Computer Help forum

Praise

Someone please read Hijackthis/ Slow comp

Alright here it is again hopefully this is more friendly

Logfile of Trend Micro HijackThis v2.0.4Scan saved at 8:09:46 PM, on
8/29/2011Platform: Windows 7 SP1 (WinNT 6.00.3505)MSIE: Internet
Explorer v9.00 (9.00.8112.16421)Boot mode: NormalRunning
processes:C:\Program Files (x86)\Common
Files\Nero\Lib\NMIndexStoreSvr.exeC:\Program Files (x86)\DAEMON Tools
Lite\DTLite.exeC:\Program Files
(x86)\Yahoo!\Widgets\YahooWidgets.exeC:\Program Files (x86)\Common
Files\Adobe\ARM\1.0\AdobeARM.exeC:\Program Files (x86)\Common
Files\Java\Java Update\jusched.exeC:\Program Files (x86)\LogMeIn
Hamachi\hamachi-2-ui.exeC:\Program Files
(x86)\iTunes\iTunesHelper.exeC:\Program Files
(x86)\Yahoo!\Widgets\YahooWidgets.exeC:\Program Files (x86)\Internet
Explorer\IELowutil.exeC:\Users\JAMIE\AppData\Roaming\GameRanger\GameRanger\GameRanger.exeC:\Program
Files (x86)\Vuze\Azureus.exeC:\Program Files (x86)\Mozilla
Firefox\firefox.exeC:\Program Files (x86)\Mozilla
Firefox\plugin-container.exeC:\Program Files (x86)\Trend
Micro\HiJackThis\HiJackThis.exeR1 - HKCU\Software\Microsoft\Internet
Explorer\Main,Default_Search_URL =
http://search.searchcompletion.com/?si=10211&home=1R1 -
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://search.searchcompletion.com/?si=10211&home=1R1 -
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://search.searchcompletion.com/?si=10211&home=1R0 -
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://search.searchcompletion.com/?si=10211&home=1R1 -
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.yahoo.comR1 - HKLM\Software\Microsoft\Internet
Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 -
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 -
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.comR1 - HKCU\Software\Microsoft\Internet
Explorer\Search,Default_Search_URL =
http://search.searchcompletion.com/?si=10211&home=1R0 -
HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://start.facemoods.com/?a=ddr&s={searchTerms}&f=4R0 -
HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 -
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
C:\Windows\SysWOW64\blank.htmR1 -
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet
Settings,ProxyOverride = *.localR0 - HKCU\Software\Microsoft\Internet
Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini:
UserInit=userinit.exe,O2 - BHO: (no name) -
{02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)O2 - BHO:
AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program
Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 -
BHO: RealPlayer Download and Record Plugin for Internet Explorer -
{3049C3E9-B461-4BC5-8870-4C09146192CA} -
C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dllO2
- BHO: Increase performance and video formats for your HTML5
<video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program
Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (file missing)O2 -
BHO: Use the DivX Plus Web Player to watch web videos with less
interruptions and smoother playback on supported sites -
{593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files
(x86)\DivX\DivX Plus Web Player\npdivx32.dll (file missing)O2 - BHO:
facemoods Helper - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program
Files (x86)\facemoods.com\facemoods\1.4.17.3\bh\facemoods.dll (file
missing)O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B}
- C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search
Helper\SEPsearchhelperie.dllO2 - BHO: Groove GFS Browser Helper -
{72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files
(x86)\Microsoft Office\Office12\GrooveShellExtensions.dllO2 - BHO:
Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} -
C:\Program Files (x86)\Common Files\Microsoft Shared\Windows
Live\WindowsLiveLogin.dllO2 - BHO: Windows Live Messenger Companion
Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files
(x86)\Windows Live\Companion\companioncore.dllO2 - BHO: Google Toolbar
Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files
(x86)\Google\Google Toolbar\GoogleToolbar_32.dllO2 - BHO: MegaIEMn -
{bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files
(x86)\Megaupload\Mega Manager\MegaIEMn.dllO2 - BHO: Complitly -
{D27FC31C-6E3D-4305-8D53-ACDAEFA5F862} -
C:\Users\JAMIE\AppData\Roaming\Complitly\Complitly.dllO2 - BHO: Bing Bar
BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files
(x86)\MSN Toolbar\Platform\6.3.2348.0\npwinext.dllO2 - BHO: Java(tm)
Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} -
C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dllO3 - Toolbar: @C:\Program
Files (x86)\MSN Toolbar\Platform\6.3.2348.0\npwinext.dll,-100 -
{8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN
Toolbar\Platform\6.3.2348.0\npwinext.dllO3 - Toolbar: DAEMON Tools
Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files
(x86)\DAEMON Tools Toolbar\DTToolbar.dll (file missing)O3 - Toolbar:
facemoods Toolbar - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program
Files (x86)\facemoods.com\facemoods\1.4.17.3\facemoodsTlbr.dll (file
missing)O3 - Toolbar: Google Toolbar -
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files
(x86)\Google\Google Toolbar\GoogleToolbar_32.dllO4 - HKLM\..\Run:
[GrooveMonitor] "C:\Program Files (x86)\Microsoft
Office\Office12\GrooveMonitor.exe"O4 - HKLM\..\Run: [Microsoft Default
Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement
Pack\Default Manager\DefMgr.exe" -resumeO4 - HKLM\..\Run: [Adobe Reader
Speed Launcher] "C:\Program Files (x86)\Adobe\Reader
10.0\Reader\Reader_sl.exe"O4 - HKLM\..\Run: [Adobe ARM] "C:\Program
Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"O4 - HKLM\..\Run:
[facemoods] "C:\Program Files
(x86)\facemoods.com\facemoods\1.4.17.3\facemoodssrv.exe" /md IO4 -
HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common
Files\Java\Java Update\jusched.exe"O4 - HKLM\..\Run: [TkBellExe]
"C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osbootO4 -
HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX
Update\DivXUpdate.exe" /CHECKNOWO4 - HKLM\..\Run: [LogMeIn Hamachi Ui]
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-startO4
- HKLM\..\Run: [QuickTime Task] "C:\Program Files
(x86)\QuickTime\QTTask.exe" -atboottimeO4 - HKLM\..\Run: [iTunesHelper]
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"O4 - HKCU\..\Run:
[IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files
(x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe"
ASO-616B5711-6DAE-4795-A05F-39A1E5104020O4 - HKCU\..\Run: [swg]
"C:\Program Files
(x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"O4 -
HKCU\..\Run: [Google Update]
"C:\Users\JAMIE\AppData\Local\Google\Update\GoogleUpdate.exe" /cO4 -
HKCU\..\Run: [DriverFinder] C:\Program Files
(x86)\DriverFinder\DriverFinder.exeO4 - HKCU\..\Run: [DAEMON Tools Lite]
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorunO4 -
HKCU\..\Run: [Mega Manager] C:\Program Files (x86)\Megaupload\Mega
Manager\MegaManager.exe /TrayO4 - HKCU\..\Run: [Megakey]
C:\Users\JAMIE\AppData\Local\Megamedia\Megakey\Megakey.exe /TrayO4 -
HKCU\..\Run: [MegakeyUpdater]
C:\Users\JAMIE\AppData\Local\Megamedia\Megakey\MegakeyUpdater.exeO4 -
HKCU\..\Run: [DW6] "C:\Program Files (x86)\The Weather Channel
FW\Desktop\DesktopWeather.exe"O4 - HKCU\..\Run: [msnmsgr] "C:\Program
Files (x86)\Windows Live\Messenger\msnmsgr.exe" /backgroundO4 -
HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows
Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')O4 -
HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe
(User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [Sidebar]
%ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK
SERVICE')O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin]
C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')O4 - Startup:
Yahoo! Widgets.lnk = C:\Program Files
(x86)\Yahoo!\Widgets\YahooWidgets.exeO6 -
HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel
presentO6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control
Panel presentO8 - Extra context menu item: Download Link Using Mega
Manager... - C:\Program Files (x86)\Megaupload\Mega
Manager\mm_file.htmO8 - Extra context menu item: E&xport to
Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000O8 -
Extra context menu item: Google Sidewiki... - res://C:\Program Files
(x86)\Google\Google
Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.htmlO9
- Extra button: @C:\Program Files (x86)\Windows
Live\Companion\companionlang.dll,-600 -
{0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows
Live\Companion\companioncore.dllO9 - Extra button: @C:\Program Files
(x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 -
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows
Live\Writer\WriterBrowserExtension.dllO9 - Extra 'Tools' menuitem:
@C:\Program Files (x86)\Windows
Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 -
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows
Live\Writer\WriterBrowserExtension.dllO9 - Extra button: Send to OneNote
- {2670000A-7350-4f3c-8081-5663EE0C6C49} -
C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dllO9 - Extra 'Tools' menuitem:
S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} -
C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dllO9 - Extra button: Research -
{92780B25-18CC-41C8-B9BE-3C9C571A8263} -
C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLLO10 - Unknown file in Winsock
LSP: c:\program files (x86)\common files\microsoft shared\windows
live\wlidnsp.dllO10 - Unknown file in Winsock LSP: c:\program files
(x86)\common files\microsoft shared\windows live\wlidnsp.dllO11 -
Options group: [ACCELERATED_GRAPHICS] Accelerated graphicsO16 - DPF:
{30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) -
C:\Program Files (x86)\Yahoo!\Common\Yinsthelper.dllO16 - DPF:
{E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cabO17
-
HKLM\System\CCS\Services\Tcpip\..\{BD0C1B22-1A11-4BE7-A8F5-71F02CACF86A}:
NameServer = 156.154.70.22,156.154.71.22O18 - Protocol: grooveLocalGWS -
{88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files
(x86)\Microsoft Office\Office12\GrooveSystemServices.dllO18 - Protocol:
wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files
(x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dllO20 -
AppInit_DLLs: C:\Windows\SysWOW64\guard32.dllO23 - Service:
@%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner -
C:\Windows\System32\alg.exe (file missing)O23 - Service: Apple Mobile
Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile
Device Support\AppleMobileDeviceService.exeO23 - Service: ASP.NET State
Service (aspnet_state) - Unknown owner -
C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file
missing)O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown
owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (file
missing)O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files
(x86)\Bonjour\mDNSResponder.exeO23 - Service: COMODO Internet Security
Helper Service (cmdagent) - COMODO - C:\Program Files\COMODO\COMODO
Internet Security\cmdagent.exeO23 - Service:
@%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner -
C:\Windows\System32\lsass.exe (file missing)O23 - Service: FABS -
Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program
Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exeO23 -
Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner -
C:\Windows\system32\fxssvc.exe (file missing)O23 - Service: Firebird
Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® -
C:\Program Files (x86)\Common Files\MAGIX
Services\Database\bin\fbserver.exeO23 - Service: Futuremark SystemInfo
Service - Futuremark Corporation - C:\Program Files (x86)\Common
Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exeO23 - Service:
Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program
Files (x86)\Google\Update\GoogleUpdate.exeO23 - Service: Google Update
Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files
(x86)\Google\Update\GoogleUpdate.exeO23 - Service: Google Software
Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google
Updater\GoogleUpdaterService.exeO23 - Service: LogMeIn Hamachi Tunneling
Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn
Hamachi\hamachi-2.exeO23 - Service: InstallDriver Table Manager
(IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common
Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: iPod
Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exeO23 -
Service: @keyiso.dll,-100 (KeyIso) - Unknown owner -
C:\Windows\system32\lsass.exe (file missing)O23 - Service:
@comres.dll,-2797 (MSDTC) - Unknown owner -
C:\Windows\System32\msdtc.exe (file missing)O23 - Service:
@%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner -
C:\Windows\system32\lsass.exe (file missing)O23 - Service:
NMIndexingService - Nero AG - C:\Program Files (x86)\Common
Files\Nero\Lib\NMIndexingService.exeO23 - Service: NVIDIA Display Driver
Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file
missing)O23 - Service: PnkBstrA - Unknown owner -
C:\Windows\system32\PnkBstrA.exeO23 - Service:
@%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown
owner - C:\Windows\system32\lsass.exe (file missing)O23 - Service:
Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE
Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exeO23 -
Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown
owner - C:\Windows\system32\locator.exe (file missing)O23 - Service:
@%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner -
C:\Windows\system32\lsass.exe (file missing)O23 - Service:
@%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner -
C:\Windows\System32\snmptrap.exe (file missing)O23 - Service:
@%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner -
C:\Windows\System32\spoolsv.exe (file missing)O23 - Service:
@%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner -
C:\Windows\system32\sppsvc.exe (file missing)O23 - Service: Steam Client
Service - Valve Corporation - C:\Program Files (x86)\Common
Files\Steam\SteamService.exeO23 - Service: TeamViewer 6 (TeamViewer6) -
TeamViewer GmbH - C:\Program Files
(x86)\TeamViewer\Version6\TeamViewer_Service.exeO23 - Service:
@%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner -
C:\Windows\system32\UI0Detect.exe (file missing)O23 - Service:
@%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner -
C:\Windows\system32\lsass.exe (file missing)O23 - Service:
@%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner -
C:\Windows\System32\vds.exe (file missing)O23 - Service:
@%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner -
C:\Windows\system32\vssvc.exe (file missing)O23 - Service:
@%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner -
C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)O23 - Service:
@%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner -
C:\Windows\system32\wbengine.exe (file missing)O23 - Service:
@%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner
- C:\Windows\system32\wbem\WmiApSrv.exe (file missing)O23 - Service:
@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) -
Unknown owner - C:\Program Files (x86)\Windows Media
Player\wmpnetwk.exe (file missing)--End of file - 16126 bytes

Discussion is locked
You are posting a reply to: Someone please read Hijackthis/ Slow comp
The posting of advertisements, profanity, or personal attacks is prohibited. Please refer to our CNET Forums policies for details. All submitted content is subject to our Terms of Use.
Track this discussion and email me when there are updates

If you're asking for technical help, please be sure to include all your system info, including operating system, model number, and any other specifics related to the problem. Also please exercise your best judgment when posting in the forums--revealing personal information such as your e-mail address, telephone number, and address is not recommended.

You are reporting the following post: Someone please read Hijackthis/ Slow comp
This post has been flagged and will be reviewed by our staff. Thank you for helping us maintain CNET's great community.
Sorry, there was a problem flagging this post. Please try again now or at a later time.
If you believe this post is offensive or violates the CNET Forums' Usage policies, you can report it below (this will not automatically remove the post). Once reported, our moderators will be notified and the post will be reviewed.
Collapse -
Fail

In reply to: Someone please read Hijackthis/ Slow comp

My bad can a mod delete the last two posts on this i messed up twice OMG

Collapse -
Btw, I see hijacked stuff in this.

In reply to: Someone please read Hijackthis/ Slow comp

Popular Forums

icon
Computer Newbies 10,686 discussions
icon
Computer Help 54,365 discussions
icon
Laptops 21,181 discussions
icon
Networking & Wireless 16,313 discussions
icon
Phones 17,137 discussions
icon
Security 31,287 discussions
icon
TVs & Home Theaters 22,101 discussions
icon
Windows 7 8,164 discussions
icon
Windows 10 2,657 discussions

REVIEW

Sublime suburban chariot

High on style and technology, the 2019 Volvo XC90 is an incredibly satisfying everyday crossover.