Forum Home
Press F1
 
Thread ID: 81074 2007-07-15 01:33:00 My comp. is soooo sloooow. Any help? jboy (9468) Press F1
Post ID Timestamp Content User
569171 2007-07-15 01:33:00 I have run disk clean, defrage, Spybot, Adaware, A Squared, Speedy's Comodo BoClean and I have Win. Defender. It is still slow. I believe there are programs out there that will solve my problems. What are they please.
J

Microsoft Windows XP Home Edition
Service Pack 2
AMD Sempron, 1400 MHz (7 x 200)
1gig RAM
NVIDIA GeForce 6600 GT (128 MB)
HD 38154 MB (16776 MB free)
jboy (9468)
569172 2007-07-15 01:35:00 what anti-virus do you use? Greven (91)
569173 2007-07-15 01:46:00 Try hijackthis in my sig, and post a log here. Speedy Gonzales (78)
569174 2007-07-15 02:10:00 I am using AVG
I ran hijack and had over two pages to delete but it said be careful, do I delete with cross fingers or what?
J
jboy (9468)
569175 2007-07-15 02:13:00 Post the hijackthis log here. Copy and paste it here. Put it in its own folder first, before you run it.

I'll tell u what to delete, if anything needs to be ticked.
Speedy Gonzales (78)
569176 2007-07-15 02:26:00 Sorry Speedy but how do I copy and past it????
J
jboy (9468)
569177 2007-07-15 02:28:00 When the log comes up in notepad go to the edit menu and select all, then right mouse on the text (make sure the text is still highlighted), and select copy.

Then come back to the forum here. And right mouse / paste.
Speedy Gonzales (78)
569178 2007-07-15 02:32:00 There we go, did it
J
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 1:45:29 p.m., on 15/07/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\a-squared Free\a2service.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\1\c\Comodo\CBOClean\BOCORE.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\1\c\Comodo\CBOClean\BOC424.exe
C:\WINDOWS\system32\ctfmon.exe
C:\1\A\ArcSoft\NkvMon.exe
C:\2\T\TurboNote\tbnote.exe
C:\2\R\RMP2\RMP2.exe
C:\Program Files\Java\jre1.6.0_01\bin\javaw.exe
C:\1\D\Dictionary\WordWeb\wweb32.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = 127.0.0.1
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\Userinit.exe
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\2\S\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [BOC-424] C:\1\c\Comodo\CBOClean\BOC424.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: MP3 Rocket (silent).lnk = C:\2\M\MP3 Rocket\MP3Rocket_on_startup.exe
O4 - Startup: RMP2.lnk = C:\2\R\RMP2\RMP2.exe
O4 - Startup: WordWeb.lnk = C:\1\D\Dictionary\WordWeb\wweb32.exe
O4 - Global Startup: NkvMon.exe.lnk = C:\1\A\ArcSoft\NkvMon.exe
O4 - Global Startup: TurboNote.lnk = C:\2\T\TurboNote\tbnote.exe
O4 - Global Startup: Xtra Help Assistant.lnk = C:\Program Files\Xtra Help Assistant\bin\matcli.exe
O8 - Extra context menu item: &WordWeb... - res://C:\WINDOWS\wweb32.dll/lookup.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Researcher - {9455301C-CF6B-11D3-A266-00C04F689C50} - C:\Program Files\Common Files\Microsoft Shared\Encarta Researcher\EROProj.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{BA83C052-7C49-4D9D-8D60-0BEA0A33C0D0}: NameServer = 202.27.158.40,202.27.156.72
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: BOCore - COMODO - C:\1\c\Comodo\CBOClean\BOCORE.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe

--
End of file - 6571 bytes
jboy (9468)
569179 2007-07-15 02:43:00 Ok run hijackthis again tick these entries then tick fix checked.

Close browser/s.

C:\2\R\RMP2\RMP2.exe - I dont know what this is

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - Startup: MP3 Rocket (silent).lnk = C:\2\M\MP3 Rocket\MP3Rocket_on_startup.exe - This maybe causing the slowness.

O4 - Startup: RMP2.lnk = C:\2\R\RMP2\RMP2.exe

O4 - Startup: WordWeb.lnk = C:\1\D\Dictionary\WordWeb\wweb32.exe

O4 - Global Startup: NkvMon.exe.lnk = C:\1\A\ArcSoft\NkvMon.exe

O4 - Global Startup: Xtra Help Assistant.lnk = C:\Program Files\Xtra Help Assistant\bin\matcli.exe

Uninstall ALL versions of Sun Java. The latest version is in my sig below.

Then reboot.
Speedy Gonzales (78)
569180 2007-07-15 02:50:00 Reinstall Windows is usually an easy solution.

If your computer is a brand name PC such as HP, Compaq, Dell or Acer and comes with a recovery image then this could be half the problem. Normally these companies add a whole lot of crap to your Windows installation that you don't need. The best solution is to obtain a friends Windows install CD (you will need an OEM copy of the version of Windows you have if you are using the copy preinstalled on the PC). Install Windows with this using the product key attached to the case of your PC. If you had Vista you could use any install CD and it would work.

My other solution has been to recreate your user profile this often speeds Windows up. If you create a new user account on your computer and log on as that user you will probably notice that the computer runs so much faster when logged on as that user, this is because you are using a fresh profile that won't have got all bloated with all the settings for programs that you have been runnnig for the past few months or years. So assuming you are using XP log on as a different user and then go to C:\Documents and Settings and rename the folder of the user name you always use to something else, if it won't let you then you may need to reboot the computer and then log on again as the different user first and then change it. Then when you log on as the user you use everyday a fresh user profile should be created, transfer any valuable files between your old user profile and the new one before deleting the old one.
bhowden (12168)
1 2