Tom's Guide | Tom's Hardware | Tom's Games
![]() |
![]() |
![]() |
i have been having problems with an extremely slow pc - our nephew was here and downloaded kaaza lite and downloaded who knows what - i have run adaware, spysweep, trojan remover, norton antiviurs, pandasoftware antiviurs, pcmedik, just to name a few - they find nothing but cookies...would someone who understands the hijack this log take a look at this and post any comments as to what may be the problem.....oh also i have checked for heating issues and burn in test for ram....currently is seems to be running alright, but when "it" (?) hits, it hits hard - almost impossible to load up anything........thanks in advance...
Logfile of HijackThis v1.97.6
Scan saved at 5:50:15 PM, on 2/21/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Mixer.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Canon\BJPV\TVMon.exe
C:\Program Files\Canon\BJCard\BJLaunch.exe
C:\downloads\SuperRam.exe
C:\Program Files\MSN Messenger\MsnMsgr.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Roxio\GoBack\GBTray.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.exe
C:\Program Files\Canon\BJCard\Bjmcmng.exe
C:\Program Files\Executive Software\DiskeeperWorkstation\DKService.exe
C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
C:\Program Files\Roxio\GoBack\GBPoll.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Messenger\msmsgs.exe
C:\downloads\hijack this.exe
c:\hijackthis\hijackthis.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = C:\Program Files\Copernic 2001 Pro\Search Bar.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mchsi.com/des-moines
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = C:\Program Files\Copernic 2001 Pro\Search Bar.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = sas.r21.mchsi.com:8000
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.r21.mchsi.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,Shellnext = http://my.netzero.net/s/sp?r=al&cf=sp&mem=donchenson&key=b2e07d0d476a28585a70689a566d98be&ts=3e75183f&A=0&B=1046332800000&C=1046332800000&D=0&I=6.0B4&L=g%2311&M=936514800000&N=PL&O=A
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: CCHelper - {0CF0B8EE-6596-11D5-A98E-0003470BB48E} - C:\Program Files\Panicware\Pop-Up Stopper Companion\CCHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Pop-Up Stopper &Companion - {8F05B1A8-9D77-4B8F-AF54-6B2202066F95} - C:\Program Files\Panicware\Pop-Up Stopper Companion\popupus.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Ink Monitor] C:\Program Files\EPSON\Ink Monitor\InkMonitor.exe
O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [BJPD HID Control] C:\Program Files\Canon\BJPV\TVMon.exe
O4 - HKLM\..\Run: [BJLaunchEXE] C:\Program Files\Canon\BJCard\BJLaunch.exe
O4 - HKCU\..\Run: [SuperRam] "C:\downloads\SuperRam.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.exe" /background
O4 - HKCU\..\Run: [SpySweeper] C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe /0
O4 - Startup: PowerReg Scheduler V3.exe
O4 - Startup: PowerReg SchedulerV2.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\WINDOWS\system32\spool\drivers\w32x86\3\E_SRCV02.exe
O4 - Global Startup: GoBack.lnk = C:\Program Files\Roxio\GoBack\GBTray.exe
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DAP\dapextie2.htm
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Search Using Copernic - C:\Program Files\Copernic 2001 Pro\Search Extension.htm
O9 - Extra 'Tools' menuitem: Launch Copernic 2001 (HKLM)
O9 - Extra button: Copernic (HKLM)
O9 - Extra button: Translate (HKLM)
O9 - Extra 'Tools' menuitem: &Translate Using Gist-In-Time (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Messenger (HKLM)
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: symsupportutil - https://www-secure.symantec.com/techsupp/activedata/symsupportutil.CAB
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37697.7014814815
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab

Filename or a startup entry Search
http://www.kephyr.com/filedb/index.php==================================
Here is the logfile check list .
http://hjt.wizardsofwebsites.com/
http://www.spywareinfo.com/bhos/
http://www.spychecker.com/program/bholist.html
http://www.spywareinfo.com/~merijn/htlogtutorial.html#r
http://www.computercops.biz/postt6393.html
http://www.google.com/search?q=spyware+list========================================
Cpu usage high
If you are experiencing "random" slowdowns and "high" CPU usage for no reason .http://www.blackviper.com/AskBV/XP14.htm
http://www.blackviper.com/WinXP/supertweaks.htm
http://search.atomz.com/search/?sp-i=1&sp-q=cpu+100%25&sp-a=sp10025107&sp-advanced=1&sp-p=any&sp-x=any&sp-w-control=1&sp-w=alike&sp-d=custom&sp-c=10&sp-f=UTF-8
http://search.atomz.com/search/?sp-i=1&sp-q=cpu+100%25&sp-a=sp10025107&sp-advanced=1&sp-p=any&sp-x=any&sp-w-control=1&sp-w=alike&sp-d=custom&sp-n=11&sp-c=10&sp-f=UTF-8
http://search.atomz.com/search/?sp-i=1&sp-q=cpu+100%25&sp-a=sp10025107&sp-advanced=1&sp-p=any&sp-x=any&sp-w-control=1&sp-w=alike&sp-d=custom&sp-n=21&sp-c=10&sp-f=UTF-8
http://search.atomz.com/search/?sp-i=1&sp-q=cpu+100%25&sp-a=sp10025107&sp-advanced=1&sp-p=any&sp-x=any&sp-w-control=1&sp-w=alike&sp-d=custom&sp-n=31&sp-c=10&sp-f=UTF-8
http://search.atomz.com/search/?sp-i=1&sp-q=cpu+100%25&sp-a=sp10025107&sp-advanced=1&sp-p=any&sp-x=any&sp-w-control=1&sp-w=alike&sp-d=custom&sp-n=41&sp-c=10&sp-f=UTF-8
http://search.atomz.com/search/?sp-i=1&sp-q=cpu+100%25&sp-a=sp10025107&sp-advanced=1&sp-p=any&sp-x=any&sp-w-control=1&sp-w=alike&sp-d=custom&sp-n=51&sp-c=10&sp-f=UTF-8
http://search.atomz.com/search/?sp-q=cpu+100%25&sp-a=sp10025107&sp-advanced=1&sp-p=any&sp-w-control=1&sp-w=alike&sp-d=custom&sp-date-range=-1&sp-start-month=0&sp-start-day=0&sp-start-year=&sp-end-month=0&sp-end-day=0&sp-end-year=&sp-x=any&sp-c=10&sp-m=1&sp-s=0&sp-f=UTF-8

WHy not u uninstall kazaa then use system restore and use the date when ur pc was fine...its reversible process so u can always undo it if u want. to do restore click>>>start>>programs>>acessories>syetem tools>>>restore

i had the same problem...and its def not kazaa or anything else. its most probably the number of services running in wondows xp.
first of all, go to www.pcpitstop.com and run a full test on ur pc and see what it says about cpu usage.
after that, go to www.blackviper.com and follow his instructions how disabling useless services.
ps. i had the same problem a couple of months back, esp 100% cpu usage, but after disabled a load of services, it went under 10%. good luck

i ran a check at pcpitstop and aside from a warning for a setting in ie it passed with flying colors....i did a couple of tweaks from blackviper, but i really didnt want to uninstall system restore etc. any other thoughts? thanks!

![]() |
![]() |
![]() |

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.
| Ads by Google |