ComputerForum.com ComputerForum.com  
TigerDirect
 
Go Back   Computer Forum > Computer Software > Computer Security

Reply
 
LinkBack Thread Tools Display Modes
Old 12-20-2005, 10:12 AM   #1 (permalink)
Bronze Member
 
Join Date: Aug 2004
Location: Finland
Age: 20
Posts: 72
Default My comp is starting very slowly

Hi

Here is my computers HijackThis log, If you guys could tell me what to remove. Thanks

Logfile of HijackThis v1.99.1
Scan saved at 11:07:35, on 20.12.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\Explorer.EXE
c:\Program Files\Norton Internet Security\ISSVC.exe
c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
c:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\ASWLSVC.exe
c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\NB Probe\NBProbe.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Progra~1\ASUS\WLAN Card Utilities\Center.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Dema Post It 1.9.6\PitLight.exe
C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\dxdiag.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Marjo!\Työpöytä\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - c:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - c:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ASUS Live Update] C:\Program Files\ASUS\ASUS Live Update\ALU.exe
O4 - HKLM\..\Run: [NB Probe] C:\Program Files\ASUS\NB Probe\NBProbe.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Control Center] C:\Progra~1\ASUS\WLAN Card Utilities\Center.exe
O4 - HKLM\..\Run: [Zshutdown] c:\sysprep\patch\sysprep.cmd
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [DemaPostIt1.9.5] "C:\Program Files\Dema Post It 1.9.6\PitLight.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: ASUS ChkMail.lnk = C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Vie Microsoft E&xceliin - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.asus.com
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: ASWLSVC - Unknown owner - C:\WINDOWS\system32\ASWLSVC.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - c:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
__________________
Athlon 64 3700+ Socket 754
MSI K8N Neo3
Gainward nVidia GeForce 7800 PCI Express 256mb
Kingston 2048mb(2x1024)
440gb(200gb+80gb+160gb) 7200rpm Hard-Drive
XP Professional
Raidmax Ninja Case
Foel is offline   Reply With Quote


Old 12-21-2005, 10:59 AM   #2 (permalink)
Diamond Member
 
Join Date: May 2005
Location: here
Age: 22
Posts: 1,016
Default

u can remove the following :
C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe

C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ASUS\ASUS Live Update\ALU.exe


C:\Program Files\Dema Post It 1.9.6\PitLight.exe
C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\dxdiag.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Marjo!\Työpöytä\HijackThis.exe

also u can go to msconfig and remove all the programs that run at startup, keeping Norton antivirus lunching, since u can lunch other programs manually,for example: u can run the msn when u want and not when ur pC boot
__________________
TechNoloGy ConTrols tHe World
AnD I conTroL the TecHnOl0gy
Gue$s WhO @m i.
HehEhehee :confused:
houssam_ballout is offline   Reply With Quote
Old 12-21-2005, 04:40 PM   #3 (permalink)
Platinum Member
 
Jon Boy's Avatar
 
Join Date: Feb 2005
Location: England
Age: 20
Posts: 704
Default

I find this tool is a golden treasure controling programmes for start up. Very easy, and gives you infomation on what MOST of the programmes are and to what degree they are needed.

http://www.startupmechanic.com/

BTW sometimes it says varius programmes are added by a virus don't always trust it when it says this, as I dont think they are.
__________________
Intel Core 2 Quad Pro Q6600 95W G0 Stepping
Western Digital Caviar 320GB S300 16MB
OCZ 4GB DDR2 800MHz DUAL CHANNEL
GeForce 8800GTS 320MB "XT" ED
OCZ GameXStream 700W PSU
ASUS P5K-E/WIFI-AP
"3D Mark 03 - 31164" -- "3D Mark 05 - 14127" -- "3D Mark 06 - 10393"
Jon Boy is offline   Reply With Quote
Old 12-21-2005, 08:03 PM   #4 (permalink)
Diamond Member
 
spacedude89's Avatar
 
Join Date: Mar 2005
Location: Oregon
Age: 19
Posts: 1,419
Default

Quote:
Originally Posted by houssam_ballout
u can remove the following :
C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe

C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ASUS\ASUS Live Update\ALU.exe


C:\Program Files\Dema Post It 1.9.6\PitLight.exe
C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\dxdiag.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Marjo!\Työpöytä\HijackThis.exe

also u can go to msconfig and remove all the programs that run at startup, keeping Norton antivirus lunching, since u can lunch other programs manually,for example: u can run the msn when u want and not when ur pC boot

umm, is it me or are about half of the startup programs you named needed?

id keep these:

C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\dxdiag.exe
__________________
Desktop: Abit AW9D-MAX ~ Core 2 Duo E6300 @ 2.4GHz ~ Radeon X1900GT
Laptop: HP ~ Core Duo T2050 ~ nVidia 7600

First smiles, then lies. Last comes gunfire.
spacedude89 is offline   Reply With Quote
Old 12-21-2005, 08:59 PM   #5 (permalink)
VIP Member
 
Dngrsone's Avatar
 
Join Date: Dec 2005
Location: Centrally located far from everywhere
Posts: 544
Default

I don't see anything nasty... you probably don't need all those acrobat utilites running at startup unless you use Adobe on a regular basis.

I know Norton's can slow stuff down, especially when you have the full suite installed. How slow is very slow?
Dngrsone is offline   Reply With Quote


Old 12-22-2005, 01:47 PM   #6 (permalink)
Diamond Member
 
Join Date: May 2005
Location: here
Age: 22
Posts: 1,016
Default Slow start up

Quote:
Originally Posted by spacedude89
umm, is it me or are about half of the startup programs you named needed?

id keep these:

C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\dxdiag.exe
Well, yeah u right, the HiJack is full of unwanted programs that run at startup, all these programs are not needed expect the norton anti virus that need to be run at startup
__________________
TechNoloGy ConTrols tHe World
AnD I conTroL the TecHnOl0gy
Gue$s WhO @m i.
HehEhehee :confused:
houssam_ballout is offline   Reply With Quote
Old 12-22-2005, 01:51 PM   #7 (permalink)
Platinum Member
 
Jon Boy's Avatar
 
Join Date: Feb 2005
Location: England
Age: 20
Posts: 704
Default

As I said, download system mechanic. It will tell you what programmes are necesary, others that are usefull and others that are a waste of time. It will also give you infomation on what the prgrammes are and where they are located. From this you can decide what you feel you need and don't need running on your system.
__________________
Intel Core 2 Quad Pro Q6600 95W G0 Stepping
Western Digital Caviar 320GB S300 16MB
OCZ 4GB DDR2 800MHz DUAL CHANNEL
GeForce 8800GTS 320MB "XT" ED
OCZ GameXStream 700W PSU
ASUS P5K-E/WIFI-AP
"3D Mark 03 - 31164" -- "3D Mark 05 - 14127" -- "3D Mark 06 - 10393"
Jon Boy is offline   Reply With Quote
Old 12-22-2005, 02:31 PM   #8 (permalink)
Bronze Member
 
Join Date: Dec 2005
Posts: 28
Default

I think that you should just get registry mechanic and that will clear up a lot of unwanted problems
currentcomputert is offline   Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 06:39 AM.


Powered by: vBulletin Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.1.0 ©2007, Crawlability, Inc.
Copyright © 2002-2007 Computer Forum and Web Design Forum