This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

[Closed] Laptop Running Slow

5 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

My laptop has begun to run slower than usual lately and I am hoping someone can help.

HijackThis Log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:10:27 PM, on 11/15/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\atievxx.exe
C:\Program Files\Digidesign\Drivers\MMERefresh.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe
C:\Program Files\Belkin\F5D8013\Belkinwcui.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [DigidesignMMERefresh] C:\Program Files\Digidesign\Drivers\MMERefresh.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [EasyLinkAdvisor] "C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe" /startup
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Belkin F5D8013 N Wireless Notebook Card Utility.lnk = C:\Program Files\Belkin\F5D8013\Belkinwcui.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Absolute Poker - {13C1DBF6-7535-495c-91F6-8C13714ED485} - C:\Documents and Settings\Sound Man\Start Menu\Programs\Absolute Poker\Absolute Poker.lnk (HKCU)
O9 - Extra 'Tools' menuitem: Absolute Poker - {13C1DBF6-7535-495c-91F6-8C13714ED485} - C:\Documents and Settings\Sound Man\Start Menu\Programs\Absolute Poker\Absolute Poker.lnk (HKCU)
O15 - Trusted Zone: http://*.mcafee.com
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD44/JSCDL/jd…ows-i586-jc.cab
O23 - Service: Digidesign MME Refresh Service (DigiRefresh) - Digidesign, A Division of Avid Technology, Inc. - C:\Program Files\Digidesign\Drivers\MMERefresh.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe

–
End of file - 5206 bytes



Please Help! Thanks n advance.
Hi, and Welcome to WhatTheTech :)

My name is jpshortstuff. I would be glad to take a look at your log and help you with solving any malware problems. HijackThis logs can take a while to research, so please be patient and I'd be grateful if you would note the following:
  • I will be working on your Malware issues, this may or may not, solve other issues you have with your machine.
  • The fixes are specific to your problem and should only be used for the issues on this machine.
  • Please continue to review my answers until I tell you your machine appears to be clear. Absence of symptoms does not mean that everything is clear.
  • It's often worth reading through these instructions and printing them for ease of reference.
  • If you don't know or understand something, please don't hesitate to say or ask!! It's better to be sure and safe than sorry.
  • Please reply to this thread. Do not start a new topic.
Any other problems apart from slowness?

Please download ATF Cleaner by Atribune.
Download - ATF Cleaner»
Double-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.

(If you use FireFox or the Opera browser
To keep saved passwords, click No at the prompt.)

It's normal after running ATF cleaner that the PC will be slower to boot the first time or two.


Please download DDS and save it to your desktop.
  • Disable any script blocking protection
  • Double click dds.scr to run the tool.
  • When done, DDS.txt will open.
  • Click Yes at the next prompt for Optional Scan.
  • Save both reports to your desktop.
—————————————————
  • Post the contents of the DDS.txt report in your next reply
  • Attach the Attach.txt report to your post by scroling down to the Attachments area and then clicking Browse. Browse to where you saved the file, and click Open and the click UPLOAD.
Thanks.
There is another slight problem. Right before booting up I get a message saying "memory write/read error… (some numbers) …Decreasing available memory." And then boot up proceeds. DDS.txt: DDS (Version 1.0) - FAT32x86 Run by [removed] at 19:58:27.56 on Tue 11/18/2008 Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.127.20 [GMT -7:00] ============== Running Processes =============== C:\WINDOWS\system32\svchost -k DcomLaunch SVCHOST.EXE C:\WINDOWS\System32\svchost.exe -k netsvcs SVCHOST.EXE SVCHOST.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\atievxx.exe C:\Program Files\Digidesign\Drivers\MMERefresh.exe C:\WINDOWS\System32\svchost.exe -k imgsvc C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\Internet Explorer\iexplore.exe C:\WINDOWS\system32\wuauclt.exe C:\Documents and Settings\Sound Man\Desktop\dds.scr ============== Psuedo HJT Report =============== uStart Page = hxxp://www.google.com/ uSearch Page = hxxp://www.google.com uSearch Bar = hxxp://www.google.com/ie uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 uSearchAssistant = hxxp://www.google.com/ie uSearchURL,(Default) = hxxp://www.google.com/search?q=%s mSearchAssistant = hxxp://www.google.com/ie BHO: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre1.6.0_07\bin\ssv.dll BHO: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\3.1.807.1746\swg.dll TB: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe uRun: [EasyLinkAdvisor] "c:\program files\linksys easylink advisor\LinksysAgent.exe" /startup uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe mRun: [DigidesignMMERefresh] c:\program files\digidesign\drivers\MMERefresh.exe mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0_07\bin\jusched.exe" mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\belkin~1.lnk - c:\program files\belkin\f5d8013\Belkinwcui.exe IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000 IE: {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - c:\program files\pokerstars\PokerStarsUpdate.exe IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_07\bin\ssv.dll IE: {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - c:\program files\pokerstars\PokerStarsUpdate.exe IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web folders\PKMCDO.DLL ============= SERVICES / DRIVERS =============== =============== Created Last 30 ================ 2008-11-15 21:09 –d—– c:\program files\Trend Micro 2008-11-15 19:45 608,448 a——- c:\windows\system32\comctl32.ocx 2008-11-15 19:45 –d—– c:\program files\AML Products 2008-11-11 21:23 455,296 ——– c:\windows\system32\dllcache\mrxsmb.sys 2008-11-11 21:23 1,106,944 ——– c:\windows\system32\dllcache\msxml3.dll 2008-11-09 16:28 –dsh— C:\FOUND.009 2008-11-02 01:01 –dsh— C:\FOUND.008 2008-11-01 21:17 –dsh— C:\FOUND.007 2008-10-30 12:22 221,184 a——- c:\windows\system32\wmpns.dll 2008-10-30 11:16 –d—– c:\windows\system32\scripting 2008-10-30 11:16 –d—– c:\windows\l2schemas 2008-10-30 11:16 –d—– c:\windows\system32\en 2008-10-30 11:16 –d—– c:\windows\system32\bits 2008-10-30 11:07 –d—– c:\windows\network diagnostic 2008-10-30 09:51 –d—– C:\XPCD_i386 2008-10-29 08:35 –dsh— C:\FOUND.006 2008-10-28 19:05 337,408 ——– c:\windows\system32\dllcache\netapi32.dll 2008-10-23 15:27 –dsh— C:\FOUND.005 ==================== Find3M ==================== 2008-10-30 11:28 86,665 a——- c:\windows\pchealth\helpctr\offlinecache\index.dat 2008-10-16 14:13 1,809,944 a——- c:\windows\system32\dllcache\wuaueng.dll 2008-10-16 14:13 202,776 a——- c:\windows\system32\dllcache\wuweb.dll 2008-10-16 14:12 323,608 a——- c:\windows\system32\dllcache\wucltui.dll 2008-10-16 14:12 561,688 a——- c:\windows\system32\dllcache\wuapi.dll 2008-10-16 14:09 92,696 a——- c:\windows\system32\dllcache\cdm.dll 2008-10-16 14:09 51,224 a——- c:\windows\system32\dllcache\wuauclt.exe 2008-10-15 15:41 1,577 a——- c:\windows\checkip.dat 2008-10-03 11:41 6,066,176 ——– c:\windows\system32\dllcache\ieframe.dll 2008-09-29 20:37 –d—– c:\program files\Full Tilt Poker 2008-09-15 06:12 1,846,400 a——- c:\windows\system32\win32k.sys 2008-09-15 06:12 1,846,400 ——– c:\windows\system32\dllcache\win32k.sys 2008-09-09 18:14 1,307,648 ——– c:\windows\system32\msxml6.dll 2008-09-09 18:14 1,307,648 ——– c:\windows\system32\dllcache\msxml6.dll 2008-09-08 04:41 333,824 ——– c:\windows\system32\dllcache\srv.sys 2008-09-04 10:15 1,106,944 a——- c:\windows\system32\msxml3.dll 2008-08-27 02:24 3,593,216 a——- c:\windows\system32\dllcache\mshtml.dll 2008-08-25 02:38 70,656 ——– c:\windows\system32\dllcache\ie4uinit.exe 2008-08-25 02:38 13,824 ——– c:\windows\system32\dllcache\ieudinit.exe 2008-08-22 23:56 635,848 ——– c:\windows\system32\dllcache\iexplore.exe 2008-08-22 23:54 161,792 a——- c:\windows\system32\dllcache\ieakui.dll 2008-08-17 20:03 –d—– c:\docume~1\alluse~1.win\applic~1\NCH Swift Sound 2008-08-17 20:03 –d—– c:\docume~1\soundm~1\applic~1\NCH Swift Sound 2008-08-16 13:45 –d—– c:\docume~1\alluse~1.win\applic~1\Citrix 2008-08-10 00:33 –d—– c:\docume~1\soundm~1\applic~1\Blender Foundation 2008-08-02 12:56 –d—– c:\docume~1\soundm~1\applic~1\McAfee 2008-06-08 00:41 –d—– c:\docume~1\soundm~1\applic~1\Research In Motion 2008-06-08 00:37 –d—– c:\docume~1\soundm~1\applic~1\Blackberry Desktop 2008-04-05 22:14 –d—– c:\docume~1\soundm~1\applic~1\MSN6 2008-04-05 22:14 –d—– c:\docume~1\alluse~1.win\applic~1\MSN6 2007-05-10 05:35 –d—– c:\docume~1\soundm~1\applic~1\Publish Providers 2007-05-10 05:35 –d—– c:\docume~1\soundm~1\applic~1\NetMedia Providers 2007-05-06 09:19 –d—– c:\docume~1\alluse~1.win\applic~1\Ahead 2006-11-07 07:52 –d—– c:\docume~1\alluse~1.win\applic~1\YAMAHA 2006-09-08 05:29 –d—– c:\docume~1\soundm~1\applic~1\Syntrillium 2006-01-23 04:11 –d—– c:\docume~1\soundm~1\applic~1\Steinberg 2006-01-17 01:15 –d—– c:\docume~1\soundm~1\applic~1\Digidesign ============= FINISH: 19:59:36.20 ===============

Attachments:

Hi.

Your logs look clean, there's just a few things I can recommend.

Remove Poker programs
From your log I can see you've installed poker programs. A lot of poker programs are infected/can infect you with malware.
I would advise you to go to Add/Remove programs and uninstall your poker programs, namely these ones:
Absolute Poker
Full Tilt Poker


Pokerstars, which you also have, is a clean poker site that is regarded as safe to use.


If you are still experiencing a slow computer, take at this article:
What to do if your Computer's running slowely


Since there isn't a Malware issue here, then this is as far as I can help you. If you wish for some of our Tech Experts to try and troubleshoot your problem and slow computer, then post a new topic in the Microsoft Windows Forum, where you will receive quick, expert assistance.

I'm sorry I couldn't be of more help, but your logs are clean.

Thanks.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI