Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Help Needed, Slow, Slow Computer


  • This topic is locked This topic is locked

#1
leftylef

leftylef

    Member

  • Member
  • PipPip
  • 10 posts
Hi, I have a emachines running windows XP. Memory is nowhere near full. I followed all of the instructions you had where you said "read this first" . Loaded all the spyware etc. Here is the Hijack this log.

HELPPPPPP!!!!!!!!!!!!

Can't understand why the computer is running slow. I am ready to erase everything and install reboot disk

Here is Hijack this log

Logfile of HijackThis v1.99.1
Scan saved at 10:55:59 AM, on 2/11/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\LXSUPMON.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Documents and Settings\Scott\Desktop\speedupmypc.exe
C:\Program Files\Trend Micro\Tmas\Tmas.exe
C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\PROGRA~1\NORTON~1\navw32.exe
C:\hjt\HijackThis.exe
C:\WINDOWS\notepad.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Scott\Desktop\HijackThis.exe

R3 - URLSearchHook: AOLTBSearch Class - {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O2 - BHO: (no name) - {1187095B-1026-D76E-4E16-CEEFF21BB026} - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O2 - BHO: (no name) - {8EFFF703-4278-6F97-423D-DC11C0FB1DD8} - (no file)
O2 - BHO: (no name) - {96B10A41-6820-72E2-2CBA-C84720F4FC94} - (no file)
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O4 - HKLM\..\Run: [LXSUPMON] C:\WINDOWS\system32\LXSUPMON.EXE RUN
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Global Startup: SpeedUpMyPC.lnk = C:\Documents and Settings\Scott\Desktop\speedupmypc.exe
O4 - Global Startup: Trend Micro Anti-Spyware.lnk = C:\Program Files\Trend Micro\Tmas\Tmas.exe
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 2.0\resources\en-US\local\search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) - http://www.ipix.com/viewers/ipixx.cab
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://www-secure.s...sa/LSSupCtl.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoft...free/asinst.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - https://www-secure.s...sa/SymAData.cab
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe




HERE IS AVG REPORT:

---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 11:28:25 AM 1/14/2007

+ Scan result:



C:\Lefferts Backup\Documents and Settings\~Madeline~\Local Settings\Temp\MiniBug.exe -> Adware.SuspectModule : Cleaned.
C:\Lefferts Backup\~Madeline~\Local Settings\Temp\MiniBug.exe -> Adware.SuspectModule : Cleaned.
C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBarBHO.dll -> Adware.Viewpoint : Cleaned.
C:\WINDOWS\system32\dxbydwqs.exe -> Proxy.Agent.l : Cleaned.
:mozilla.57:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.58:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.59:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.60:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.61:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.62:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\Lefferts Backup\Documents and Settings\~Madeline~\Cookies\[email protected][1].txt -> TrackingCookie.Abetterinternet : Cleaned.
C:\Lefferts Backup\~Madeline~\Cookies\[email protected][1].txt -> TrackingCookie.Abetterinternet : Cleaned.
:mozilla.41:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.42:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.126:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.127:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.128:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.34:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.86:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.87:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.88:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.49:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Clickbank : Cleaned.
:mozilla.65:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.53:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.39:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.31:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.32:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.33:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.48:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.17:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.18:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.19:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.20:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.21:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.22:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.23:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
C:\Lefferts Backup\Documents and Settings\~Madeline~\Cookies\[email protected][2].txt -> TrackingCookie.Hypertracker : Cleaned.
C:\Lefferts Backup\~Madeline~\Cookies\[email protected][2].txt -> TrackingCookie.Hypertracker : Cleaned.
:mozilla.89:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Information : Cleaned.
:mozilla.75:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.54:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.118:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.119:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.120:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.121:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.123:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.90:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Revenue : Cleaned.
C:\Lefferts Backup\Documents and Settings\~Madeline~\Cookies\[email protected][2].txt -> TrackingCookie.Starware : Cleaned.
C:\Lefferts Backup\~Madeline~\Cookies\[email protected][2].txt -> TrackingCookie.Starware : Cleaned.
:mozilla.79:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.100:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.101:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.97:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.98:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.99:C:\Documents and Settings\Scott\Application Data\Mozilla\Firefox\Profiles\mozilla fox\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\hjt\backups\backup-20050120-072708-706.dll -> Trojan.Golid.g : Cleaned.
C:\Lefferts Backup\Documents and Settings\~Madeline~\Local Settings\Temporary Internet Files\Content.IE5\ETILK5CT\exitpoplight1[1].htm -> Trojan.NoClose.i : Cleaned.
C:\Lefferts Backup\~Madeline~\Local Settings\Temporary Internet Files\Content.IE5\ETILK5CT\exitpoplight1[1].htm -> Trojan.NoClose.i : Cleaned.
C:\Sxos.exe -> Worm.SpyBot.dg : Cleaned.


::Report end
  • 0

Advertisements


#2
Crustyoldbloke

Crustyoldbloke

    Old Malware Surgeon with a shaky scalpel

  • Retired Staff
  • 15,131 posts
Please abide by the rules of the forum and only post one topic, do not duplicate or bump your post. You already have a live topic in malware here:

http://www.geekstogo...s...st&p=908479

If, after 3 days, you have not received a reply, post a link to the original in the Waiting Room.

Please remember that ALL members of staff here at Geeks To Go are volunteers with their own families and lives making demands upon their time. They give as much time as they can spare, but it will never be enough to satisfy everyone.

Thanks for your co-operation..

This topic is now closed.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP