Start a Conversation

Unsolved

This post is more than 5 years old

309

February 27th, 2008 17:00

HJT log for slow performing PC

​Hi team, my PC has been going slow for a while the most thing I have installed is the package that came with my Mobile phone 'Sony Ericsson PC Suite 3.1' not sure if this is factor or not, is there anything suspicious in my HJT log? Thank you​

​ ​

​--------------------------------------------------------------------------------------------------------​

​ ​

​Logfile of Trend Micro HijackThis v2.0.2​
​Scan saved at 19:37:25, on 27/02/2008​
​Platform: Windows XP SP2 (WinNT 5.01.2600)​
​MSIE: Internet Explorer v7.00 (7.00.6000.16608)​
​Boot mode: Normal​

​Running processes:​
​C:\WINDOWS\System32\smss.exe​
​C:\WINDOWS\system32\winlogon.exe​
​C:\WINDOWS\system32\services.exe​
​C:\WINDOWS\system32\lsass.exe​
​C:\WINDOWS\system32\svchost.exe​
​C:\Program Files\Windows Defender\MsMpEng.exe​
​C:\WINDOWS\System32\svchost.exe​
​C:\WINDOWS\system32\svchost.exe​
​C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe​
​C:\Program Files\Alwil Software\Avast4\ashServ.exe​
​C:\WINDOWS\system32\spoolsv.exe​
​C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe​
​C:\Program Files\Sitecom\Bluetooth Software\bin\btwdins.exe​
​C:\WINDOWS\system32\svchost.exe​
​C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe​
​C:\Program Files\Alwil Software\Avast4\ashWebSv.exe​
​C:\WINDOWS\Explorer.EXE​
​C:\Program Files\Analog Devices\Core\smax4pnp.exe​
​C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe​
​C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe​
​C:\WINDOWS\system32\dla\tfswctrl.exe​
​C:\WINDOWS\system32\rundll32.exe​
​C:\Program Files\Picasa2\PicasaMediaDetector.exe​
​C:\WINDOWS\system32\hkcmd.exe​
​C:\WINDOWS\system32\igfxpers.exe​
​C:\Program Files\Windows Defender\MSASCui.exe​
​C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe​
​C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe​
​C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe​
​C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe​
​C:\Program Files\QuickTime\QTTask.exe​
​C:\Program Files\iTunes\iTunesHelper.exe​
​C:\WINDOWS\system32\ctfmon.exe​
​C:\Program Files\PC Connectivity Solution\ServiceLayer.exe​
​C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe​
​C:\Program Files\Sitecom\Bluetooth Software\BTTray.exe​
​C:\Program Files\SAGEM\SAGEM ​​F@st​​ 800-840\dslmon.exe​
​C:\Program Files\FinePixViewerS\QuickDCF2.exe​
​C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe​
​C:\Program Files\iPod\bin\iPodService.exe​
​C:\WINDOWS\system32\HPZipm12.exe​
​C:\Program Files\MSN Messenger\usnsvc.exe​
​C:\WINDOWS\system32\igfxsrvc.exe​
​C:\Program Files\Internet Explorer\iexplore.exe​
​C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe​
​C:\Program Files\Trend Micro\HijackThis\HijackThis.exe​

​R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = ​​http://www.dell.co.uk/myway​
​R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = ​​http://www.yahoo.co.uk/​
​R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = ​​http://go.microsoft.com/fwlink/?LinkId=69157​
​R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = ​​http://go.microsoft.com/fwlink/?LinkId=54896​
​R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = ​​http://go.microsoft.com/fwlink/?LinkId=54896​
​R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = ​​http://go.microsoft.com/fwlink/?LinkId=69157​
​R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = ​​http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR​
​O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll​
​O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll​
​O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll​
​O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)​
​O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll​
​O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll​
​O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll​
​O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll​
​O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe​
​O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe​
​O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup​
​O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start​
​O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe​
​O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent​
​O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe​
​O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe​
​O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe​
​O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe​
​O4 - HKLM\..\Run: [adiras] adiras.exe​
​O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide​
​O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"​
​O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"​
​O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup​
​O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe​
​O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"​
​O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime​
​O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"​
​O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe​
​O4 - HKCU\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe" /systray /nologon​
​O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')​
​O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')​
​O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')​
​O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')​
​O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')​
​O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')​
​O4 - Global Startup: BTTray.lnk = ?​
​O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM ​​F@st​​ 800-840\dslmon.exe​
​O4 - Global Startup: Exif Launcher S.lnk = ?​
​O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe​
​O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE​
​O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\Sitecom\Bluetooth Software\btsendto_ie_ctx.htm​
​O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll​
​O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll​
​O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Sitecom\Bluetooth Software\btsendto_ie.htm​
​O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Sitecom\Bluetooth Software\btsendto_ie.htm​
​O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe​
​O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe​
​O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe​
​O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe​
​O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll​
​O14 - IERESET.INF: START_PAGE_URL=http://www.tiscali.co.uk/broadband​
​O16 - DPF: {04CC2CE2-BBC4-43B6-96D6-E1C3E0BA120F} (HMVDownloader Control) - ​​https://www.hmvdigital.com/HMV.Digital.WebStore.Portal/Pages/System/Secure/HMV.Digital.Downloader.cab​
​O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - ​​http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab​
​O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - ​​http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab​
​O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - ​​http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab​
​O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - ​​http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab​
​O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - ​​http://www.snapfish.co.uk/SnapfishUKActivia.cab​
​O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - ​​http://lads.myspace.com/upload/MySpaceUploader1006.cab​
​O16 - DPF: {4CCA4E80-9259-11D9-AC6E-444553544200} (FixController Control) - ​​http://h30155.www3.hp.com/ediags/dd/install/HPInstallMgr_v01_6.cab​
​O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - ​​http://gfx2.hotmail.com/mail/w2/resources/MSNPUpld.cab​
​O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - ​​http://www.slide.com/uploader/SlideImageUploader.cab​
​O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - ​​http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab​
​O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - ​​http://upload.facebook.com/controls/FacebookPhotoUploader3.cab​
​O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - ​​http://messenger.zone.msn.com/EN-AU/a-UNO1/GAME_UNO1.cab​
​O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - ​​http://upload.facebook.com/controls/FacebookPhotoUploader.cab​
​O16 - DPF: {60EFC337-15C2-4369-B2A0-3429B071D8B8} (Hewlett-Packard Printer Diagnostics) - ​​http://h50203.www5.hp.com/HPISWeb/Customer/cabs/HPISWebManager.CAB​
​O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - ​​http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1192647236343​
​O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - ​​https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab​
​O16 - DPF: {78AEEDE8-7345-4FB5-A8FE-4BFF16EF25FC} (McAfee Virtual Technician Control Class) - ​​http://mvt.mcafee.com/mvt/bin/3,0,1,0/mvt.cab​
​O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - ​​http://chat.yahoo.com/cab/yacsui.cab​
​O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - ​​http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab​
​O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - ​​http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab​
​O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - ​​http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab​
​O16 - DPF: {BB383206-6DA1-4E80-B62A-3DF950FCC697} (Create & Print ActiveX Plug-in) - ​​http://ak.imgag.com/imgag/cp/install/AxCtp2.cab​
​O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - ​​http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab​
​O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - ​​http://www.adobe.com/products/acrobat/nos/gp.cab​
​O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - ​​http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab​
​O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - ​​http://msnuk.oberon-media.com/online2/MSN_INTL_UK/bejeweled2_non_zylom/popcaploader_v6.cab​
​O16 - DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D} (Hotmail Attachments Control) - ​​http://by122fd.bay122.hotmail.msn.com/activex/HMAtchmt.ocx​
​O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - ​​http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab​
​O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - ​​http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab​
​O17 - HKLM\System\CCS\Services\Tcpip\..\{CE054F62-9753-4717-AC26-D89A6A8B8682}: NameServer = 212.139.132.26 212.139.132.27​
​O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe​
​O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe​
​O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe​
​O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe​
​O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe​
​O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\Sitecom\Bluetooth Software\bin\btwdins.exe​
​O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe​
​O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe​
​O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe​
​O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe​
​O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe​
​O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe​

​--​
​End of file - 14001 bytes​

No Responses!
No Events found!

Top