WiredWX Christian Hobby Weather Tools
Would you like to react to this message? Create an account in a few clicks or log in to continue.

WiredWX Christian Hobby Weather ToolsLog in

 


descriptionExtremely slow computer, Windows updates won't take EmptyExtremely slow computer, Windows updates won't take

more_horiz
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:09:58 PM, on 8/23/2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v7.00 (7.00.6002.18005)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP Wireless

Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless

Assistant\WiFiMsg.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Charter Security

Suite\Common\FSM32.EXE
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Canon\Canon IJ Network Scan

Utility\CNMNSUT.EXE
C:\Program Files\Common Files\Adobe\ARM\1.0

\AdobeARM.exe
C:\Program Files\Common Files\Java\Java

Update\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Hewlett-Packard\HP

Advisor\HPAdvisor.exe
C:\Windows\ehome\ehtray.exe
C:\Users\Rachel\AppData\Local\Google\Update\GoogleUpda

te.exe
C:\Program Files\CrossriderWebApps\Crossrider.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32

\Macromed\Flash\FlashUtil10i_ActiveX.exe
C:\Users\Rachel\Desktop\HijackThis.exe
C:\Program Files\Microsoft Office\Office12\WINWORD.EXE

R1 - HKCU\Software\Microsoft\Internet

Explorer\Main,Search Page =

http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet

Explorer\Main,Start Page =

http://ie.redirect.hp.com/svs/rdr?

TYPE=3&tp=iehome&locale=en_us&c=81&bd=Pavilion&pf=lapt

op
R1 - HKLM\Software\Microsoft\Internet

Explorer\Main,Default_Page_URL =

http://ie.redirect.hp.com/svs/rdr?

TYPE=3&tp=iehome&locale=en_us&c=81&bd=Pavilion&pf=lapt

op
R1 - HKLM\Software\Microsoft\Internet

Explorer\Main,Default_Search_URL =

http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet

Explorer\Main,Search Page =

http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet

Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet

Explorer\Search,CustomizeSearch =
R1 -

HKCU\Software\Microsoft\Windows\CurrentVersion\Interne

t Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet

Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596

-FA578C2EBDC3} - C:\Program Files\Common

Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-

4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common

Files\Microsoft Shared\Windows

Live\WindowsLiveLogin.dll
O2 - BHO: CrossRider - {A876E312-7D08-401a-B7A6-

FAFC5DC2F292} - C:\Program

Files\CrossriderWebApps\Crossrider.dll
O2 - BHO: LitmusBHO - {C6867EB7-8350-4856-877F-

93CF8AE3DC9C} - C:\Program Files\Charter Security

Suite\NRS\iescript\baselitmus.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-

A445-435b-BC74-9C25C1C588A9} - C:\Program

Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {2E5E800E-6AC0-411E-940A-

369530A35E43} - (no file)
O3 - Toolbar: Browsing Protection Toolbar - {265EEE8E

-3228-44D3-AEA5-F7FDF5860049} - C:\Program

Files\Charter Security

Suite\NRS\iescript\baselitmus.dll
O4 - HKLM\..\Run: [SynTPStart] "C:\Program

Files\Synaptics\SynTP\SynTPStart.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program

Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [hpWirelessAssistant] "C:\Program

Files\Hewlett-Packard\HP Wireless

Assistant\HPWAMain.exe"
O4 - HKLM\..\Run: [WAWifiMessage] "C:\Program

Files\Hewlett-Packard\HP Wireless

Assistant\WiFiMsg.exe"
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE"

C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] "RUNDLL32.EXE"

C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program

Files\Charter Security Suite\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program

Files\Charter Security Suite\FSGUI\TNBUtil.exe"

/CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-

b109a192b4c2}] C:\Program Files\Google\Gmail

Notifier\gnotify.exe
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program

Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program

Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [IJNetworkScanUtility] C:\Program

Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher]

"C:\Program Files\Adobe\Reader 9.0

\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common

Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program

Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program

Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)]

"C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe"

/runcleanupscript
O4 - HKLM\..\Run: [HTC Sync Loader] "C:\Program

Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe" -startup
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program

Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware

(reboot)] "C:\Program Files\Malwarebytes' Anti-

Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [HPAdvisor] "C:\Program

Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe"

autoRun
O4 - HKCU\..\Run: [RunSpySweeperScheduleAtStartup]

"C:\Windows\system32\msfeedssync.exe"

/ScheduleSweep=User_Feed_Synchronization-{3348476B-

B873-4929-9F44-A36052790053}
O4 - HKCU\..\Run: [ehTray.exe]

C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Google Update]

"C:\Users\Rachel\AppData\Local\Google\Update\GoogleUpd

ate.exe" /c
O4 - HKCU\..\Run: [CrossRiderPlugin] C:\Program

Files\CrossriderWebApps\Crossrider.exe
O8 - Extra context menu item: E&xport to Microsoft

Excel - res://C:\PROGRA~1\MICROS~3\Office12

\EXCEL.EXE/3000
O9 - Extra button: HP Smart Select - {58ECB495-38F0-

49cb-A538-10282ABF65E7} - c:\Program Files\HP\Smart

Web Printing\hpswp_extensions.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-

4B02-94D6-2FC0DE4A7897} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-

B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12

\REFIEBAR.DLL
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-

11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!

\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger -

{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program

Files\Yahoo!\Messenger\YahooMessenger.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-

1830C7DD7F5D} - C:\PROGRA~1\COMMON~1

\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache

daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} -

C:\Windows\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems -

C:\Program Files\Common Files\Adobe Systems

Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. -

C:\Program Files\Common Files\Apple\Mobile Device

Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. -

C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development

Company, L.P. - C:\Program Files\Hewlett-Packard\HP

Quick Launch Buttons\Com4Qlb.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler

Starter) - Unknown owner - C:\Program Files\Charter

Security Suite\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon

(FSDFWD) - F-Secure Corporation - C:\Program

Files\Charter Security Suite\FWES\Program\fsdfwd.exe
O23 - Service: FSMA - F-Secure Corporation -

C:\Program Files\Charter Security

Suite\Common\FSMA32.EXE
O23 - Service: F-Secure ORSP Client (FSORSPClient) -

F-Secure Corporation - C:\Program Files\Charter

Security Suite\ORSP Client\fsorsp.exe
O23 - Service: HP Health Check Service - Hewlett-

Packard - c:\Program Files\Hewlett-Packard\HP Health

Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development

Company, L.P. - C:\Program Files\Hewlett-

Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT)

- Macrovision Corporation - C:\Program Files\Common

Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program

Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling

Service (LightScribeService) - Hewlett-Packard Company

- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) -

NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: QuickPlay Background Capture Service

(QBCS) (QPCapSvc) - Unknown owner - C:\Program

Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe
O23 - Service: QuickPlay Task Scheduler (QTS)

(QPSched) - Unknown owner - C:\Program

Files\HP\QuickPlay\Kernel\TV\QPSched.exe
O23 - Service: Cyberlink RichVideo Service(CRVS)

(RichVideo) - Unknown owner - C:\Program

Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Symantec Core LC - Unknown owner -

C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc.

- C:\Windows\system32\DRIVERS\xaudio.exe
O23 - Service: Yahoo! Updater (YahooAUService) -

Yahoo! Inc. - C:\Program Files\Yahoo!

\SoftwareUpdate\YahooAUService.exe

--
End of file - 9554 bytes

descriptionExtremely slow computer, Windows updates won't take EmptyRe: Extremely slow computer, Windows updates won't take

more_horiz
Hi Smile...

Please read here and post here to receive malware assistance.

descriptionExtremely slow computer, Windows updates won't take EmptyRe: Extremely slow computer, Windows updates won't take

more_horiz
Thanks Buttons. New post made with logs. Smile...

descriptionExtremely slow computer, Windows updates won't take EmptyRe: Extremely slow computer, Windows updates won't take

more_horiz
You're welcome rachel_wi. Smile...

descriptionExtremely slow computer, Windows updates won't take EmptyRe: Extremely slow computer, Windows updates won't take

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum