050
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeRemoveByKeyDeviceQueue] 0000003C
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmMapLockedPagesWithReservedMapping] 0000009F
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmUnmapReservedMapping] 000000A8
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeSynchronizeExecution] 00000051
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoStartNextPacket] 000000A3
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeBugCheckEx] 00000040
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeRemoveDeviceQueue] 0000008F
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeSetTimer] 00000092
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!_allmul] 0000009D
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmProbeAndLockPages] 00000038
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!_except_handler3] 000000F5
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!PoSetPowerState] 000000BC
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoOpenDeviceRegistryKey] 000000B6
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlWriteRegistryValue] 000000DA
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlDeleteRegistryValue] 00000021
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!_aulldiv] 00000010
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!strstr] 000000FF
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!_strupr] 000000F3
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeQuerySystemTime] 000000D2
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoWMIRegistrationControl] 000000CD
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!KeTickCount] 0000000C
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoAttachDeviceToDeviceStack] 00000013
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoDeleteDevice] 000000EC
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!ExAllocatePoolWithTag] 0000005F
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoAllocateWorkItem] 00000097
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoAllocateIrp] 00000044
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoAllocateMdl] 00000017
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmBuildMdlForNonPagedPool] 000000C4
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmLockPagableDataSection] 000000A7
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoGetDriverObjectExtension] 0000007E
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmUnlockPagableImageSection] 0000003D
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!ExFreePoolWithTag] 00000064
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoFreeIrp] 0000005D
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!IoFreeWorkItem] 00000019
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!InitSafeBootMode] 00000073
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!RtlCompareMemory] 00000060
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!PoCallDriver] 00000081
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!memmove] 0000004F
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[ntoskrnl.exe!MmHighestUserAddress] 000000DC
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!KfAcquireSpinLock] 000000AD
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!READ_PORT_UCHAR] 000000D4
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!KeGetCurrentIrql] 000000A2
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!KfRaiseIrql] 000000AF
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!KfLowerIrql] 0000009C
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!HalGetInterruptVector] 000000A4
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!HalTranslateBusAddress] 00000072
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!KeStallExecutionProcessor] 000000C0
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!KfReleaseSpinLock] 000000B7
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!READ_PORT_BUFFER_USHORT] 000000FD
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!READ_PORT_USHORT] 00000093
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!WRITE_PORT_BUFFER_USHORT] 00000026
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[HAL.dll!WRITE_PORT_UCHAR] 00000036
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[WMILIB.SYS!WmiSystemControl] 000000F7
IAT \SystemRoot\System32\Drivers\aslhv33q.SYS[WMILIB.SYS!WmiCompleteRequest] 000000CC

---- User IAT/EAT - GMER 1.0.15 ----

IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9A27] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9979] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6BFA9979] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9A27] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9A27] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9979] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\MSVCRT.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9A27] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\MSVCRT.dll [KERNEL32.dll!LoadLibraryA] [6BFA9979] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9979] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9A27] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9A27] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9979] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9979] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1155679928\ee\AOLSoftware.exe[1500] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9A27] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)

---- Devices - GMER 1.0.15 ----

Device \FileSystem\Ntfs \Ntfs 8639C1F8

AttachedDevice \FileSystem\Ntfs \Ntfs AVGIDSFilter.sys (IDS Application Activity Monitor Filter Driver./AVG Technologies )

Device \FileSystem\Fastfat \FatCdrom 85ACA500

AttachedDevice \Driver\Tcpip \Device\Ip avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)

Device \Driver\usbohci \Device\USBPDO-0 85FD91F8
Device \Driver\NetBT \Device\NetBT_Tcpip_{B55CF78A-CC5E-4CB4-BCA7-E07164A7A945} 85A5B500
Device \Driver\usbohci \Device\USBPDO-1 85FD91F8
Device \Driver\NetBT \Device\NetBT_Tcpip_{6322E818-AA14-4603-83D6-F456D22835CA} 85A5B500

AttachedDevice \Driver\Tcpip \Device\Tcp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)

Device \Driver\Ftdisk \Device\HarddiskVolume1 8640D1F8
Device \Driver\Cdrom \Device\CdRom0 85FAE1F8
Device \Driver\Cdrom \Device\CdRom1 85FAE1F8
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-17 [F72C4B40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device \Driver\atapi \Device\Ide\IdePort0 [F72C4B40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 [F72C4B40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device \Driver\atapi \Device\Ide\IdePort1 [F72C4B40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-f [F72C4B40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device \Driver\Cdrom \Device\CdRom2 85FAE1F8
Device \Driver\NetBT \Device\NetBt_Wins_Export 85A5B500
Device \Driver\NetBT \Device\NetbiosSmb 85A5B500
Device \Driver\PCI_PNP4046 \Device\0000005b speh.sys

AttachedDevice \Driver\Tcpip \Device\Udp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\RawIp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)

Device \Driver\NetBT \Device\NetBT_Tcpip_{CB8F768E-CF4D-4E38-A96D-8B74D6A7078E} 85A5B500
Device \Driver\usbohci \Device\USBFDO-0 85FD91F8
Device \Driver\usbohci \Device\USBFDO-1 85FD91F8
Device \Driver\sptd \Device\220871546 speh.sys
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver 85B0F500
Device \FileSystem\MRxSmb \Device\LanmanRedirector 85B0F500
Device \Driver\Ftdisk \Device\FtControl 8640D1F8
Device \Driver\USBSTOR \Device\0000007e 859651F8
Device \Driver\USBSTOR \Device\0000007f 859651F8
Device \Driver\aslhv33q \Device\Scsi\aslhv33q1 85D2F1F8
Device \Driver\aslhv33q \Device\Scsi\aslhv33q1Port2Path0Target0Lun0 85D2F1F8
Device \FileSystem\Fastfat \Fat 85ACA500

AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
AttachedDevice \FileSystem\Fastfat \Fat AVGIDSFilter.sys (IDS Application Activity Monitor Filter Driver./AVG Technologies )

Device \FileSystem\Cdfs \Cdfs 85AAD500

---- Registry - GMER 1.0.15 ----

Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x16 0x1C 0x31 0xF9 ...
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0x1B 0x11 0xAD 0x40 ...
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x4B 0xC6 0x4A 0x03 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s1 771343423
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s2 285507792
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x16 0x1C 0x31 0xF9 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0x1B 0x11 0xAD 0x40 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x4B 0xC6 0x4A 0x03 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x16 0x1C 0x31 0xF9 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0x1B 0x11 0xAD 0x40 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x4B 0xC6 0x4A 0x03 ...
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x16 0x1C 0x31 0xF9 ...
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0x1B 0x11 0xAD 0x40 ...
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet004\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x4B 0xC6 0x4A 0x03 ...
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x16 0x1C 0x31 0xF9 ...
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0x1B 0x11 0xAD 0x40 ...
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet005\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x4B 0xC6 0x4A 0x03 ...
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x16 0x1C 0x31 0xF9 ...
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0x1B 0x11 0xAD 0x40 ...
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet006\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x4B 0xC6 0x4A 0x03 ...
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x16 0x1C 0x31 0xF9 ...
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0x1B 0x11 0xAD 0x40 ...
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet007\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x4B 0xC6 0x4A 0x03 ...

---- EOF - GMER 1.0.15 ----

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
Please download SystemLook from one of the links below and save it to your Desktop.
Download Mirror #1
Download Mirror #2

  • Double-click SystemLook.exe to run it.
  • Copy the content of the following codebox into the main textfield:

    Code:

    :filefind
    ntoskrnl.exe
    aslhv33q.SYS
    speh.sys
    atapi.sys


  • Click the Look button to start the scan.
  • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.
Note: The log can also be found on your Desktop entitled SystemLook.txt

descriptionComputer is freezing up and running slow EmptyRe: Computer is freezing up and running slow

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum