| Forum Home | ||||
| Press F1 | ||||
| Thread ID: 82360 | 2007-08-24 21:07:00 | Help With Hijackthis Log!!! | silentxxnight (12719) | Press F1 |
| Post ID | Timestamp | Content | User | ||
| 584328 | 2007-08-24 21:07:00 | A few days ago my friend gave me a keygen for a nero program to try out. i used the keygen and it worked, but ever since then my cpu usage has been hovering around 40-70% at all times. In task manager it doesn't show any processes using anything near that much. (1-2% tops). I've got a E6850 @ 3.5Ghz so its not destroying my performace but it's driving me nuts and it can't be good for the cpu. Here's the Hijackthis log: (by the way im a noob with this program) ************************************************** ****** Logfile of HijackThis v1.99.1 Scan saved at 4:20:38 PM, on 8/24/2007 Platform: Unknown Windows (WinNT 6.00.1904) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Running processes: C:\Windows\Explorer.EXE C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\Analog Devices\Core\smax4pnp.exe C:\Windows\System32\rundll32.exe C:\Windows\System32\rundll32.exe C:\Program Files\Logitech\G-series Software\LCDMon.exe C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe C:\Program Files\Logitech\G-series Software\Applets\LCDPop3\LCDPOP3.exe C:\Program Files\Logitech\G-series Software\Applets\LCDMedia.exe C:\Program Files\Logitech\G-series Software\Applets\LCDClock.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Windows\system32\Dwm.exe C:\Windows\system32\taskeng.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe C:\Users\Brendon\AppData\Local\Temp\Temp1_hijackth is.zip\HijackThis.exe C:\Windows\system32\NOTEPAD.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\DllHost.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = go.microsoft.com R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = go.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = go.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = go.microsoft.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = go.microsoft.com R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - G:\Program files\Free Download Manager\iefdm2.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [Launch LGDCore] "C:\Program Files\Logitech\G-series Software\LGDCore.exe" /SHOWHIDE O4 - HKLM\..\Run: [Launch LCDMon] "C:\Program Files\Logitech\G-series Software\LCDMon.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [Fraps] C:\PROGRAM FILES\FRAPS.EXE O8 - Extra context menu item: Download all with Free Download Manager - file://G:\Program files\Free Download Manager\dlall.htm O8 - Extra context menu item: Download selected with Free Download Manager - file://G:\Program files\Free Download Manager\dlselected.htm O8 - Extra context menu item: Download video with Free Download Manager - file://G:\Program files\Free Download Manager\dlfvideo.htm O8 - Extra context menu item: Download with Free Download Manager - file://G:\Program files\Free Download Manager\dllink.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://G:\PROGRA~1\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - G:\PROGRA~1\OFFICE11\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll O11 - Options group: [INTERNATIONAL] International* O13 - Gopher Prefix: O16 - DPF: {80AEEC0E-A2BE-4B8D-985F-350FE869DC40} (HPDDClientExec Class) - h30155.www3.hp.com O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - fpdownload2.macromedia.com O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\Windows\system32\AEADISRV.EXE O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - %windir%\system32\svchost.exe (file missing) O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: nTune Service (nTuneService) - NVIDIA - G:\Program files\nTune\nTuneService.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing) O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing) |
silentxxnight (12719) | ||
| 584329 | 2007-08-24 22:34:00 | Not a good idea telling us you've been using keygens to bypass paying for something. Put HJT in its own folder then run then tick these entries, close browser/s. Then tick fix checked. These are safe O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" O4 - HKCU\..\Run: [Fraps] C:\PROGRAM FILES\FRAPS.EXE This maybe nasty O13 - Gopher Prefix: |
Speedy Gonzales (78) | ||
| 584330 | 2007-08-24 22:49:00 | I know but i figured u would need to know exactly how it got there. and i've never used one before...obviously since i'd know they gave u viruses:P lol. I tried what u said and got rid of the gopher thing. but cpu is still 50% used.:dogeye: any other ideas? thanks by the way:) |
silentxxnight (12719) | ||
| 584331 | 2007-08-24 22:50:00 | Well its not the keygen. Most probably some hardware. Did you reboot after? | Speedy Gonzales (78) | ||
| 584332 | 2007-08-24 22:56:00 | no i'll try that now. but i'd be surprised if it was a hardware problem since i just built this baby last week. everything was running fine untill that stupid thing.:mad: |
silentxxnight (12719) | ||
| 584333 | 2007-08-24 23:04:00 | I restarted but its still the same. 50%. 1 core used fully. I don't really understand how task manager can be contradicting itself by saying 50% is used...but not showing any processes using anything above 2% :confused: |
silentxxnight (12719) | ||
| 584334 | 2007-08-24 23:16:00 | I wouldnt worry about it, when it starts turning off, thats when you worry . Then it'll be overheating . |
Speedy Gonzales (78) | ||
| 584335 | 2007-08-24 23:25:00 | Well thanks for your help Speedy. I apreciate the effort. Im going to keep looking around for solutions because its starting to affect games and loading of apps. Maybe i'll have to format and re-install windows...:groan: |
silentxxnight (12719) | ||
| 584336 | 2007-08-25 10:46:00 | In the future if you need to scan such small .exe type files try uploading them to here and see what it reports http://virusscan.jotti.org/ |
apsattv (7406) | ||
| 584337 | 2007-08-25 13:59:00 | Why not run a few programs such as Trojan Remover and BOClean in Speedy's sig and give the computer a good scan. You never know... | beeswax34 (63) | ||
| 1 2 | |||||