Unsolved
This post is more than 5 years old
4 Posts
0
3138
April 27th, 2009 16:00
Windows vista freezes
For several weeks I've been having issues with Windows Vista Home Premium locking up after using it. Now it will boot to desktop (after selecting user), I can see everything as normal (wallpaper, Start, time, task bar, desktop icons, etc) but it freezes. My mouse moves on screen but clicking on anything gives a circle (hourglass replacement i presume) and will not do anything. I have to reboot with power button and boot into Safe Mode (I'm using Safe Mode with Networking to type this...). I've run all sorts of spyware/virus programs but I'm guessing they are falling short since I'm only running them in Safe Mode. I do not have any recoveries saved to back track. If it is a software conflict I have no idea how to find it. I have included the File Lister data below.
Please help, I am not looking forward to a reinstall of windows as I have a little over 400gb on this drive...
+++++++++++++++++++++++++++++++++
+ File Lister Version 1.1.0 +
+ +
+ By bamajim / SpywareHammer.com +
+++++++++++++++++++++++++++++++++
Report ran on --->>> 4/27/2009 3:18:41 PM
====== Running Processes ======
C:\Windows\system32\csrss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\System32\CScript.exe
C:\Windows\system32\wbem\wmiprvse.exe
====== BHO's ======
BHO: (NO NAME) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
BHO: (NO NAME) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
BHO: (NO NAME) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
BHO: (NO NAME) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
BHO: (NO NAME) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll
BHO: (NO NAME) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
====== HKLM\~\Run Keys ======
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
[Windows Defender] = %ProgramFiles%\Windows Defender\MSASCui.exe -hide
[ECenter] = C:\Dell\E-Center\EULALauncher.exe
[Bluetooth HCI Monitor] = RunDll32 HCIMNTR.DLL,RunCheckHCIMode
[VolPanel] = "C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
[Logitech Hardware Abstraction Layer] = "C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE"
[Logitech BT Wizard] = LBTWiz.exe -silent
[Broadcom Wireless Manager UI] = C:\Windows\system32\WLTRAY.exe
[ISUSScheduler] = "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
[Google Desktop Search] = "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
[dscactivate] = "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
[pccguide.exe] = "C:\Program Files\Trend Micro\Internet Security 14\pccguide.exe"
[ISUSPM Startup] = C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
[Kernel and Hardware Abstraction Layer] = KHALMNPR.EXE
[RoxWatchTray] = "C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe"
[DMXLauncher] = "C:\Program Files\Roxio\CinePlayer\DMXLauncher.exe"
[DellSupportCenter] = "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
[Windows Mobile-based device management] = %WINDIR%\WindowsMobile\wmdcBase.exe
[NvSvc] = RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
[NvCplDaemon] = RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
[CTxfiHlp] = CTXFIHLP.EXE
[ISTray] = "C:\Program Files\Spyware Doctor\pctsTray.exe"
[iolo Startup] = "C:\Program Files\iolo\Common\Lib\ioloLManager.exe"
[AVG8_TRAY] = C:\PROGRA~1\AVG\AVG8\avgtray.exe
====== HKCU\~\Run Keys ======
[DellAutomatedPCTuneUp] = "C:\Program Files\DellAutomatedPCTuneUp\PTAgnt.exe" /startup
[ehTray.exe] = C:\Windows\ehome\ehTray.exe
[DellSupportCenter] = "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
[NVIDIA nTune] = "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
[ISUSScheduler] = "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
[swg] = C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[ISUSPM] = "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
[SpybotSD TeaTimer] = C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
[WMPNSCFG] = C:\Program Files\Windows Media Player\WMPNSCFG.exe
[Pando Media Booster] = "C:\Program Files\Pando Networks\Media Booster\PMB.exe"
[DirectPlayerCore] = "C:\Program Files\NBC Direct\DirectPlayerCore.exe"
[AnyDVD] = C:\Program Files\SlySoft\AnyDVD\AnyDVD.exe
[igndlm.exe] = C:\Program Files\Download Manager\DLM.exe /windowsstart /startifwork
====== DNS Info (List may be empty) ======
HKEY_LOCAL_MACHINE\CCS\~\{15DE0254-7B72-4A6F-9574-659F836483D0}\ NameServer=
HKEY_LOCAL_MACHINE\CCS\~\{5404943A-8F96-4A7D-A2FA-15949F9A5A66}\ NameServer=
HKEY_LOCAL_MACHINE\CCS\~\{B8D00095-6B4C-43B5-B5E9-55164CDA90AB}\ NameServer=
HKEY_LOCAL_MACHINE\CCS\~\{C088D2DB-D924-40F9-A3A6-D26561478C37}\ NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{15DE0254-7B72-4A6F-9574-659F836483D0}\ NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{5404943A-8F96-4A7D-A2FA-15949F9A5A66}\ NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{B8D00095-6B4C-43B5-B5E9-55164CDA90AB}\ NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{C088D2DB-D924-40F9-A3A6-D26561478C37}\ NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{15DE0254-7B72-4A6F-9574-659F836483D0}\ NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{5404943A-8F96-4A7D-A2FA-15949F9A5A66}\ NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{B8D00095-6B4C-43B5-B5E9-55164CDA90AB}\ NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{C088D2DB-D924-40F9-A3A6-D26561478C37}\ NameServer=
====== Folders and Files from "%\" and "%\Windows" Created Last 60 Days ======
4/26/2009 4:45:23 AM 194980 C:\$AVG8.VAULT$
3/25/2009 2:53:30 PM 0 C:\Converted Videos
4/27/2009 3:18:41 PM 0 32 C:\Files.txt
4/26/2009 2:45:46 AM 0 38 C:\Windows\SC61F108F.tmp
4/26/2009 1:05:34 PM 141031 C:\Windows\System32\Dell
4/26/2009 1:05:34 PM 141031 C:\Windows\System32\Dell\SystemProfiler
4/16/2009 1:27:22 AM 24064 32 C:\Windows\System32\amxread.dll
4/16/2009 1:27:22 AM 13824 32 C:\Windows\System32\apilogen.dll
4/20/2009 6:28:06 PM 6812 32 C:\Windows\System32\avgrep.txt
3/10/2009 9:20:15 PM 4096 32 C:\Windows\System32\dxmasf.dll
3/25/2009 2:53:03 PM 1435272 32 C:\Windows\System32\Flash.ocx
4/16/2009 1:27:14 AM 389632 32 C:\Windows\System32\html.iec
4/16/2009 1:27:28 AM 54784 32 C:\Windows\System32\iasads.dll
4/16/2009 1:27:28 AM 44032 32 C:\Windows\System32\iasdatastore.dll
4/16/2009 1:27:28 AM 17408 32 C:\Windows\System32\iashost.exe
4/16/2009 1:27:28 AM 98304 32 C:\Windows\System32\iasrecst.dll
4/16/2009 1:27:14 AM 230400 32 C:\Windows\System32\ieaksie.dll
4/16/2009 1:27:15 AM 389120 32 C:\Windows\System32\iedkcs32.dll
4/16/2009 1:27:13 AM 78336 32 C:\Windows\System32\ieencode.dll
4/16/2009 1:27:16 AM 6068736 32 C:\Windows\System32\ieframe.dll
4/16/2009 1:27:15 AM 270336 32 C:\Windows\System32\iertutil.dll
4/16/2009 1:27:14 AM 26624 32 C:\Windows\System32\ieUnatt.exe
4/22/2009 2:35:11 PM 1476 32 C:\Windows\System32\inst_rr.log
4/16/2009 1:27:12 AM 28160 32 C:\Windows\System32\jsproxy.dll
4/16/2009 1:27:23 AM 888832 32 C:\Windows\System32\kernel32.dll
4/16/2009 1:27:23 AM 1255936 32 C:\Windows\System32\lsasrv.dll
4/16/2009 1:27:38 AM 562176 32 C:\Windows\System32\msdtcprx.dll
3/10/2009 9:20:15 PM 4096 32 C:\Windows\System32\msdxm.ocx
4/16/2009 1:27:15 AM 458240 32 C:\Windows\System32\msfeeds.dll
4/16/2009 1:27:17 AM 3580928 32 C:\Windows\System32\mshtml.dll
4/16/2009 1:27:12 AM 1383424 32 C:\Windows\System32\mshtml.tlb
4/16/2009 1:27:13 AM 671232 32 C:\Windows\System32\mstime.dll
4/16/2009 1:27:30 AM 3599328 32 C:\Windows\System32\ntkrnlpa.exe
4/16/2009 1:27:29 AM 3547632 32 C:\Windows\System32\ntoskrnl.exe
4/16/2009 1:27:14 AM 102912 32 C:\Windows\System32\occache.dll
4/16/2009 1:27:28 AM 26112 32 C:\Windows\System32\printfilterpipelineprxy.dll
4/16/2009 1:27:29 AM 666624 32 C:\Windows\System32\printfilterpipelinesvc.exe
4/16/2009 1:27:30 AM 551424 32 C:\Windows\System32\rpcss.dll
3/10/2009 9:20:11 PM 268288 32 C:\Windows\System32\schannel.dll
4/16/2009 1:27:28 AM 183296 32 C:\Windows\System32\sdohlp.dll
4/16/2009 1:27:22 AM 72704 32 C:\Windows\System32\secur32.dll
3/10/2009 9:20:15 PM 7680 32 C:\Windows\System32\spwmp.dll
4/16/2009 1:27:15 AM 1166336 32 C:\Windows\System32\urlmon.dll
3/10/2009 9:20:09 PM 2033152 32 C:\Windows\System32\win32k.sys
4/16/2009 1:27:41 AM 376832 32 C:\Windows\System32\winhttp.dll
4/16/2009 1:27:15 AM 827392 32 C:\Windows\System32\wininet.dll
3/10/2009 9:20:15 PM 10622976 32 C:\Windows\System32\wmp.dll
3/10/2009 9:20:14 PM 8147456 32 C:\Windows\System32\wmploc.DLL
4/16/2009 1:27:38 AM 38912 32 C:\Windows\System32\xolehlp.dll
====== Files under "\Administrator\Startup" Last 60 Days======
====== Files under "\All Users\Startup" Last 60 Days======
====== Files and Folders under "\Program Files" Last 60 Days======
3/13/2009 8:05:40 PM 2223739 C:\Program Files\NBC Direct
3/13/2009 8:05:49 PM 5827290 C:\Program Files\Pando Networks
====== Files under "\System32\Drivers" Last 60 Days======
====== Files Deleted under "%Temp%" ======
C:\Users\SUPESA~1\AppData\Local\Temp\E58A21304AB740E2.tmp
C:\Users\SUPESA~1\AppData\Local\Temp\etilqs_1xoGEmxSF4xSVKBd5Av2
C:\Users\SUPESA~1\AppData\Local\Temp\FlashPlayerUpdate.exe
C:\Users\SUPESA~1\AppData\Local\Temp\Stp7770.tmp
C:\Users\SUPESA~1\AppData\Local\Temp\SupesAZPD.bmp
5 Files deleted
====== Files and Folders under "All Users\Application Data" Last 60 Days======
====== Values under HKLM\Software\microsoft\shared tools\msconfig\startupreg ======
HKLM\Software\microsoft\shared tools\msconfig\startupreg\AVG8_TRAY
C:\Program Files\Download Manager\DLM.exe /windowsstart /startifwork
HKLM\Software\microsoft\shared tools\msconfig\startupreg\igndlm.exe
C:\Program Files\Download Manager\DLM.exe /windowsstart /startifwork
HKLM\Software\microsoft\shared tools\msconfig\startupreg\QuickTime Task
C:\Program Files\Download Manager\DLM.exe /windowsstart /startifwork
====== Services ( Services that are Whitelisted are not shown) ======
adp94xx (adp94xx)- C:\Windows\system32\drivers\adp94xx.sys - Disabled/Stopped
adpahci (adpahci)- C:\Windows\system32\drivers\adpahci.sys - Disabled/Stopped
amdide (amdide)- C:\Windows\system32\drivers\amdide.sys - Disabled/Stopped
arcsas (arcsas)- C:\Windows\system32\drivers\arcsas.sys - Disabled/Stopped
BCM43XX (Dell Wireless WLAN Card Driver)- C:\Windows\system32\DRIVERS\bcmwl6.sys - Manual/Running
bowser (Bowser)- C:\Windows\system32\DRIVERS\bowser.sys - Manual/Running
BrFiltLo (Brother USB Mass-Storage Lower Filter Driver)- C:\Windows\system32\drivers\brfiltlo.sys - Manual/Stopped
BrFiltUp (Brother USB Mass-Storage Upper Filter Driver)- C:\Windows\system32\drivers\brfiltup.sys - Manual/Stopped
Brserid (Brother MFC Serial Port Interface Driver (WDM))- C:\Windows\system32\drivers\brserid.sys - Disabled/Stopped
BrSerWdm (Brother WDM Serial driver)- C:\Windows\system32\drivers\brserwdm.sys - Disabled/Stopped
BrUsbMdm (Brother MFC USB Fax Only Modem)- C:\Windows\system32\drivers\brusbmdm.sys - Disabled/Stopped
BrUsbSer (Brother MFC USB Serial WDM Driver)- C:\Windows\system32\drivers\brusbser.sys - Manual/Stopped
BthEnum (Bluetooth Enumerator Service)- C:\Windows\system32\DRIVERS\BthEnum.sys - Manual/Stopped
BthPan (Bluetooth Device (Personal Area Network))- C:\Windows\system32\DRIVERS\bthpan.sys - Manual/Stopped
BTHPORT (Bluetooth Port Driver)- C:\Windows\system32\Drivers\BTHport.sys - Manual/Stopped
BTHUSB (Bluetooth Radio USB Driver)- C:\Windows\system32\Drivers\BTHUSB.sys - Manual/Stopped
btwaudio (Bluetooth Audio Device Service)- C:\Windows\system32\drivers\btwaudio.sys - Manual/Stopped
btwavdt (Bluetooth AVDT)- C:\Windows\system32\drivers\btwavdt.sys - Manual/Stopped
btwrchid (btwrchid)- C:\Windows\system32\DRIVERS\btwrchid.sys - Manual/Stopped
c2scsi (c2scsi)- C:\Windows\system32\DRIVERS\c2scsi.sys - System/Stopped
circlass (Consumer IR Devices)- C:\Windows\system32\drivers\circlass.sys - Disabled/Stopped
CLFS (Common Log (CLFS))- C:\Windows\system32\CLFS.sys - Boot/Running
Crusoe (Transmeta Crusoe Processor Driver)- C:\Windows\system32\drivers\crusoe.sys - Disabled/Stopped
CT20XUT.DLL (CT20XUT.DLL)- C:\Windows\system32\CT20XUT.DLL - Manual/Stopped
ctac32k (Creative AC3 Software Decoder)- C:\Windows\system32\drivers\ctac32k.sys - Manual/Stopped
ctaud2k (Creative Audio Driver (WDM))- C:\Windows\system32\drivers\ctaud2k.sys - Manual/Stopped
CTEXFIFX.DLL (CTEXFIFX.DLL)- C:\Windows\system32\CTEXFIFX.DLL - Manual/Stopped
CTHWIUT.DLL (CTHWIUT.DLL)- C:\Windows\system32\CTHWIUT.DLL - Manual/Stopped
ctprxy2k (Creative Proxy Driver)- C:\Windows\system32\drivers\ctprxy2k.sys - Manual/Stopped
ctsfm2k (Creative SoundFont Management Device Driver)- C:\Windows\system32\drivers\ctsfm2k.sys - Manual/Stopped
datunidr (DellAutomatedPCTuneUp UniDriver)- C:\Windows\system32\DRIVERS\datunidr.sys - Auto/Stopped
DfsC (DFS Namespace Client Driver)- C:\Windows\system32\Drivers\dfsc.sys - System/Running
DXGKrnl (LDDM Graphics Subsystem)- C:\Windows\system32\drivers\dxgkrnl.sys - Manual/Stopped
e1express (Intel(R) PRO/1000 PCI Express Network Connection Driver)- C:\Windows\system32\DRIVERS\e1e6032.sys - Manual/Running
E1G60 (Intel(R) PRO/1000 NDIS 6 Adapter Driver)- C:\Windows\system32\DRIVERS\E1G60I32.sys - Manual/Stopped
Ecache (ReadyBoost Caching Driver)- C:\Windows\system32\drivers\ecache.sys - Boot/Running
ElbyCDIO (ElbyCDIO Driver)- C:\Windows\system32\Drivers\ElbyCDIO.sys - System/Stopped
ElRawDisk (ElRawDisk)- \??\C:\Windows\system32\drivers\elrawdsk.sys - System/Stopped
elxstor (elxstor)- C:\Windows\system32\drivers\elxstor.sys - Disabled/Stopped
emupia (E-mu Plug-in Architecture Driver)- C:\Windows\system32\drivers\emupia2k.sys - Manual/Stopped
FileDisk (FileDisk)- C:\Windows\system32\drivers\FileDisk.sys - System/Stopped
FileInfo (File Information FS MiniFilter)- C:\Windows\system32\drivers\fileinfo.sys - Boot/Running
Filetrace (FileTrace)- C:\Windows\system32\drivers\filetrace.sys - Manual/Stopped
gagp30kx (Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms)- C:\Windows\system32\drivers\gagp30kx.sys - Manual/Stopped
ha20x2k (Creative 20X HAL Driver)- C:\Windows\system32\drivers\ha20x2k.sys - Manual/Stopped
HidBth (Microsoft Bluetooth HID Miniport)- C:\Windows\system32\DRIVERS\hidbth.sys - Manual/Stopped
HidIr (Microsoft Infrared HID Driver)- C:\Windows\system32\drivers\hidir.sys - Disabled/Stopped
HpCISSs (HpCISSs)- C:\Windows\system32\drivers\hpcisss.sys - Disabled/Stopped
iaStor (Intel AHCI Controller)- C:\Windows\system32\drivers\iastor.sys - Disabled/Stopped
iaStorV (Intel RAID Controller Vista)- C:\Windows\system32\drivers\iastorv.sys - Disabled/Stopped
IPMIDRV (IPMIDRV)- C:\Windows\system32\drivers\ipmidrv.sys - Disabled/Stopped
iScsiPrt (iScsiPort Driver)- C:\Windows\system32\DRIVERS\msiscsi.sys - Manual/Running
iteatapi (ITEATAPI_Service_Install)- C:\Windows\system32\drivers\iteatapi.sys - Disabled/Stopped
iteraid (ITERAID_Service_Install)- C:\Windows\system32\drivers\iteraid.sys - Disabled/Stopped
LHidFilt (Logitech SetPoint KMDF HID Filter Driver)- C:\Windows\system32\DRIVERS\LHidFilt.Sys - Manual/Stopped
lltdio (Link-Layer Topology Discovery Mapper I/O Driver)- C:\Windows\system32\DRIVERS\lltdio.sys - Auto/Stopped
LMouFilt (Logitech SetPoint KMDF Mouse Filter Driver)- C:\Windows\system32\DRIVERS\LMouFilt.Sys - Manual/Stopped
LSI_FC (LSI_FC)- C:\Windows\system32\drivers\lsi_fc.sys - Disabled/Stopped
LSI_SAS (LSI_SAS)- C:\Windows\system32\drivers\lsi_sas.sys - Disabled/Stopped
LSI_SCSI (LSI_SCSI)- C:\Windows\system32\drivers\lsi_scsi.sys - Disabled/Stopped
luafv (UAC File Virtualization)- C:\Windows\system32\drivers\luafv.sys - Auto/Stopped
MarvinBus (Pinnacle Marvin Bus)- C:\Windows\system32\DRIVERS\MarvinBus.sys - Manual/Running
megasas (megasas)- C:\Windows\system32\drivers\megasas.sys - Disabled/Stopped
mpio (Microsoft Multi-Path Bus Driver)- C:\Windows\system32\drivers\mpio.sys - Disabled/Stopped
mpsdrv (Windows Firewall Authorization Driver)- C:\Windows\system32\drivers\mpsdrv.sys - Manual/Running
mrxsmb10 (SMB 1.x MiniRedirector)- C:\Windows\system32\DRIVERS\mrxsmb10.sys - Manual/Running
mrxsmb20 (SMB 2.0 MiniRedirector)- C:\Windows\system32\DRIVERS\mrxsmb20.sys - Manual/Running
msahci (msahci)- C:\Windows\system32\drivers\msahci.sys - Disabled/Stopped
msdsm (Microsoft Multi-Path Device Specific Module)- C:\Windows\system32\drivers\msdsm.sys - Disabled/Stopped
msisadrv (ISA/EISA Class Driver)- C:\Windows\system32\drivers\msisadrv.sys - Boot/Running
MsRPC (MsRPC)- C:\Windows\system32\drivers\MsRPC.sys - Manual/Stopped
NativeWifiP (NativeWiFi Filter)- C:\Windows\system32\DRIVERS\nwifi.sys - Manual/Running
nfrd960 (nfrd960)- C:\Windows\system32\drivers\nfrd960.sys - Disabled/Stopped
nsiproxy (NSI proxy service)- C:\Windows\system32\drivers\nsiproxy.sys - System/Running
ntrigdigi (N-trig HID Tablet Driver)- C:\Windows\system32\drivers\ntrigdigi.sys - Disabled/Stopped
nvlddmkm (nvlddmkm)- C:\Windows\system32\DRIVERS\nvlddmkm.sys - Manual/Stopped
NVR0Dev (NVR0Dev)- \??\C:\Windows\nvoclock.sys - Manual/Stopped
nvstor (nvstor)- C:\Windows\system32\drivers\nvstor.sys - Disabled/Stopped
ossrv (Creative OS Services Driver)- C:\Windows\system32\drivers\ctoss2k.sys - Manual/Stopped
PCLEPCI (PCLEPCI)- \??\C:\Windows\system32\drivers\pclepci.sys - System/Stopped
pcouffin (VSO Software pcouffin)- C:\Windows\system32\Drivers\pcouffin.sys - Manual/Stopped
pctfw2 (pctfw2)- \??\C:\Windows\System32\drivers\pctfw2.sys - System/Running
PEAUTH (PEAUTH)- C:\Windows\system32\drivers\peauth.sys - Auto/Stopped
PTproct (PTproct)- \??\C:\Program Files\DellAutomatedPCTuneUp\GTAction\triggers\PTproct.sys - Manual/Stopped
ql2300 (QLogic Fibre Channel Miniport Driver)- C:\Windows\system32\drivers\ql2300.sys - Disabled/Stopped
ql40xx (QLogic iSCSI Miniport Driver)- C:\Windows\system32\drivers\ql40xx.sys - Disabled/Stopped
QWAVEdrv (QWAVE driver)- C:\Windows\system32\drivers\qwavedrv.sys - Manual/Stopped
R300 (R300)- C:\Windows\system32\DRIVERS\atikmdag.sys - Manual/Stopped
RDPENCDD (RDP Encoder Mirror Driver)- C:\Windows\system32\drivers\rdpencdd.sys - System/Running
RFCOMM (Bluetooth Device (RFCOMM Protocol TDI))- C:\Windows\system32\DRIVERS\rfcomm.sys - Manual/Stopped
rspndr (Link-Layer Topology Discovery Responder)- C:\Windows\system32\DRIVERS\rspndr.sys - Auto/Stopped
RxFilter (RxFilter)- C:\Windows\system32\DRIVERS\RxFilter.sys - Disabled/Stopped
sbp2port (SBP-2 Transport/Protocol Bus Driver)- C:\Windows\system32\drivers\sbp2port.sys - Disabled/Stopped
sermouse (Serial Mouse Driver)- C:\Windows\system32\drivers\sermouse.sys - Disabled/Stopped
sffdisk (SFF Storage Class Driver)- C:\Windows\system32\drivers\sffdisk.sys - Disabled/Stopped
sffp_mmc (SFF Storage Protocol Driver for MMC)- C:\Windows\system32\drivers\sffp_mmc.sys - Manual/Stopped
sffp_sd (SFF Storage Protocol Driver for SDBus)- C:\Windows\system32\drivers\sffp_sd.sys - Manual/Stopped
SiSRaid2 (SiSRaid2)- C:\Windows\system32\drivers\sisraid2.sys - Disabled/Stopped
SiSRaid4 (SiSRaid4)- C:\Windows\system32\drivers\sisraid4.sys - Disabled/Stopped
spldr (Security Processor Loader Driver)- C:\Windows\system32\drivers\spldr.sys - Boot/Stopped
srv2 (srv2)- C:\Windows\system32\DRIVERS\srv2.sys - Manual/Stopped
srvnet (srvnet)- C:\Windows\system32\DRIVERS\srvnet.sys - Manual/Stopped
Tcpip6 (Microsoft IPv6 Protocol Driver)- C:\Windows\system32\DRIVERS\tcpip.sys - Manual/Stopped
tcpipreg (TCP/IP Registry Compatibility)- C:\Windows\system32\drivers\tcpipreg.sys - Auto/Stopped
tdx (NetIO Legacy TDI Support Driver)- C:\Windows\system32\DRIVERS\tdx.sys - System/Running
TfFsMon (TfFsMon)- C:\Windows\system32\drivers\TfFsMon.sys - Boot/Running
TfNetMon (TfNetMon)- \??\C:\Windows\system32\drivers\TfNetMon.sys - Manual/Stopped
TfSysMon (TfSysMon)- C:\Windows\system32\drivers\TfSysMon.sys - Boot/Running
tmcfw (Trend Micro Common Firewall Service)- C:\Windows\system32\DRIVERS\TM_CFW.sys - Manual/Running
tmpreflt (tmpreflt)- C:\Windows\system32\DRIVERS\tmpreflt.sys - Auto/Stopped
tmtdi (Trend Micro TDI Driver)- C:\Windows\system32\DRIVERS\tmtdi.sys - System/Stopped
tmxpflt (tmxpflt)- C:\Windows\system32\drivers\TmXPFlt.sys - Auto/Stopped
tssecsrv (Terminal Services Security Filter Driver)- C:\Windows\system32\DRIVERS\tssecsrv.sys - Manual/Stopped
tunmp (Microsoft Tun Miniport Adapter Driver)- C:\Windows\system32\DRIVERS\tunmp.sys - Manual/Running
tunnel (Microsoft IPv6 Tunnel Miniport Adapter Driver)- C:\Windows\system32\DRIVERS\tunnel.sys - Manual/Running
uagp35 (Microsoft AGPv3.5 Filter)- C:\Windows\system32\drivers\uagp35.sys - Manual/Stopped
uliagpkx (Uli AGP Bus Filter)- C:\Windows\system32\drivers\uliagpkx.sys - Manual/Stopped
uliahci (uliahci)- C:\Windows\system32\drivers\uliahci.sys - Disabled/Stopped
UlSata (UlSata)- C:\Windows\system32\drivers\ulsata.sys - Disabled/Stopped
ulsata2 (ulsata2)- C:\Windows\system32\drivers\ulsata2.sys - Disabled/Stopped
umbus (UMBus Enumerator Driver)- C:\Windows\system32\DRIVERS\umbus.sys - Manual/Running
UMPass (Microsoft UMPass Driver)- C:\Windows\system32\DRIVERS\umpass.sys - Manual/Stopped
usbbus (LGE CDMA Composite USB Device)- C:\Windows\system32\DRIVERS\lgusbbus.sys - Manual/Stopped
usbcir (eHome Infrared Receiver (USBCIR))- C:\Windows\system32\drivers\usbcir.sys - Disabled/Stopped
UsbDiag (LGE CDMA USB Serial Port)- C:\Windows\system32\DRIVERS\lgusbdiag.sys - Manual/Stopped
USBModem (LGE CDMA USB Modem)- C:\Windows\system32\DRIVERS\lgusbmodem.sys - Manual/Stopped
usb_rndisx (USB RNDIS Adapter)- C:\Windows\system32\DRIVERS\usb8023x.sys - Manual/Stopped
ViaC7 (VIA C7 Processor Driver)- C:\Windows\system32\drivers\viac7.sys - Disabled/Stopped
volmgr (Volume Manager Driver)- C:\Windows\system32\drivers\volmgr.sys - Boot/Running
volmgrx (Dynamic Volume Manager)- C:\Windows\system32\drivers\volmgrx.sys - Boot/Running
vsapint (vsapint)- C:\Windows\system32\DRIVERS\vsapint.sys - Auto/Stopped
vsmraid (vsmraid)- C:\Windows\system32\drivers\vsmraid.sys - Disabled/Stopped
WacomPen (Wacom Serial Pen HID Driver)- C:\Windows\system32\drivers\wacompen.sys - Disabled/Stopped
Wanarpv6 (Remote Access IPv6 ARP Driver)- C:\Windows\system32\DRIVERS\wanarp.sys - System/Stopped
Wdf01000 (Kernel Mode Driver Frameworks service)- C:\Windows\system32\drivers\Wdf01000.sys - Boot/Running
WinDriver6 (WinDriver6)- C:\Windows\system32\Drivers\swypeout.sys - Manual/Stopped
winusb (WinUSB Service)- C:\Windows\system32\DRIVERS\WinUSB.SYS - Manual/Stopped
WISTechVIDCAP (Dazzle DVC170)- C:\Windows\system32\drivers\wisgostrm.sys - Manual/Stopped
WmiAcpi (Microsoft Windows Management Interface for ACPI)- C:\Windows\system32\drivers\wmiacpi.sys - Disabled/Stopped
WpdUsb (WpdUsb)- C:\Windows\system32\DRIVERS\wpdusb.sys - Manual/Stopped
====== Uninstall List ======
Adobe Flash Player 10 ActiveX
Adobe Flash Player Plugin
Amazon MP3 Downloader 1.0.3
AnyDVD
AVG Free 8.5
Dell Wireless WLAN Card
Caillou(R) Four Seasons of Fun
Download Manager 2.3.6
DVD Shrink 3.2
Eusing Free Registry Cleaner
Google Desktop
HijackThis 2.0.2
SmartSound Quicktracks Plugin
NVIDIA nTune
SWAT 4
SWAT 4 - The Stetchkov Syndicate
InterActual Player
K-Lite Codec Pack 4.1.7 (Full)
Microsoft .NET Framework 1.1 Hotfix (KB929729)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 3.5 SP1
Mozilla Firefox (3.0.9)
NVIDIA Drivers
OpenAL
Photo Viewer s2.5
Intel(R) PRO Network Connections 12.1.11.0
Spyware Doctor 6.0
Stamps.com
System Requirements Lab
Trend Micro PC-cillin Internet Security
V CAST Music Manager
VideoLAN VLC media player 0.8.6i
WinAce Archiver
WinRAR archiver
Xilisoft DVD Ripper Platinum 4
Xvid 1.1.3 final uninstall
Roxio Creator Tools
WIDCOMM Bluetooth Software 6.0.1.4300
Roxio Central Data
DirectXInstallService
Roxio Creator Data
OpenOffice.org Installer 1.0
QualxServ Service Agreement
Sound Blaster X-Fi
Roxio CinePlayer
Roxio Central Tools
Google Toolbar for Internet Explorer
Java(TM) 6 Update 10
BD/HD Advisor 1.0
SetPoint
Roxio Update Manager
Java(TM) SE Runtime Environment 6
Sonic Activation Module
Studio 10
Roxio Disc Gallery
SmartSound Quicktracks Plugin
Dell DataSafe Online
PaperPort Professional 11
Roxio BackOnTrack
User's Guides
Hallmark Card Studio 2007 Deluxe
Roxio File Backup
Roxio Creator Copy
Browser Address Error Redirector
Roxio Express Labeler
Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)
Apple Software Update
Stamps.com
Studio 10 Bonus DVD
Microsoft Works
Microsoft Visual C++ 2005 Redistributable
Roxio Central Audio
Intel(R) PRO Network Connections 12.1.11.0
NVIDIA nTune
Dell Getting Started Guide
Far Cry (Patch 1.4)
Roxio Creator Audio
AGEIA PhysX v7.03.21
MSXML 4.0 SP2 (KB954430)
Roxio Creator BDAV Plugin
Product Documentation Launcher
Microsoft Visual C Runtime
CDDRV_Installer
Roxio CinePlayer Decoder Pack
QuickTime
SWAT 4
KhalSetup
Installer
Pando Media Booster
Roxio MediaShare
Microsoft Visual C++ 2005 Redistributable
Adobe Reader 8.1.2
Adobe Reader 8.1.2 Security Update 1 (KB403742)
Spybot - Search & Destroy
Roxio Central Copy
iolo technologies' System Mechanic Professional
OneTouch 4.0
Creative MediaSource 5
Roxio Easy Media Creator 10 Suite
MSXML 4.0 SP2 (KB936181)
LG USB Modem driver
MSXML 4.0 SP2 (KB941833)
Roxio Creator DE
Microsoft .NET Framework 1.1
Microsoft .NET Framework 3.5 SP1
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Roxio MyDVD DE
Music, Photos & Videos Launcher
AnswerWorks 5.0 English Runtime
Google Toolbar for Internet Explorer
Ad-Aware
Dell Support Center (Support Software)
Consumer Complete Care Services Agreement
Trend Micro PC-cillin Internet Security
Yahoo! Music Jukebox
Roxio Activation Module
Quicken 2009
Roxio Central Core
Pinnacle Instant DVD Recorder
NBC Direct
BitPim 1.0.5
EMC 10 Content
Dell Automated PC TuneUp
Studio 10.8 Patch
======== Other Info ========
TOTAL PHYSICAL RAM: 3219 MB
Boot Info
OS Type: Microsoft® Windows Vista™ Home Premium
Build: 6.0.6001
Service Pack: 1.0
====== Files with Hidden Attributes======
C:\IO.SYS
C:\MSDOS.SYS
C:\pagefile.sys
C:\Boot\bootstat.dat
==End of Report==


bamajim
10.4K Posts
0
April 28th, 2009 09:00
Don't see any signs of infection.
1. Your log does show you are running 2 Antivirus programs: AVG Free 8.5 and Trend Micro PC-cillin Internet Security.
Running 2 Antivirus programs is never a good idea.
Since they both do the same job, running 2 can cause conflicts, system slowdowns, and may even allow some malware to slip by.
I recommend that you unistall one of them through Programs and Features.
And in your reply, tell me which one you decided to keep.
If the copy of Spyware Doctor you have installed is the free version then uninstall it as well, there are know issues with this product and Vista.
2. *NOTE* CCleaner deletes EVERYTHING out of temp/temporary folders. If you have anything in a temp folder, back it up or move it to a permanent folder prior to running CCleaner!
Download CCleaner from here to clean temp files from your computer.
3. Reboot your PC run Hijackthis and post a fresh Hiajckthis log. If you need help doing that see this link
And in your reply tell me how your PC is running
supesazpd
4 Posts
0
April 28th, 2009 17:00
Bamajim, before I had a chance to read this post I backed up some of the important stuff to an external hard drive and tried to reboot but this time the computer really froze. I did all the backup stuff in Safe Mode like (no access to normal mode), but when I tried to reboot the "Shutting down" screen froze and I did a hard shutdown. I then tried to reboot and it will only load to initial screen (press F2 for setup or F12 for boot menu). It will not access either Fkeys and will not do anything else. I'm guessing a CMOS reset might help but will try that when I get home. I'm hoping I can get back in to try the things you suggested. I will let you know if anything changes. FYI this is a little under a year old from Dell, I really hate to lose everything but maybe my last resort will be sending it in for service (have the warranty), but im sure they will wipe the drive...
supesazpd
4 Posts
0
April 28th, 2009 19:00
Ok, I'll start by saying, I'm back in normal windows, woohoo and thanks a bunch Bamajim!
I did a cmos reset but I started getting an error on boot "Diskette drive 0 seek failure- Press F1 to continue or F2 to enter setup" pressing F1 allowed me to reenter safe mode and do the things you suggested and get me running again. I ran cccleaner in safe mode and in normal mode (once it let me back in), but on boot I still get that diskette drive 0 error; I'm wondering if a windows repair from the cd would help at all? I posted the hijackthis log below. I uninstalled AVG free and stuck with Trend Micro Pc-cillin as that came from dell and doesnt expire till 2011. The copy of Spyware Doctor is the paid one and I've been using it on this computer and previous computers for several years, but with all the other things on here (Pccillin, adaware, spybot, system mechanic professional), I dont know if its worth keeping, especially if there are known issues with vista?
The computer seems to be running ok...but was rather initially, it seems back to normal though otherwise.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:57:40 PM, on 4/28/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18226)
Boot mode: Normal
Running processes:
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Common Files\Logitech\Bluetooth\LBTSERV.EXE
C:\Windows\system32\svchost.exe
C:\Windows\System32\WLTRYSVC.EXE
C:\Windows\System32\bcmwltry.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Program Files\iolo\common\lib\ioloServiceManager.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\Program Files\Visioneer\OneTouch 4.0\OtService.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
C:\Windows\system32\svchost.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PccGuide.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe
C:\Program Files\Spyware Doctor\TFEngine\TFService.exe
C:\Program Files\SetPoint\LBTWiz.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe
C:\Program Files\Roxio\CinePlayer\DMXLauncher.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Windows\system32\svchost.exe
C:\Windows\WindowsMobile\wmdcBase.exe
C:\Windows\SYSTEM32\CTXFISPI.EXE
C:\Windows\System32\rundll32.exe
C:\Windows\System32\Ctxfihlp.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\DellAutomatedPCTuneUp\PTAgnt.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Pando Networks\Media Booster\PMB.exe
C:\Program Files\NBC Direct\DirectPlayerCore.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\SetPoint\SetPoint.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\SlySoft\AnyDVD\AnyDVD.exe
C:\Windows\System32\svchost.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSHelpRunner10.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Apple Software Update\SoftwareUpdate.exe
C:\Windows\system32\taskeng.exe
C:\Users\SupesAZPD\Downloads\HiJackThis.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.detoate.home.ro/MAIN.htm
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.detoate.home.ro/MAIN.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [Bluetooth HCI Monitor] RunDll32 HCIMNTR.DLL,RunCheckHCIMode
O4 - HKLM\..\Run: [VolPanel] "C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] "C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE"
O4 - HKLM\..\Run: [Logitech BT Wizard] LBTWiz.exe -silent
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 14\pccguide.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe"
O4 - HKLM\..\Run: [DMXLauncher] "C:\Program Files\Roxio\CinePlayer\DMXLauncher.exe"
O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKLM\..\Run: [Windows Mobile-based device management] %WINDIR%\WindowsMobile\wmdcBase.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
O4 - HKLM\..\Run: [ISTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
O4 - HKLM\..\Run: [iolo Startup] "C:\Program Files\iolo\Common\Lib\ioloLManager.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKCU\..\Run: [DellAutomatedPCTuneUp] "C:\Program Files\DellAutomatedPCTuneUp\PTAgnt.exe" /startup
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKCU\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
O4 - HKCU\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Pando Media Booster] "C:\Program Files\Pando Networks\Media Booster\PMB.exe"
O4 - HKCU\..\Run: [DirectPlayerCore] "C:\Program Files\NBC Direct\DirectPlayerCore.exe"
O4 - HKCU\..\Run: [AnyDVD] C:\Program Files\SlySoft\AnyDVD\AnyDVD.exe
O4 - HKCU\..\Run: [igndlm.exe] C:\Program Files\Download Manager\DLM.exe /windowsstart /startifwork
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: SetPoint.lnk = ?
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {362C56AA-6E4F-40C7-A0B5-85501DBDAD77} (Scanner.SysScanner) - http://i.dell.com/images/global/js/scanner/SysProExe.cab
O16 - DPF: {49312E18-AA92-4CC2-BB97-55DEA7BCADD6} (WMI Class) - http://support.dell.com/systemprofiler/SysProExe.CAB
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) - http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: DellAMBrokerService - Unknown owner - C:\Program Files\DellAutomatedPCTuneUp\brkrsvc.exe
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe
O23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTSERV.EXE
O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: OneTouch 4.0 Monitor - Visioneer Inc. - C:\Program Files\Visioneer\OneTouch 4.0\OtService.exe
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: Roxio UPnP Renderer 10 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe
O23 - Service: Roxio Upnp Server 10 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 10\RoxioUpnpService10.exe
O23 - Service: LiveShare P2P Server 10 (RoxLiveShare10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe
O23 - Service: RoxMediaDB10 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 10 (RoxWatch10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: ThreatFire - PC Tools - C:\Program Files\Spyware Doctor\TFEngine\TFService.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE
--
End of file - 14896 bytes
bamajim
10.4K Posts
0
April 29th, 2009 07:00
TrendMicro is a good program, you could do worse.
I have never been a fan of system mechanic professional or any of their products, but the choice to keep it is yours.
Spybot S&D is a good product, but it may be best, since you have AdAware and Spyware Doctor, that you turn off the active protection mode on SpyBot S&D and just use it as a stand a lone tool that you use to scan your PC monthly. You need to keep in mind that all of these programs have an active protection mode, which means they are running in the background and comsuming PC resources.
The point of all of this is to make sure your PC is Protected, but not get too much of a good thing as it were.