Run Hijackthis, click on the 'scan' button and then 'save log' button. Copy and paste the contents of the text file you save into a reply to this message. A lot of posters make mistakes here in copying and pasting so reread the left info sidebar called Copy and Paste at
http://www.tomcoyote.com/hjt
Do not fix anything in HJT log screen without assistance. Many items are normal for Windows operation. It should identify the vast majority of your problems and enable us to help you clean them off your system.
Stay in this thread for continuity. Reply to this message.
Logfile of HijackThis v1.97.7 Scan saved at 12:02:37 AM, on 5/14/2004 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Don't see anything at first glance, but it's late and I'm through for the night...what issues are you having besides slowness? And define that...slowness only while browsing or anything in Windows?
HI, IM SO SORRY!! i forgot abou the MSconfig deal. here is EVERYTHING, complete with Enable everything.
sooooooo sorry!!!!
new log!
Logfile of HijackThis v1.97.7 Scan saved at 12:21:56 AM, on 5/14/2004 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
But slowness. well i first noticed it when the new Service pack came out. i tried to roll back to a certain date, but i waited too long i think. so i couldnt roll back to anything.
but it's slowness everywhere. it comes up seldomly, for example, it would be 70% slow, 30% regular speed for the most part. i would have no problem using my mouse, but when it does get laggy, my mouse is slow, it skips on the screen, and whenever i open up a new internet browser, my music would skip, that's only if i listening to music.
any help?
so my friends tried again to help me, by adjusting my virtual memory, but that was unsuccessful. so i dont know what to do. one of my smart alechey friends, wanted me to recover my C: partition, so all i gotta do is relink, and shortcut everything back from the D: to the C: yeah it's weird
So they are legit - although some may not be required.
BTW we use the downloadable exe file from sysinfo rather than the live web connection which is often overloaded.
=====================================
mfong
Important: Create a folder on the C: drive called C:\HJT. You can do this by going to My Computer (Windows key+e) then double click on C: then right click and select New then Folder and name it HJT. Unzip HijackThis into this folder. When you run HijackThis from this folder and have it "Fixed checked" it will create a backup file of modifications to use if restore is necessary. Please delete the old copy (including the zip copy) so it can't be used. =====================================
Well the backweb item that Navin mentioned is not required. O4 - HKCU\..\Run: [LDM] \Program\BackWeb-8876480.exe
Do you need peer to peer services running all the time - if so you will be slow. O4 - Startup: iMesh.lnk = D:\Program Files\iMesh\Client\iMeshClient.exe O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART
the Idesktop is my wireless keyboard and my itouch mouse, the vibrating mouse =) but other than that, i dont know what the other stuff is
Ok, so with the sysinfo.com. i'm going to copy and paste the programs that i'm running, and hit search, correct? and if it comes up as X or whatever, im going to hit delete? in hijackthis? and for these Well the backweb item that Navin mentioned is not required. O4 - HKCU\..\Run: [LDM] \Program\BackWeb-8876480.exe
Do you need peer to peer services running all the time - if so you will be slow. O4 - Startup: iMesh.lnk = D:\Program Files\iMesh\Client\iMeshClient.exe O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART
is it ok, if i unchecked the stuff that you posted about the backweb, etc.. in MSconfig? because i couldnt find it in the hijackthis, because after i posted the full list of everything, i went back to MSconfig and went back to the start up plan that i had.
Texruss
3.4K Posts
0
May 14th, 2004 01:00
Run Hijackthis, click on the 'scan' button and then 'save log' button. Copy and paste the contents of the text file you save into a reply to this message. A lot of posters make mistakes here in copying and pasting so reread the left info sidebar called Copy and Paste at http://www.tomcoyote.com/hjt
Do not fix anything in HJT log screen without assistance. Many items are normal for Windows operation. It should identify the vast majority of your problems and enable us to help you clean them off your system.
Stay in this thread for continuity. Reply to this message.
HTH (Hope that Helps)
Texruss
mfong
1 Rookie
•
36 Posts
0
May 14th, 2004 03:00
Logfile of HijackThis v1.97.7
Scan saved at 12:02:37 AM, on 5/14/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\System32\S24EvMon.exe
C:\WINDOWS\system32\ZCfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
D:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\WINDOWS\System32\RegSrvc.exe
D:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\WINDOWS\System32\svchost.exe
D:\Program Files\RealVNC\WinVNC\winvnc.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
d:\Program Files\Logitech\MouseWare\system\em_exec.exe
D:\Program Files\Logitech\iTouch\iTouch.exe
C:\WINDOWS\System32\P2P Networking\P2P Networking.exe
C:\PROGRA~1\PANICW~1\POP-UP~1\PopUpStopperProfessional.exe
D:\Program Files\AIM\aim.exe
D:\Program Files\Rainlendar\Rainlendar.exe
C:\Program Files\Aqua Dock\Aqua Dock\Aqua Dock\Aqua Dock.exe
C:\Program Files\Immersion Corporation\TouchSense\Clients\Desktop\IDesktop.exe
C:\Program Files\YzShadow\Yzshadow\Yzshadow\YzShadow.exe
C:\Program Files\Immersion Corporation\TouchSense\Server\TouchSense.exe
C:\WINDOWS\webshots.scr
D:\Program Files\Winamp\winamp.exe
C:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\Netscape\Netscape\Netscp.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
d:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.512\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = home.netscape.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.netscape.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://D%3A%5CProgram%20Files%5CNetscape%5CNetscape%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\Administrator\Application Data\Mozilla\Profiles\default\9dvr7bi8.slt\prefs.js)
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [zBrowser Launcher] d:\Program Files\Logitech\iTouch\iTouch.exe
O4 - HKLM\..\Run: [DeadAIM] rundll32.exe "D:\Program Files\AIM\\DeadAIM.ocm",ExportedCheckODLs
O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [PopUpStopperProfessional] "C:\PROGRA~1\PANICW~1\POP-UP~1\PopUpStopperProfessional.exe"
O4 - HKCU\..\Run: [AIM] D:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - Startup: Rainlendar.lnk = D:\Program Files\Rainlendar\Rainlendar.exe
O4 - Startup: Shortcut to Aqua Dock.lnk = C:\Program Files\Aqua Dock\Aqua Dock\Aqua Dock\Aqua Dock.exe
O4 - Startup: Shortcut to IDesktop.lnk = C:\Program Files\Immersion Corporation\TouchSense\Clients\Desktop\IDesktop.exe
O4 - Startup: Shortcut to YzShadow.lnk = C:\Program Files\YzShadow\Yzshadow\Yzshadow\YzShadow.exe
O4 - Startup: Webshots.lnk = D:\Program Files\Webshots\Launcher.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Trace (HKLM)
O9 - Extra 'Tools' menuitem: VisualRoute Trace (HKLM)
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O9 - Extra button: AIM (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Messenger (HKLM)
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - http://support.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://active.macromedia.com/director/cabs/sw.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20030530/qtinstall.info.apple.com/bonnie/us/win/QuickTimeInstaller.exe
O16 - DPF: {5D9E4B6D-CD17-4D85-99D4-6A52B394EC3B} (WSDownloader Control) - http://www.webshots.com/samplers/WSDownloader.ocx
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37814.5392361111
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
Texruss
3.4K Posts
0
May 14th, 2004 03:00
Don't see anything at first glance, but it's late and I'm through for the night...what issues are you having besides slowness? And define that...slowness only while browsing or anything in Windows?
Texruss
Message Edited by Texruss on 05-13-2004 11:34 PM
mfong
1 Rookie
•
36 Posts
0
May 14th, 2004 03:00
HI, IM SO SORRY!! i forgot abou the MSconfig deal. here is EVERYTHING, complete with Enable everything.
sooooooo sorry!!!!
new log!
Logfile of HijackThis v1.97.7
Scan saved at 12:21:56 AM, on 5/14/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\System32\S24EvMon.exe
C:\WINDOWS\system32\ZCfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
D:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
d:\Program Files\Logitech\MouseWare\system\em_exec.exe
D:\Program Files\Logitech\iTouch\iTouch.exe
C:\WINDOWS\System32\RegSrvc.exe
C:\WINDOWS\System32\P2P Networking\P2P Networking.exe
D:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\WINDOWS\System32\svchost.exe
D:\Program Files\RealVNC\WinVNC\winvnc.exe
D:\Program Files\Winamp\Winampa.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
C:\WINDOWS\System32\pctspk.exe
C:\PROGRA~1\IMMERS~1\TOUCHS~1\Clients\Desktop\IDesktop.exe
C:\Program Files\Immersion Corporation\TouchSense\Server\TouchSense.exe
C:\PROGRA~1\PANICW~1\POP-UP~1\PopUpStopperProfessional.exe
D:\Program Files\AIM\aim.exe
D:\Program Files\SETI@home\SETI@home.exe
D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\Palm\HOTSYNC.EXE
D:\Program Files\Rainlendar\Rainlendar.exe
C:\Program Files\Aqua Dock\Aqua Dock\Aqua Dock\Aqua Dock.exe
C:\Program Files\YzShadow\Yzshadow\Yzshadow\YzShadow.exe
D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
D:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
d:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.446\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = home.netscape.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.netscape.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://D%3A%5CProgram%20Files%5CNetscape%5CNetscape%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\Administrator\Application Data\Mozilla\Profiles\default\9dvr7bi8.slt\prefs.js)
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [zBrowser Launcher] d:\Program Files\Logitech\iTouch\iTouch.exe
O4 - HKLM\..\Run: [DeadAIM] rundll32.exe "D:\Program Files\AIM\\DeadAIM.ocm",ExportedCheckODLs
O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [WinVNC] "D:\Program Files\RealVNC\WinVNC\winvnc.exe" -servicehelper
O4 - HKLM\..\Run: [WinampAgent] "d:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [IDesktop.2.5] C:\PROGRA~1\IMMERS~1\TOUCHS~1\Clients\Desktop\IDesktop.exe 1
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [AltnetPointsManager] c:\program files\altnet\points manager\points manager.exe -s
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [PopUpStopperProfessional] "C:\PROGRA~1\PANICW~1\POP-UP~1\PopUpStopperProfessional.exe"
O4 - HKCU\..\Run: [AIM] D:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [SpySweeper] d:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe /0
O4 - HKCU\..\Run: [seticlient] d:\Program Files\SETI@home\SETI@home.exe -min
O4 - HKCU\..\Run: [PopUpStopperFreeEdition] "D:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [LDM] \Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [Active Desktop Calendar] d:\PROGRA~1\XEMICO~1\ACTIVE~1\ADC.exe
O4 - Startup: HotSync Manager.lnk = C:\Program Files\Palm\HOTSYNC.EXE
O4 - Startup: iMesh.lnk = D:\Program Files\iMesh\Client\iMeshClient.exe
O4 - Startup: Pop-Up Stopper Free Edition.lnk = D:\RECYCLER\NPROTECT\00167319.exe
O4 - Startup: Rainlendar.lnk = D:\Program Files\Rainlendar\Rainlendar.exe
O4 - Startup: restart_vs.lnk = E:\Viewsonic.exe
O4 - Startup: Shortcut to Aqua Dock.lnk = C:\Program Files\Aqua Dock\Aqua Dock\Aqua Dock\Aqua Dock.exe
O4 - Startup: Shortcut to IDesktop.lnk = C:\Program Files\Immersion Corporation\TouchSense\Clients\Desktop\IDesktop.exe
O4 - Startup: Shortcut to YzShadow.lnk = C:\Program Files\YzShadow\Yzshadow\Yzshadow\YzShadow.exe
O4 - Startup: Webshots.lnk = D:\Program Files\Webshots\WebshotsTray.exe
O4 - Global Startup: GStartup.lnk = C:\RECYCLER\NPROTECT\00052104.exe
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Logitech Desktop Messenger.lnk = D:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Trace (HKLM)
O9 - Extra 'Tools' menuitem: VisualRoute Trace (HKLM)
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O9 - Extra button: AIM (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Messenger (HKLM)
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - http://support.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://active.macromedia.com/director/cabs/sw.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20030530/qtinstall.info.apple.com/bonnie/us/win/QuickTimeInstaller.exe
O16 - DPF: {5D9E4B6D-CD17-4D85-99D4-6A52B394EC3B} (WSDownloader Control) - http://www.webshots.com/samplers/WSDownloader.ocx
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37814.5392361111
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
mfong
1 Rookie
•
36 Posts
0
May 14th, 2004 03:00
yeah, sorry i sorta replied to the forum, and not you
just scroll down!
i'm sorry
thanks for your time
~mike
mfong
1 Rookie
•
36 Posts
0
May 14th, 2004 03:00
sorry, that you're tired
But slowness.
well i first noticed it when the new Service pack came out. i tried to roll back to a certain date, but i waited too long i think. so i couldnt roll back to anything.
but it's slowness everywhere. it comes up seldomly, for example, it would be 70% slow, 30% regular speed for the most part. i would have no problem using my mouse, but when it does get laggy, my mouse is slow, it skips on the screen, and whenever i open up a new internet browser, my music would skip, that's only if i listening to music.
any help?
so my friends tried again to help me, by adjusting my virtual memory, but that was unsuccessful.
so i dont know what to do.
one of my smart alechey friends, wanted me to recover my C: partition, so all i gotta do is relink, and shortcut everything back from the D: to the C:
yeah it's weird
thanks for your help, and your time
~mike
Navin kurian
526 Posts
0
May 14th, 2004 06:00
things i have no clue what they are
C:\WINDOWS\System32\S24EvMon.exe
C:\WINDOWS\system32\ZCfgSvc.exe
C:\WINDOWS\System32\pctspk.exe
C:\PROGRA~1\IMMERS~1\TOUCHS~1\Clients\Desktop\IDesktop.exe
probably cause of your slowness you need spybot to get rid of it
http://majorgeeks.com/download2471.html (Courtesy Chrisrg)
O4 - HKCU\..\Run: [LDM] \Program\BackWeb-8876480.exe
other suff which could be slowing your computer
O4 - Startup: iMesh.lnk = D:\Program Files\iMesh\Client\iMeshClient.exe
O9 - Extra 'Tools' menuitem: VisualRoute Trace (HKLM)
O4 - HKCU\..\Run: [seticlient] d:\Program Files\SETI@home\SETI@home.exe -min
Message Edited by Navin kurian on 05-14-2004 02:05 AM
ChrisRLG
3.9K Posts
0
May 14th, 2004 11:00
Navin
C:\WINDOWS\System32\S24EvMon.exe
http://http://www.sysinfo.org/startuplist.php?filter=S24EvMon.exe&count=&type= (wireless card)
C:\WINDOWS\system32\ZCfgSvc.exe
http://www.answersthatwork.com/Tasklist_pages/tasklist_z.htm (same wireless card)
C:\WINDOWS\System32\pctspk.exe
http://http://www.sysinfo.org/startuplist.php?filter=pctspk.exe&count=&type= (Modem speaker)
C:\PROGRA~1\IMMERS~1\TOUCHS~1\Clients\Desktop\IDesktop.exe
http://http://www.sysinfo.org/startuplist.php?filter=IDesktop.exe&count=&type= (Mouse)
So they are legit - although some may not be required.
BTW we use the downloadable exe file from sysinfo rather than the live web connection which is often overloaded.
=====================================
mfong
Important: Create a folder on the C: drive called C:\HJT.
You can do this by going to My Computer (Windows key+e) then double click on C: then right click and select New then Folder and name it HJT.
Unzip HijackThis into this folder. When you run HijackThis from this folder and have it "Fixed checked" it will create a backup file of modifications to use if restore is necessary. Please delete the old copy (including the zip copy) so it can't be used.
=====================================
Well the backweb item that Navin mentioned is not required.
O4 - HKCU\..\Run: [LDM] \Program\BackWeb-8876480.exe
Do you need peer to peer services running all the time - if so you will be slow.
O4 - Startup: iMesh.lnk = D:\Program Files\iMesh\Client\iMeshClient.exe
O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART
For others check them out at http://www.sysinfo.org/startuplist.php - those marked:-
X - Bad - Remove
U - Users choice
N - Not required at startup
L - Required
Only you will know if a particular program or utility is what you require to run at startup of your machine.
Navin kurian
526 Posts
0
May 14th, 2004 12:00
Thanks for the info chris
.
regs
mfong
1 Rookie
•
36 Posts
0
May 14th, 2004 14:00
wait
so what do i do?
as to this.
C:\WINDOWS\System32\S24EvMon.exe
C:\WINDOWS\system32\ZCfgSvc.exe
C:\WINDOWS\System32\pctspk.exe
C:\PROGRA~1\IMMERS~1\TOUCHS~1\Clients\Desktop\IDesktop.exe
the Idesktop is my wireless keyboard and my itouch mouse, the vibrating mouse =)
but other than that, i dont know what the other stuff is
Ok, so with the sysinfo.com. i'm going to copy and paste the programs that i'm running, and hit search, correct? and if it comes up as X or whatever, im going to hit delete? in hijackthis?
and for these
Well the backweb item that Navin mentioned is not required.
O4 - HKCU\..\Run: [LDM] \Program\BackWeb-8876480.exe
Do you need peer to peer services running all the time - if so you will be slow.
O4 - Startup: iMesh.lnk = D:\Program Files\iMesh\Client\iMeshClient.exe
O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART
what do i do?
thanks for your time.
sorry if i'm confusing
~mike
mfong
1 Rookie
•
36 Posts
0
May 14th, 2004 14:00
is it ok, if i unchecked the stuff that you posted about the backweb, etc.. in MSconfig?
because i couldnt find it in the hijackthis, because after i posted the full list of everything, i went back to MSconfig and went back to the start up plan that i had.
thanks for your time
~mike
Navin kurian
526 Posts
0
May 14th, 2004 15:00
what is back web?
http://www.pestpatrol.com/PestInfo/B/Backweb.asp
The easiest way to get check your system would be to run spybot
download spybot
http://kujoe.com/freeware/spybot.php
http://majorgeeks.com/download2471.html
spybot tutorials
http://www.bleepingcomputer.com/forums/index.php?showtutorial=43
http://www.cjwd.demon.co.uk/spybot-adaware.html
http://www.cjwd.demon.co.uk/compsafetyonline.html
mfong
1 Rookie
•
36 Posts
0
May 14th, 2004 16:00
alright, i'll get on it, after work.
so that will probably be at around 10 pm EST.
sorry!!
thanks for your time
~mike
mfong
1 Rookie
•
36 Posts
0
May 15th, 2004 01:00
blah i dont know what to do.
mfong
1 Rookie
•
36 Posts
0
May 15th, 2004 01:00
ok
i ran the search and destroy deal. so far so good, no lagginess yet, but i'll report something
thanks again for everything
~mike