Unsolved

This post is more than 5 years old

7 Posts

221

February 3rd, 2008 15:00

bad issues with computer

after doing a reformatting and fresh install my pc still has the virus or what ever in it. after about an hour of being on connected to the internet my connection gets limited access so i can't browse the web. also when i try to shut it down it will not turn off waited 10min and had to hold down the button. Anyways here is a log after i start it up. if needed could do one after i get the limited connection to.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11: 52: 34 AM, on 2/ 3/ 2008
Platform: Windows Vista ( WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 ( 7.00.6000.16575)
Boot mode: Normal

Running processes:
C:\ Windows\ system32\ Dwm.exe
C:\ Windows\ system32\ taskeng.exe
C:\ Windows\ Explorer.EXE
C:\ Program Files\ Windows Defender\ MSASCui.exe
C:\ Windows\ WindowsMobile\ wmdc.exe
C:\ Program Files\ Creative\ Sound Blaster X-Fi\ Volume Panel\ VolPanlu.exe
C:\ Windows\ System32\ Ctxfihlp.exe
C:\ Program Files\ Trend Micro\ Internet Security 14\ pccguide.exe
C:\ Program Files\ Google\ Google Desktop Search\ GoogleDesktop.exe
C:\ Windows\ System32\ CTxfispi.exe
C:\ Windows\ System32\ rundll32.exe
C:\ Windows\ System32\ rundll32.exe
C:\ Program Files\ Google\ Google Desktop Search\ GoogleDesktop.exe
C:\ Program Files\ Google\ GoogleToolbarNotifier\ GoogleToolbarNotifier.exe
C:\ Program Files\ Dell Support Center\ bin\ sprtcmd.exe
C:\ Program Files\ Dell\ QuickSet\ quickset.exe
C:\ Program Files\ Google\ Google Desktop Search\ GoogleDesktop.exe
C:\ Program Files\ Mozilla Firefox\ firefox.exe
C:\ Program Files\ Trend Micro\ HijackThis\ HijackThis.exe

R1 - HKLM\ Software\ Microsoft\ Internet Explorer\ Main, Default_ Page_ URL = http:// go.microsoft.com/ fwlink/? LinkId= 69157
R1 - HKLM\ Software\ Microsoft\ Internet Explorer\ Main, Default_ Search_ URL = http:// go.microsoft.com/ fwlink/? LinkId= 54896
R1 - HKLM\ Software\ Microsoft\ Internet Explorer\ Main, Search Page = http:// go.microsoft.com/ fwlink/? LinkId= 54896
R0 - HKLM\ Software\ Microsoft\ Internet Explorer\ Main, Start Page = http:// go.microsoft.com/ fwlink/? LinkId= 69157
R0 - HKLM\ Software\ Microsoft\ Internet Explorer\ Search, SearchAssistant =
R0 - HKLM\ Software\ Microsoft\ Internet Explorer\ Search, CustomizeSearch =
R1 - HKCU\ Software\ Microsoft\ Internet Explorer\ Main, Window Title = Internet Explorer provided by Dell
R0 - HKCU\ Software\ Microsoft\ Internet Explorer\ Toolbar, LinksFolderName =
O1 - Hosts: :: 1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - { 06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\ Program Files\ Common Files\ Adobe\ Acrobat\ ActiveX\ AcroIEHelper.dll
O2 - BHO: SSVHelper Class - { 761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\ Program Files\ Java\ jre1.6.0\ bin\ ssv.dll
O2 - BHO: Google Toolbar Helper - { AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\ program files\ google\ googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - { AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\ Program Files\ Google\ GoogleToolbarNotifier\ 2.0.301.7164\ swg.dll
O2 - BHO: Browser Address Error Redirector - { CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\ Program Files\ Dell\ BAE\ BAE.dll
O3 - Toolbar: & Google - { 2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\ program files\ google\ googletoolbar2.dll
O4 - HKLM\..\ Run: [ Windows Defender] % ProgramFiles%\ Windows Defender\ MSASCui.exe -hide
O4 - HKLM\..\ Run: [ ECenter] C:\ Dell\ E-Center\ EULALauncher.exe
O4 - HKLM\..\ Run: [ Windows Mobile Device Center] % windir%\ WindowsMobile\ wmdc.exe
O4 - HKLM\..\ Run: [ VolPanel] " C:\ Program Files\ Creative\ Sound Blaster X-Fi\ Volume Panel\ VolPanlu.exe" / r
O4 - HKLM\..\ Run: [ CTxfiHlp] CTXFIHLP.EXE

7 Posts

February 3rd, 2008 15:00

O4 - HKLM\..\ Run: [ UpdReg] C:\ Windows\ UpdReg.EXE
O4 - HKLM\..\ Run: [ ISUSScheduler] " C:\ Program Files\ Common Files\ InstallShield\ UpdateService\ issch.exe" -start
O4 - HKLM\..\ Run: [ pccguide.exe] " C:\ Program Files\ Trend Micro\ Internet Security 14\ pccguide.exe"
O4 - HKLM\..\ Run: [ Adobe Reader Speed Launcher] " C:\ Program Files\ Adobe\ Reader 8.0\ Reader\ Reader_ sl.exe"
O4 - HKLM\..\ Run: [ Google Desktop Search] " C:\ Program Files\ Google\ Google Desktop Search\ GoogleDesktop.exe" / startup
O4 - HKLM\..\ Run: [ dscactivate] " C:\ Program Files\ Dell Support Center\ gs_ agent\ custom\ dsca.exe"
O4 - HKLM\..\ Run: [ NvSvc] RUNDLL32.EXE C:\ Windows\ system32\ nvsvc.dll, nvsvcStart
O4 - HKLM\..\ Run: [ NvCplDaemon] RUNDLL32.EXE C:\ Windows\ system32\ NvCpl.dll, NvStartup
O4 - HKLM\..\ Run: [ NvMediaCenter] RUNDLL32.EXE C:\ Windows\ system32\ NvMcTray.dll, NvTaskbarInit
O4 - HKCU\..\ Run: [ WindowsWelcomeCenter] rundll32.exe oobefldr.dll, ShowWelcomeCenter
O4 - HKCU\..\ Run: [ swg] C:\ Program Files\ Google\ GoogleToolbarNotifier\ GoogleToolbarNotifier.exe
O4 - HKCU\..\ Run: [ DellSupportCenter] " C:\ Program Files\ Dell Support Center\ bin\ sprtcmd.exe" / P DellSupportCenter
O4 - HKUS\ S-1-5-19\..\ Run: [ Sidebar] % ProgramFiles%\ Windows Sidebar\ Sidebar.exe / detectMem ( User ' LOCAL SERVICE')
O4 - HKUS\ S-1-5-19\..\ Run: [ WindowsWelcomeCenter] rundll32.exe oobefldr.dll, ShowWelcomeCenter ( User ' LOCAL SERVICE')
O4 - HKUS\ S-1-5-20\..\ Run: [ Sidebar] % ProgramFiles%\ Windows Sidebar\ Sidebar.exe / detectMem ( User ' NETWORK SERVICE')
O4 - Global Startup: QuickSet.lnk = C:\ Program Files\ Dell\ QuickSet\ quickset.exe
O9 - Extra button: ( no name) - { 08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\ Program Files\ Java\ jre1.6.0\ bin\ npjpi160.dll
O9 - Extra ' Tools' menuitem: Sun Java Console - { 08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\ Program Files\ Java\ jre1.6.0\ bin\ npjpi160.dll
O9 - Extra button: @C:\ Windows\ WindowsMobile\ INetRepl.dll, -222 - { 2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\ Windows\ WindowsMobile\ INetRepl.dll
O9 - Extra button: ( no name) - { 2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\ Windows\ WindowsMobile\ INetRepl.dll
O9 - Extra ' Tools' menuitem: @C:\ Windows\ WindowsMobile\ INetRepl.dll, -223 - { 2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\ Windows\ WindowsMobile\ INetRepl.dll
O13 - Gopher Prefix:
O16 - DPF: { 644E432F-49D3-41A1-8DD5-E099162EEEC5} ( Symantec RuFSI Utility Class) - http:// security.symantec.com/ sscv6/ SharedContent/ common/ bin/ cabsa.cab
O16 - DPF: { EF791A6B-FC12-4C68-99EF-FB9E207A39E6} ( McFreeScan Class) - http:// download.mcafee.com/ molbin/ iss-loc/ mcfscan/ 2, 2, 0, 5221/ mcfscan.cab
O20 - AppInit_ DLLs: C:\ PROGRA~ 1\ Google\ GOOGLE~ 2\ GOEC62~ 1.DLL
O23 - Service: GoogleDesktopManager - Google - C:\ Program Files\ Google\ Google Desktop Search\ GoogleDesktop.exe
O23 - Service: Google Updater Service ( gusvc) - Google - C:\ Program Files\ Google\ Common\ Google Updater\ GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager ( IDriverT) - Macrovision Corporation - C:\ Program Files\ Common Files\ InstallShield\ Driver\ 1050\ Intel 32\ IDriverT.exe
O23 - Service: Trend Micro Central Control Component ( PcCtlCom) - Trend Micro Inc. - C:\ PROGRA~ 1\ TRENDM~ 1\ INTERN~ 1\ PcCtlCom.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\ Program Files\ Common Files\ Roxio Shared\ 9.0\ SharedCOM\ RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 ( RoxWatch9) - Sonic Solutions - C:\ Program Files\ Common Files\ Roxio Shared\ 9.0\ SharedCOM\ RoxWatch9.exe
O23 - Service: SupportSoft Sprocket Service ( dellsupportcenter) ( sprtsvc_ dellsupportcenter) - SupportSoft, Inc. - C:\ Program Files\ Dell Support Center\ bin\ sprtsvc.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\ Program Files\ Common Files\ SureThing Shared\ stllssvr.exe
O23 - Service: Trend Micro Real-time Service ( Tmntsrv) - Trend Micro Inc. - C:\ PROGRA~ 1\ TRENDM~ 1\ INTERN~ 1\ Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall ( TmPfw) - Trend Micro Inc. - C:\ PROGRA~ 1\ TRENDM~ 1\ INTERN~ 1\ TmPfw.exe
O23 - Service: Trend Micro Proxy Service ( tmproxy) - Trend Micro Inc. - C:\ PROGRA~ 1\ TRENDM~ 1\ INTERN~ 1\ tmproxy.exe

--
End of file - 7177 bytes

0 events found

No Events found!

Top