Unsolved
This post is more than 5 years old
34 Posts
0
5844
January 19th, 2011 05:00
Boot-up time is getting much longer
I've been redirected to here after advice by helpers from the Dell forum on the operating system and software.
I have Dimension 5150, running XP.
The boot up time has been getting longer overtime and was about 40 minutes a few days ago. Windows gets loaded up fairly quickly, all the desk top icons appear in a couple of mins, but then the hour glass appears and there is considerable "hard-disk-like" whirling noises that go on for a long time. Any attempt at launching a program during this period results in a painfully slow response. Once the long boot up delay is over, the programs can be run properly.
Following advice from the the other Dell forum, I've run three new programs with the following results:
Malwarebytes: Found and dealt with 3 instances of "Adware.MyWebSearch", and 2 instances of "PUM.Disabled.SecurityCentre"
SuperAntiSpyware:Found and dealt with about 400 advertising cookies
Temp File Cleaner: Freed up about 3GB of space.
This has made the boot-up faster, and it only takes ~ 20 mins now!
Also following advice, I experimented with unchecking some of the contents of the start-up menu. This definitely makes the boot up faster: down to about 2 mins if I uncheck most of the items (I did lose internet connection at one point, presumably because I'd unchecked the wrong item!). Some of these items are definitely not needed (e.g. there are several AOL items, despite the fact that I uninstalled the AOL software some time ago).
I'll be grateful for any advice.
I've copied the HJT log file below.
Noori
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:39:45, on 19/01/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Kontiki\KService.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\WINDOWS\vVX3000.exe
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Creative\VoiceCenter\AndreaVC.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\program files\real\realplayer\update\realsched.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Dell\Media Experience\DMXLauncher.exe
C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
C:\Program Files\BT Broadband Desktop Help\btbb\BTHelpNotifier.exe
C:\Program Files\QuickTime\QTTask.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\AOL\1180866938\ee\AOLSoftware.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Kontiki\KHost.exe
C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\Program Files\Tesco\Picture Suite\InsDetect.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.co.uk/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://bbc.co.uk/news/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\mskapbho.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20101107162650.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [VoiceCenter] "C:\Program Files\Creative\VoiceCenter\AndreaVC.exe" /tray
O4 - HKLM\..\Run: [TkBellExe] "C:\program files\real\realplayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [btbb_McciTrayApp] "C:\Program Files\BT Broadband Desktop Help\btbb\BTHelpNotifier.exe"
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1180866938\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Creative Detector] "C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /R
O4 - HKCU\..\Run: [Tesco Insert Detect] C:\Program Files\Tesco\Picture Suite\InsDetect.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - Global Startup: AOL 9.0 Tray Icon.lnk = C:\Program Files\AOL 9.0\aoltray.exe
O4 - Global Startup: BlueSoleil.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Researcher - {9455301C-CF6B-11D3-A266-00C04F689C50} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\EROProj.dll
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://*.mcafee.com
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=58813
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} -
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase6662.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1188743337078
O16 - DPF: {79E0C1C0-316D-11D5-A72A-006097BFA1AC} (EPSON Web Printer-SelfTest Control Class) - http://esupport.epson-europe.com/selftest/en/Prg/ESTPTest.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Google Update Service (gupdate1ca3b5a677feb0a) (gupdate1ca3b5a677feb0a) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McciCMService - Alcatel-Lucent - C:\Program Files\Common Files\Motive\McciCMService.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McShield - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Noori/LOCALS~1/Temp/msohtml1/01/clip_image002.gif
--
End of file - 15700 bytes


port82
1 Message
0
February 1st, 2011 04:00
Good work :) This forum is indeed informative,
kevin27_b3d29f
2 Intern
•
1.5K Posts
0
February 2nd, 2011 09:00
@Port82,
You would be ill advised to follow instructions that have been written for another system. Although the infection symptoms can seem very similer, the methods for removing them said infections can be extremely different.
If you are in need of assistance,please read THIS page and then please start a New Topic at the top of the Malware Removal Forum by clicking the
button.
@noori,
Please post the HJT log when you are ready.
Thanks.
noori
34 Posts
0
February 2nd, 2011 14:00
Hello K27
The new HJT log as requested abd I'm grateful for your continued support.
For my peace of mind I just need to repeat a couple of points that I made in my last post just in case they got lost in the bad formatting!
-I was unable to download the latest version of Adobe
-The Java file that I've down loaded has a slightly different name to the one that your post implied !
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:41:14, on 02/02/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Kontiki\KService.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files\Creative\VoiceCenter\AndreaVC.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
C:\Program Files\BT Broadband Desktop Help\btbb\BTHelpNotifier.exe
C:\Program Files\Common Files\AOL\1180866938\ee\AOLSoftware.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Kontiki\KHost.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\Program Files\Tesco\Picture Suite\InsDetect.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\ehome\EHTray.exe
C:\Program Files\iTunes\iTunes.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe
C:\Program Files\Common Files\Apple\Apple Application Support\distnoted.exe
C:\Program Files\RM PLC\scoris assessor\scoris.assessor.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.co.uk/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://bbc.co.uk/news/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\mskapbho.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20101107162650.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [VoiceCenter] "C:\Program Files\Creative\VoiceCenter\AndreaVC.exe" /tray
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [btbb_McciTrayApp] "C:\Program Files\BT Broadband Desktop Help\btbb\BTHelpNotifier.exe"
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1180866938\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Creative Detector] "C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /R
O4 - HKCU\..\Run: [Tesco Insert Detect] C:\Program Files\Tesco\Picture Suite\InsDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - Global Startup: BlueSoleil.lnk = ?
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Researcher - {9455301C-CF6B-11D3-A266-00C04F689C50} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\EROProj.dll
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://*.mcafee.com
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=58813
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} -
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase6662.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1188743337078
O16 - DPF: {79E0C1C0-316D-11D5-A72A-006097BFA1AC} (EPSON Web Printer-SelfTest Control Class) - http://esupport.epson-europe.com/selftest/en/Prg/ESTPTest.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Google Update Service (gupdate1ca3b5a677feb0a) (gupdate1ca3b5a677feb0a) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McciCMService - Alcatel-Lucent - C:\Program Files\Common Files\Motive\McciCMService.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McShield - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Noori/LOCALS~1/Temp/msohtml1/01/clip_image002.gif
--
End of file - 13234 bytes
kevin27_b3d29f
2 Intern
•
1.5K Posts
0
February 3rd, 2011 13:00
Hi noori,
Running the Java file will be fine, but please hold of on that until we have completed the next few stages, I will let you know when the system is ready. As for the Adobe, we will also deal with that in time. First, lets try and get the boot time down to a reasonable amount of time.
We are going to stop all the unneeded startup entries from loading when Windows starts. I must stress the not one of these items are malicious, they are all legitimate programs, but they are really not needed to run as soon as the system start.
Each and every one can be started from there desktop icons or from the "All Programs" list in the start menu.
Just for now, please disable everything that I have listed and if you fell after wards that there is something that you can not live without, please let me know and we will reenable the entry.
Run HijackThis, and press "Do a System Scan Only".
1. When the scan is complete place a check mark next to the following entries:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
O4 - HKLM\..\Run: [VoiceCenter] "C:\Program Files\Creative\VoiceCenter\AndreaVC.exe" /tray
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [btbb_McciTrayApp] "C:\Program Files\BT Broadband Desktop Help\btbb\BTHelpNotifier.exe"
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1180866938\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Creative Detector] "C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /R
O4 - HKCU\..\Run: [Tesco Insert Detect] C:\Program Files\Tesco\Picture Suite\InsDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - Global Startup: BlueSoleil.lnk = ?
2. After checking these items CLOSE ALL open windows EXCEPT HijackThis and click "Fix Checked." Then, reboot your computer...
Note:BE CAREFUL NOT to check any other boxes as this may harm the workings of Windows and your PC
Once the system is rebooted, please navigate to this folder in blue bold and delete it. C:\Program Files\Common Files\AOL
Then please reboot the system and post a fresh HJT log and a status report on how the system is running.
Thanks.
noori
34 Posts
0
February 4th, 2011 05:00
Hello K27
All the recommended boxes in HJT were ticked and the system rebooted.
The boot-up is faster now : it took under 10 mins from power on to being able to use the internet. This is fatser than it has been for quite a while, thank you!
The AOL is still proving diffcult to shift: when I tried to delete the AOL folder I got an error message to the effect that "ACSCmn.dll" could not be deleted ....make sure the disc is not full and that the programm is not being used ..
The new HJT log follows:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:01:01, on 04/02/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Kontiki\KService.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.co.uk/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://bbc.co.uk/news/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\mskapbho.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20101107162650.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Researcher - {9455301C-CF6B-11D3-A266-00C04F689C50} - C:\Program Files\Common Files\Microsoft Shared\Reference 2001\EROProj.dll
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://*.mcafee.com
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=58813
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} -
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase6662.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1188743337078
O16 - DPF: {79E0C1C0-316D-11D5-A72A-006097BFA1AC} (EPSON Web Printer-SelfTest Control Class) - http://esupport.epson-europe.com/selftest/en/Prg/ESTPTest.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Google Update Service (gupdate1ca3b5a677feb0a) (gupdate1ca3b5a677feb0a) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McciCMService - Alcatel-Lucent - C:\Program Files\Common Files\Motive\McciCMService.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McShield - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Noori/LOCALS~1/Temp/msohtml1/01/clip_image002.gif
--
End of file - 10520 bytes
kevin27_b3d29f
2 Intern
•
1.5K Posts
0
February 4th, 2011 12:00
Hi,
Please post me a fresh set of DDS logs and we will remove the AOL folders after that.
Thanks.
noori
34 Posts
0
February 5th, 2011 08:00
Hi K27,
The dds files as requested.
Thank you.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_10-12-12.02)
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume2
Install Date: 20/04/2007 11:42:10
System Uptime: 05/02/2011 08:45:26 (8 hours ago)
Motherboard: Dell Inc. | | 0WG261
Processor: Intel(R) Pentium(R) 4 CPU 3.00GHz | Microprocessor | 2992/800mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 144 GiB total, 95.465 GiB free.
D: is CDROM ()
E: is CDROM ()
F: is Removable
G: is Removable
H: is Removable
I: is Removable
==== Disabled Device Manager Items =============
==== System Restore Points ===================
RP1: 18/01/2011 13:26:46 - System Checkpoint
RP2: 19/01/2011 12:36:55 - Installed HiJackThis
RP3: 20/01/2011 12:51:14 - System Checkpoint
RP4: 21/01/2011 13:13:11 - System Checkpoint
RP5: 22/01/2011 14:05:58 - System Checkpoint
RP6: 23/01/2011 14:53:24 - System Checkpoint
RP7: 24/01/2011 15:50:18 - System Checkpoint
RP8: 24/01/2011 19:18:44 - Installed Microsoft Office Basic Edition 2003
RP9: 25/01/2011 15:00:30 - Software Distribution Service 3.0
RP10: 25/01/2011 23:30:12 - Software Distribution Service 3.0
RP11: 26/01/2011 23:40:30 - System Checkpoint
RP12: 28/01/2011 15:29:17 - System Checkpoint
RP13: 29/01/2011 16:22:26 - System Checkpoint
RP14: 30/01/2011 17:13:04 - System Checkpoint
RP15: 31/01/2011 17:19:52 - System Checkpoint
RP16: 31/01/2011 23:03:03 - Removed J2SE Runtime Environment 5.0 Update 4
RP17: 31/01/2011 23:04:11 - Removed Java 2 Runtime Environment, SE v1.4.2_03
RP18: 31/01/2011 23:05:25 - Removed Java(TM) 6 Update 2
RP19: 31/01/2011 23:06:20 - Removed Java(TM) 6 Update 20
RP20: 31/01/2011 23:07:17 - Removed Java(TM) 6 Update 3
RP21: 31/01/2011 23:08:11 - Removed Java(TM) 6 Update 5
RP22: 31/01/2011 23:09:30 - Removed Java(TM) 6 Update 7
RP23: 31/01/2011 23:10:43 - Removed Java(TM) SE Runtime Environment 6 Update 1
RP24: 31/01/2011 23:38:33 - Installed Java(TM) SE Development Kit 6 Update 23
RP25: 31/01/2011 23:43:42 - Installed Java(TM) 6 Update 23
RP26: 31/01/2011 23:46:58 - Installed JavaFX(TM) 1.3 SDK
RP27: 01/02/2011 01:15:51 - Installed %1 %2.
RP28: 02/02/2011 10:41:17 - System Checkpoint
RP29: 03/02/2011 11:17:42 - System Checkpoint
RP30: 04/02/2011 13:46:47 - System Checkpoint
RP31: 05/02/2011 13:50:03 - System Checkpoint
==== Installed Programs ======================
32 Bit HP CIO Components Installer
7500_7600_7700_Help
Acrobat.com
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Photoshop 5.0 Limited Edition
Adobe Reader 9.4.1
AirZip Plug-in for Internet Explorer
Andrea VoiceCenter
AOL Uninstaller (Choose which Products to Remove)
Apple Application Support
Apple Mobile Device Support
Apple Software Update
Art Explosion Greeting Card Factory
ARTEuro
ATI - Software Uninstall Utility
ATI Catalyst Control Center
ATI Control Panel
ATI Display Driver
AutoUpdate
BBC iPlayer Desktop
BBC iPlayer Download Manager
Bonjour
BPD_HPSU
BPD_Scan
BPDfax
BPDSoftware
BPDSoftware_Ini
BT Broadband Desktop Help
BT Email Configuration Tool
BT Wireless Connection Manager
BT Yahoo! Applications
BufferChm
Catalyst Control Center Core Implementation
Catalyst Control Center Graphics Full Existing
Catalyst Control Center Graphics Full New
Catalyst Control Center Graphics Light
Catalyst Control Center Graphics Previews Common
ccc-core-preinstall
ccc-core-static
ccc-utility
CCC Help English
CCleaner
Chinese Traditional Fonts Support For Adobe Reader 9
Compatibility Pack for the 2007 Office system
Creative MediaSource
CustomerResearchQFolder
Dell CinePlayer
Dell Driver Reset Tool
Dell Support 3.1
Dell Support Center
Dell System Restore
Destinations
DeviceManagementQFolder
Digital Line Detect
DivX Codec
DivX Converter
DivX Player
DivX Web Player
DocProc
DocProcQFolder
Epen CD 3.5 C
ESPNMotion
eSupportQFolder
Extended Language Support Fonts Package
Free Games Offer, Desktop Shortcut
Free PDF to Word Doc Converter v1.1
GemMaster Mystic
Google Chrome
Google Earth
Google Toolbar for Internet Explorer
Google Update Helper
High Definition Audio Driver Package - KB835221
HiJackThis
Hotfix 2050 for SQL Server 2000 ENU (KB948110)
Hotfix 2055 for SQL Server 2000 ENU (KB960082)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Internet Explorer 7 (KB947864)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 10 (KB903157)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB2158563)
Hotfix for Windows XP (KB2443685)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB970653-v3)
Hotfix for Windows XP (KB976002-v5)
Hotfix for Windows XP (KB976098-v2)
Hotfix for Windows XP (KB979306)
Hotfix for Windows XP (KB981793)
HP Customer Participation Program 7.0
HP Imaging Device Functions 7.0
HP Officejet Pro All-In-One Series
HP Photosmart Essential
HP Product Assistant
HP Solution Center 7.0
HP Update
HPPhotoSmartExpress
HPProductAssistant
InstantShareDevicesMFC
Intel(R) 537EP V9x DF PCI Modem
Intel(R) PRO Network Connections Drivers
Intel(R) PROSet for Wired Connections
Internet Explorer Default Page
iTunes
Java Auto Updater
Java DB 10.5.3.0
Java(TM) 6 Update 23
Java(TM) SE Development Kit 6 Update 23
JavaFX(TM) 1.3 SDK
L7600
Learn2 Player (Uninstall Only)
Malwarebytes' Anti-Malware
MarketResearch
MathType 6
McAfee SecurityCenter
McAfee Virtual Technician
MCU
Microsoft .NET Framework 1.0 Hotfix (KB953295)
Microsoft .NET Framework 1.0 Hotfix (KB979904)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB2416447)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Encarta Encyclopedia Deluxe 2001 - WE
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft LifeCam
Microsoft National Language Support Downlevel APIs
Microsoft Office Basic Edition 2003
Microsoft Office Outlook 2003 with Business Contact Manager Update
Microsoft Office Small Business Edition 2003
Microsoft SQL Server Desktop Engine (MICROSOFTSMLBIZ)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Modem Event Monitor
Modem Helper
Modem On Hold
MPM
MSN
MSXML 4.0 SP2 (KB925672)
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MyWay Search Assistant
OCR Software by I.R.I.S 7.0
Otto
PanoStandAlone
PC Booster
Pivot Stickfigure Animator
ProductContext
QuickTime
RCT3 Soaked
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
RealUpgrade 1.1
Roxio MyDVD LE
Roxio RecordNow Audio
Roxio RecordNow Copy
Roxio RecordNow Data
S381 The Energetic Universe
Scan
scoris assessor
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Windows Internet Explorer 7 (KB937143)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB939653)
Security Update for Windows Internet Explorer 7 (KB942615)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Internet Explorer 7 (KB969897)
Security Update for Windows Internet Explorer 7 (KB972260)
Security Update for Windows Internet Explorer 8 (KB2183461)
Security Update for Windows Internet Explorer 8 (KB2360131)
Security Update for Windows Internet Explorer 8 (KB2416400)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows Internet Explorer 8 (KB974455)
Security Update for Windows Internet Explorer 8 (KB976325)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Player (KB2378111)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB975558)
Security Update for Windows Media Player (KB978695)
Security Update for Windows Media Player 10 (KB917734)
Security Update for Windows Media Player 10 (KB936782)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows XP (KB2079403)
Security Update for Windows XP (KB2115168)
Security Update for Windows XP (KB2121546)
Security Update for Windows XP (KB2160329)
Security Update for Windows XP (KB2229593)
Security Update for Windows XP (KB2259922)
Security Update for Windows XP (KB2279986)
Security Update for Windows XP (KB2286198)
Security Update for Windows XP (KB2296011)
Security Update for Windows XP (KB2296199)
Security Update for Windows XP (KB2347290)
Security Update for Windows XP (KB2360937)
Security Update for Windows XP (KB2387149)
Security Update for Windows XP (KB2419632)
Security Update for Windows XP (KB2423089)
Security Update for Windows XP (KB2436673)
Security Update for Windows XP (KB2440591)
Security Update for Windows XP (KB2443105)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951376)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB953839)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960715)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB971961)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977165)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978251)
Security Update for Windows XP (KB978262)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB979687)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB980436)
Security Update for Windows XP (KB981322)
Security Update for Windows XP (KB981852)
Security Update for Windows XP (KB981957)
Security Update for Windows XP (KB981997)
Security Update for Windows XP (KB982132)
Security Update for Windows XP (KB982214)
Security Update for Windows XP (KB982665)
Security Update for Windows XP (KB982802)
Shockwave
Skins
SM358 The Quantum World
Smart PDF Converter 4.2.3.225
SMT359 Electromagnetism
SolutionCenter
Sonic Activation Module
Sonic Advanced Decoder
Sonic DLA
Sonic Encoders
Sonic Update Manager
Sound Blaster Audigy ADVANCED MB
Sound Blaster Audigy ADVANCED MB Product Registration
Spelling Dictionaries Support For Adobe Reader 9
Status
T173
T356
Tesco Picture Suite
Tiscali Internet
Toolbox
TrayApp
Unload
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 8 (KB973874)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB976749)
Update for Windows Internet Explorer 8 (KB980182)
Update for Windows Media Player 10 (KB913800)
Update for Windows Media Player 10 (KB926251)
Update for Windows XP (KB2141007)
Update for Windows XP (KB2345886)
Update for Windows XP (KB2467659)
Update for Windows XP (KB951072-v2)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
Update Rollup 2 for Windows XP Media Center Edition 2005
Wanadoo Europe Installer
WebCyberCoach 3.2 Dell
WebFldrs XP
WebReg
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 7
Windows Internet Explorer 8
Windows Live OneCare safety scanner
Windows Media Format 11 runtime
Windows Media Player 10 Hotfix [See EmeraldQFE2 for more information]
Windows Media Player 11
Windows PowerShell(TM) 1.0
Windows XP Media Center Edition 2005 KB908246
Windows XP Media Center Edition 2005 KB925766
Windows XP Media Center Edition 2005 KB973768
Windows XP Service Pack 3
Yahoo! Software Update
==== Event Viewer Messages From Past Week ========
30/01/2011 21:25:40, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the IMAPI CD-Burning COM Service service to connect.
30/01/2011 21:25:40, error: Service Control Manager [7000] - The IMAPI CD-Burning COM Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
30/01/2011 21:24:07, error: ati2mtag [45062] - CRT invalid display type
30/01/2011 18:49:24, error: Service Control Manager [7000] - The HTTP SSL service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
30/01/2011 18:49:23, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the HTTP SSL service to connect.
30/01/2011 14:14:38, error: SideBySide [59] - Resolve Partial Assembly failed for Microsoft.VC80.MFCLOC. Reference error message: The referenced assembly is not installed on your system. .
30/01/2011 14:14:38, error: SideBySide [59] - Generate Activation Context failed for C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_decbdf0c\MFC80.DLL. Reference error message: The operation completed successfully. .
30/01/2011 14:14:38, error: SideBySide [32] - Dependent Assembly Microsoft.VC80.MFCLOC could not be found and Last Error was The referenced assembly is not installed on your system.
30/01/2011 12:16:49, error: Service Control Manager [7034] - The KService service terminated unexpectedly. It has done this 1 time(s).
30/01/2011 12:11:29, error: Service Control Manager [7000] - The COM+ System Application service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
30/01/2011 12:11:29, error: DCOM [10005] - DCOM got error "%1053" attempting to start the service COMSysApp with arguments "" in order to run the server: {ECABAFBC-7F19-11D2-978E-0000F8757E2A}
30/01/2011 12:11:25, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the COM+ System Application service to connect.
01/02/2011 01:34:31, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the mcmscsvc service.
01/02/2011 01:32:34, error: Service Control Manager [7031] - The McAfee VirusScan Announcer service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
01/02/2011 01:32:34, error: Service Control Manager [7031] - The McAfee Services service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
01/02/2011 01:32:34, error: Service Control Manager [7031] - The McAfee Proxy Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
01/02/2011 01:32:34, error: Service Control Manager [7031] - The McAfee Personal Firewall Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
01/02/2011 01:32:34, error: Service Control Manager [7031] - The McAfee Network Agent service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
01/02/2011 01:32:34, error: Service Control Manager [7031] - The McAfee Anti-Spam Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
01/02/2011 01:32:30, error: Service Control Manager [7034] - The Java Quick Starter service terminated unexpectedly. It has done this 1 time(s).
01/02/2011 01:32:29, error: Service Control Manager [7034] - The iPod Service service terminated unexpectedly. It has done this 1 time(s).
01/02/2011 01:32:25, error: Service Control Manager [7034] - The MSSQL$MICROSOFTSMLBIZ service terminated unexpectedly. It has done this 1 time(s).
01/02/2011 01:32:25, error: Service Control Manager [7034] - The MSCamSvc service terminated unexpectedly. It has done this 1 time(s).
01/02/2011 01:32:24, error: Service Control Manager [7034] - The McciCMService service terminated unexpectedly. It has done this 1 time(s).
01/02/2011 01:32:24, error: Service Control Manager [7034] - The McAfee SiteAdvisor Service service terminated unexpectedly. It has done this 1 time(s).
01/02/2011 01:32:24, error: Service Control Manager [7034] - The AOL Connectivity Service service terminated unexpectedly. It has done this 1 time(s).
==== End Of File ===========================
DDS (Ver_10-12-12.02) - NTFSx86
Run by Noori at 16:39:41.12 on 05/02/2011
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Professional 5.1.2600.3.1252.44.1033.18.510.125 [GMT 0:00]
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}
FW: McAfee Firewall *Enabled*
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
svchost.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Kontiki\KService.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\WINDOWS\System32\svchost.exe -k HPZ12
C:\WINDOWS\System32\svchost.exe -k HPZ12
svchost.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Noori\Desktop\dds.com
============== Pseudo HJT Report ===============
uStart Page = hxxp://bbc.co.uk/news/
uDefault_Page_URL = hxxp://www.dell.co.uk/myway
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uInternet Settings,ProxyOverride = *.local
uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
mURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn3\yt.dll
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn3\yt.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: McAfee Phishing Filter: {27b4851a-3207-45a2-b947-be8afe6163ab} - c:\progra~1\mcafee\msk\mskapbho.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
BHO: DriveLetterAccess: {5ca3d70e-1895-11cf-8e15-001234567890} - c:\windows\system32\dla\tfswshx.dll
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - c:\program files\common files\mcafee\systemcore\ScriptSn.20101107162650.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.6.5805.1910\swg.dll
BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\program files\yahoo!\companion\installs\cpn3\YTSingleInstance.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn3\yt.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
EB: Encarta &Researcher: {9455301c-cf6b-11d3-a266-00c04f689c50} - c:\program files\common files\microsoft shared\reference 2001\EROProj.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [mcui_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE}
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
IE: {9455301C-CF6B-11D3-A266-00C04F689C50} - {9455301C-CF6B-11D3-A266-00C04F689C50} - c:\program files\common files\microsoft shared\reference 2001\EROProj.dll
Trusted Zone: adobe.com\get
Trusted Zone: internet
Trusted Zone: mcafee.com
Trusted Zone: motive.com\pbttbc.bt
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} - hxxp://go.microsoft.com/fwlink/?linkid=58813
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21}
DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} - hxxp://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase6662.cab
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1188743337078
DPF: {79E0C1C0-316D-11D5-A72A-006097BFA1AC} - hxxp://esupport.epson-europe.com/selftest/en/Prg/ESTPTest.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} - hxxp://office.microsoft.com/officeupdate/content/opuc4.cab
DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {DE22A7AB-A739-4C58-AD52-21F9CD6306B7} - hxxp://download.microsoft.com/download/7/E/6/7E6A8567-DFE4-4624-87C3-163549BE2704/clearadj.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Filter: application/x-internet-signup - {A173B69A-1F9B-4823-9FDA-412F641E65D6} - c:\program files\tiscali\tiscali internet\dlls\tiscalifilter.dll
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\McIEPlg.dll
Handler: msero - {B0D92A71-886B-453B-A649-1B91F93801E7} - c:\program files\common files\microsoft shared\reference 2001\msero.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\McIEPlg.dll
Notify: AtiExtEvent - Ati2evxx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
Hosts: 192.168.1.70 HP00215AA2CB59
============= SERVICES / DRIVERS ===============
R0 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2008-9-3 386840]
R1 mfetdi2k;McAfee Inc. mfetdi2k;c:\windows\system32\drivers\mfetdi2k.sys [2010-8-26 84072]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\mcafee\siteadvisor\McSACore.exe [2008-9-3 93320]
R2 McMPFSvc;McAfee Personal Firewall Service;"c:\program files\common files\mcafee\mcsvchost\McSvHost.exe" /McCoreSvc [2010-8-26 271480]
R2 McNaiAnn;McAfee VirusScan Announcer;"c:\program files\common files\mcafee\mcsvchost\McSvHost.exe" /McCoreSvc [2010-8-26 271480]
R2 McProxy;McAfee Proxy Service;"c:\program files\common files\mcafee\mcsvchost\McSvHost.exe" /McCoreSvc [2010-8-26 271480]
R2 McrdSvc;Media Center Extender Service;c:\windows\ehome\mcrdsvc.exe [2005-8-5 99328]
R2 McShield;McShield;c:\program files\common files\mcafee\systemcore\mcshield.exe [2010-8-26 171168]
R2 mfefire;McAfee Firewall Core Service;c:\program files\common files\mcafee\systemcore\mfefire.exe [2010-8-26 188136]
R2 mfevtp;McAfee Validation Trust Protection Service;c:\program files\common files\mcafee\systemcore\mfevtps.exe [2010-8-26 141792]
R3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2010-8-26 55840]
R3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2008-9-3 152960]
R3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2008-9-3 52104]
R3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2010-8-26 313288]
R3 mfendiskmp;mfendiskmp;c:\windows\system32\drivers\mfendisk.sys [2010-8-26 88544]
S2 gupdate1ca3b5a677feb0a;Google Update Service (gupdate1ca3b5a677feb0a);c:\program files\google\update\GoogleUpdate.exe [2009-9-22 133104]
S3 mfendisk;McAfee Core NDIS Intermediate Filter;c:\windows\system32\drivers\mfendisk.sys [2010-8-26 88544]
S3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2010-8-26 84264]
S3 mferkdk;McAfee Inc. mferkdk;c:\windows\system32\drivers\mferkdk.sys [2008-9-3 34248]
S3 mfesmfk;McAfee Inc. mfesmfk;c:\windows\system32\drivers\mfesmfk.sys [2008-9-3 40552]
=============== Created Last 30 ================
2011-02-01 01:19:39 -------- d-----w- c:\docume~1\noori\applic~1\ElevatedDiagnostics
2011-01-31 23:47:02 -------- d-----w- c:\program files\JavaFX
2011-01-31 23:44:50 -------- d-----w- c:\program files\Sun
2011-01-31 23:44:23 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-01-30 18:29:22 -------- d-----w- C:\S@E_backups
2011-01-28 12:37:20 -------- d-----w- c:\docume~1\noori\applic~1\f-secure
2011-01-28 12:35:48 -------- d-----w- c:\docume~1\alluse~1\applic~1\F-Secure
2011-01-28 11:39:34 -------- d-----w- c:\program files\CCleaner
2011-01-24 19:18:53 -------- d-----w- c:\program files\common files\ODBC
2011-01-19 12:37:01 388096 ----a-r- c:\docume~1\noori\applic~1\microsoft\installer\{45a66726-69bc-466b-a7a4-12fcba4883d7}\HiJackThis.exe
2011-01-19 12:36:57 -------- d-----w- c:\program files\Trend Micro
2011-01-15 22:44:03 -------- d-----w- c:\docume~1\alluse~1\applic~1\SUPERAntiSpyware.com
2011-01-15 21:37:49 -------- d-----w- c:\docume~1\noori\applic~1\Malwarebytes
2011-01-15 21:37:27 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-01-15 21:37:27 -------- d-----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
2011-01-15 21:37:23 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-01-15 21:37:23 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
==================== Find3M ====================
2011-01-31 23:43:51 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-01-10 15:52:53 103784 ----a-w- c:\documents and settings\noori\GoToAssistDownloadHelper.exe
2010-11-29 17:38:30 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
2010-11-29 17:38:30 69632 ----a-w- c:\windows\system32\QuickTime.qts
2010-11-18 18:12:44 81920 ----a-w- c:\windows\system32\isign32.dll
2010-11-09 14:52:35 249856 ----a-w- c:\windows\system32\odbc32.dll
============= FINISH: 16:41:26.39 ===============
kevin27_b3d29f
2 Intern
•
1.5K Posts
0
February 6th, 2011 05:00
Hi,
We are now gong to remove the left over AOL entries.
Please download & install - ERUNT (This is a utility that will replicate a copy of your Registry)
# Note: To ensure proper operation of ERUNT, you should be logged in as a system administrator.
Please download OTM by OldTimer. Save it to your desktop.
Double click OTM.exe to start the tool.
:Processes
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
:Files
C:\Program Files\Common Files\AOL
:Commands
[emptytemp]
[reboot]
Note: If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes.
If the machine reboots, the Results log can be found here:
c:\_OTMoveIt\MovedFiles\mmddyyyy_hhmmss.log
Where mmddyyyy_hhmmss is the date of the tool run.
Once the machine has rebooted, please reboot the system again and this time please do these next few things.
1) Time the amount of time that it takes for the machine to boot to an active Desktop, DO NOT start Internet Explorer, just time until you get to the desktop.
2) Then go to "Start > Run > type iexplore -exoff and hit enter", this will start IE with no add-ons, please time how long it takes IE to start.
3) Please download and install Firefox, NOTE: When Prompted if you would like to import settings, add-on's and bookmarks from IE, please select NO, then please reboot the system, and time how long it takes to get to a working Firefox internet page.
Please post back the OTM log, and the boot times that I have asked for above.
Thanks
K27.
noori
34 Posts
0
February 7th, 2011 06:00
Hi,
All tasks carried out! The times were as follows:
boot-up to active desktop = 2min
from running "iexplore -exoff" to IE starting = 4min (ie, from bootup to being on the internet =6 min)
bootup to a working Firefox internet page=4min (much faster than it has been for a very long time..thank you!)
I should just point out that both with and without the Firefox, even after the desktop is available the machine carries on making a lot of "hard-disc-like" noises for several minutes; it's obviously very busy doing something! It used to make the same noises for about 40 mins before we started this clean up!
Thanks
The OTM log follows:
All processes killed
========== PROCESSES ==========
No active process named C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe was found!
========== FILES ==========
C:\Program Files\Common Files\AOL\WinsockFix\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\WinsockFix folder moved successfully.
C:\Program Files\Common Files\AOL\System Information folder moved successfully.
C:\Program Files\Common Files\AOL\Screensaver folder moved successfully.
C:\Program Files\Common Files\AOL\Loader folder moved successfully.
C:\Program Files\Common Files\AOL\Launch folder moved successfully.
C:\Program Files\Common Files\AOL\IPHSend folder moved successfully.
C:\Program Files\Common Files\AOL\Backup\ACS\Rollback folder moved successfully.
C:\Program Files\Common Files\AOL\Backup\ACS\Current\US folder moved successfully.
C:\Program Files\Common Files\AOL\Backup\ACS\Current\UK folder moved successfully.
C:\Program Files\Common Files\AOL\Backup\ACS\Current\Suite\comps folder moved successfully.
C:\Program Files\Common Files\AOL\Backup\ACS\Current\Suite folder moved successfully.
C:\Program Files\Common Files\AOL\Backup\ACS\Current folder moved successfully.
C:\Program Files\Common Files\AOL\Backup\ACS folder moved successfully.
C:\Program Files\Common Files\AOL\Backup folder moved successfully.
C:\Program Files\Common Files\AOL\AOLDiag\locale\pt folder moved successfully.
C:\Program Files\Common Files\AOL\AOLDiag\locale\ja folder moved successfully.
C:\Program Files\Common Files\AOL\AOLDiag\locale\fr-CA folder moved successfully.
C:\Program Files\Common Files\AOL\AOLDiag\locale\fr folder moved successfully.
C:\Program Files\Common Files\AOL\AOLDiag\locale\es-US folder moved successfully.
C:\Program Files\Common Files\AOL\AOLDiag\locale\es folder moved successfully.
C:\Program Files\Common Files\AOL\AOLDiag\locale\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\AOLDiag\locale\en-CA folder moved successfully.
C:\Program Files\Common Files\AOL\AOLDiag\locale\en folder moved successfully.
C:\Program Files\Common Files\AOL\AOLDiag\locale\de folder moved successfully.
C:\Program Files\Common Files\AOL\AOLDiag\locale folder moved successfully.
C:\Program Files\Common Files\AOL\AOLDiag folder moved successfully.
C:\Program Files\Common Files\AOL\AOL Spyware Protection folder moved successfully.
C:\Program Files\Common Files\AOL\ACS\vista folder moved successfully.
C:\Program Files\Common Files\AOL\ACS\UK folder moved successfully.
C:\Program Files\Common Files\AOL\ACS folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\urlDispatcher\ver4_2_8_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\urlDispatcher folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\urlData\ver1_5_2_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\urlData folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\toaster\ver4_2_3_1\theme folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\toaster\ver4_2_3_1\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\toaster\ver4_2_3_1\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\toaster\ver4_2_3_1\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\toaster\ver4_2_3_1\content folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\toaster\ver4_2_3_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\toaster folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\suiteFramework\ver3_1_3_1\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\suiteFramework\ver3_1_3_1\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\suiteFramework\ver3_1_3_1\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\suiteFramework\ver3_1_3_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\suiteFramework folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\softwareUpdate\ver2_14_2_30\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\softwareUpdate\ver2_14_2_30\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\softwareUpdate\ver2_14_2_30\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\softwareUpdate\ver2_14_2_30 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\softwareUpdate folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\settingsManagerApp\ver1_1_27_1\theme folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\settingsManagerApp\ver1_1_27_1\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\settingsManagerApp\ver1_1_27_1\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\settingsManagerApp\ver1_1_27_1\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\settingsManagerApp\ver1_1_27_1\content folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\settingsManagerApp\ver1_1_27_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\settingsManagerApp folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\security\ver2_0_1_2 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\security folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\script\ver2_3_3_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\script folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\preferences\ver4_1_1_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\preferences folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\os\ver5_2_1_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\os folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\notification\ver6_2_6_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\notification folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\miniXML\ver1_5_1_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\miniXML folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\metrics\ver3_6_15_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\metrics folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\localStorage\ver7_0_3_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\localStorage folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\iphSend\ver2_0_3_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\iphSend folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\identityInformation\ver4_4_1_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\identityInformation folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\http\ver2_6_6_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\http folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\htmlRenderer\ver1_0_14_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\htmlRenderer folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\dialerTray\ver4_6_61_4\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\dialerTray\ver4_6_61_4\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\dialerTray\ver4_6_61_4 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\dialerTray folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\defaultauthenticationhandlerapp\ver2_1_3_1\theme folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\defaultauthenticationhandlerapp\ver2_1_3_1\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\defaultauthenticationhandlerapp\ver2_1_3_1\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\defaultauthenticationhandlerapp\ver2_1_3_1\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\defaultauthenticationhandlerapp\ver2_1_3_1\content folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\defaultauthenticationhandlerapp\ver2_1_3_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\defaultauthenticationhandlerapp folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\Connectivity\ver4_6_61_4 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\Connectivity folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\connection\ver6_0_2_1\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\connection\ver6_0_2_1\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\connection\ver6_0_2_1\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\connection\ver6_0_2_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\connection folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\compression\ver2_4_3_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\compression folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\theme\images\TabScroll folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\theme\images\SuperTwisty folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\theme\images\InputFields folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\theme\images\FontToolbar folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\theme\images\DarkTwisty folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\theme\images folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\theme folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\content\windowingPack folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\content\tabPack folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\content\menuPack folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\content\listPack folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\content\inputPack folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\content\extrasPack folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\content\editorPack folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\content\dialog folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\content\core folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\content\aolHelpBox folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2\content folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit\ver1_5_14_2 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyToolkit folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyrenderer\ver1_5_14_2\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyrenderer\ver1_5_14_2\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyrenderer\ver1_5_14_2\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyrenderer\ver1_5_14_2 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\boxelyrenderer folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\bfts\ver2_13_9_10\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\bfts\ver2_13_9_10\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\bfts\ver2_13_9_10\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\bfts\ver2_13_9_10 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\bfts folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\basics\ver8_0_4_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\basics folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\autofixDriver\ver2_3_12_3\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\autofixDriver\ver2_3_12_3\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\autofixDriver\ver2_3_12_3\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\autofixDriver\ver2_3_12_3 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\autofixDriver folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\autofix\ver2_3_12_3\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\autofix\ver2_3_12_3\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\autofix\ver2_3_12_3\resources\autofixes folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\autofix\ver2_3_12_3\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\autofix\ver2_3_12_3 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\autofix folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\authentication\ver5_2_7_1\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\authentication\ver5_2_7_1\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\authentication\ver5_2_7_1\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\authentication\ver5_2_7_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\authentication folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\applicationdetect\ver2_1_7_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\applicationdetect folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\aolsystrayservice\ver3_0_11_1\resources\en-US\ssc folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\aolsystrayservice\ver3_0_11_1\resources\en-US\aol folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\aolsystrayservice\ver3_0_11_1\resources\en-US\aim folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\aolsystrayservice\ver3_0_11_1\resources\en-US folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\aolsystrayservice\ver3_0_11_1\resources\en-GB\ssc folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\aolsystrayservice\ver3_0_11_1\resources\en-GB\aol folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\aolsystrayservice\ver3_0_11_1\resources\en-GB\aim folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\aolsystrayservice\ver3_0_11_1\resources\en-GB folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\aolsystrayservice\ver3_0_11_1\resources folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\aolsystrayservice\ver3_0_11_1 folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services\aolsystrayservice folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee\services folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938\ee folder moved successfully.
C:\Program Files\Common Files\AOL\1180866938 folder moved successfully.
C:\Program Files\Common Files\AOL folder moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: All Users
User: Cami
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Cami.OFFICE1
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Liz
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Liz.OFFICE1
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 0 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Noori
->Temp folder emptied: 10553 bytes
->Temporary Internet Files folder emptied: 7553052 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Rustin
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: rustin laptop
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Rustin.OFFICE1
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Tara
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Tara.OFFICE1
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 664 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 7.00 mb
OTM by OldTimer - Version 3.1.17.2 log created on 02072011_130043
Files moved on Reboot...
Registry entries deleted on Reboot...
kevin27_b3d29f
2 Intern
•
1.5K Posts
0
February 7th, 2011 07:00
Hi,
Were making good progress, that's good.
Please tell me how long you have left on your McAfee subscription and do you still have the product key that came with the software. This will be in either the email that was sent to you when you downloaded it or on the CD sleeve when you purchased it.
Also, Do you still have your Windows disk?
Thanks.
noori
34 Posts
0
February 8th, 2011 03:00
Hi,
My McAffee is due for renewal in about 3 months time.
I've had a quick look and I definitely have the MS Office disc but I'll have to get back to you about the Windows disc or the McAffee product key. I hasten to add that both are "legit" copies, and the McAffee is just downloaded every year ( I don't think I use a product key when renewing it) .
I'll ask the other family members and get back to you soon.
Thank
kevin27_b3d29f
2 Intern
•
1.5K Posts
0
February 8th, 2011 08:00
Hi,
Piracy is not my concern. We only have a few things left that we can try, I believe McAfee may well be slowing down the system when it starts up. There is always going to be a compromise between security and speed but McAfee is a big system hog. I would have like to have had you uninstall it, hence the reason for the product key.
The windows disk is to run a scan and check that all files are in present and working, if any need replacing, you will need the Windows Install disk to accomplish this.
For now we will try something different.
Go to Start > Run > type cmd into the Run box and tap enter . After the command box opens, type this at the prompt (>);
chkdsk /r
and tap enter . Note the space between the "k" and the "/".
You will get a message that the drive cannot be access as it is locked, but that the command can be scheduled to run at the next boot. Type Y and then tap enter again. You will get a message that chkdsk has been scheduled to run on the next boot. Then reboot.
chkdsk will run during the next reboot, and it will take quite a bit of time, particularly if your boot partition is large. What the /r flag does is force chkdsk to run an expanded version of chkdsk that has 5 tests. The last two will check the drive for file/folder/free space errors and also fix related MFT errors if there are any.
Once chkdsk has finished and the system is booted up, please reboot the system and time how long it take to get to a working IE page.
Then please permanently disable McAfee:
- Please open McAfee Security Centre
- Under Common Tasks click on Home
- Click Computer Files
- Click Configure
- Make sure the following are disabled by ticking the "Off" button.
Virus protectionSpyware protection
System Guards Protection
Script Scanning Protection (you may have to scroll down to see it)
Then please reboot the system and time how long it takes for a working IE page to load.
Then please reboot again and time how long it take to get a working FF page open.
You can then re-enable McAfee by reversing the steps above.
Please post back the start up times as requested.
Thanks.
noori
34 Posts
0
February 9th, 2011 15:00
Hi,
Sorry it took a while but here are the times:
After running "chkdisc /r":
switch on to working IE page= 5.0 min
switch on to working FF page=4.30 min
After disabling McAfee:
switch on to working IE page: 4.30 min
switch on to working FF page: 3.45 min
I have to point out that when I disabled McAffee, the options that I found were not quite the same as the ones in your post: I turned off the "fire wall", the "real-time scanning" and the "automatic updates", there was nothing else (eg system guard protection etc) to turn off.
I am also pleased to report that I now have the Windows disc and the orginial McAffee disc (plus the code etc) if we still need them.
Thank you for your continued help.
kevin27_b3d29f
2 Intern
•
1.5K Posts
0
February 10th, 2011 12:00
Your Welcome.
Please go to "Start > Run > type SFC /Scannow and hit enter.
The computer will then start a scan of all system critical files, if it finds any that need replacing it will try to do so. If no reasonable replacement is found, it may prompt you to insert the Windows disk, please do so if prompted to.
Once the scan has finished, please give me a status update on how the system is running, and whether the start up time is better.
Thanks.
noori
34 Posts
0
February 11th, 2011 04:00
Hi,
When I ran the SCF software it propmted me to insert the disc with the message " Files that are required for Windows to run properly must be copied to DLL Cache". But then it refused to accept the disc; saying that it is the wrong disc! This happened a few times during the scan: on each occasion I opted to skip that particular action so that the scan could continue to the end.
The disc involved is a Dell disc and once loaded it offers me several options including "Install Windows XP", "Install optional Windows components", "perform additional tasks" & "perform system compatability"; I've never used the disc before.
I did reboot and time the machine after the scan, just in case, and it took just under 5mins to get a working IE page.
Thanks