PDA

View Full Version : Problems with laggy computer


Markpyro
12-04-2004, 7:52 PM
My computer has been super laggy latley. Every minute or so, it lags up for about 20 seconds, and then is fine. At first I thought it was a problem with my router, but I remembered that I had only been having these problems for about two weeks, and I got my router several weeks ago. I confirmed this by plugging in a different computer to my router, and It worked fine, so Im thinking it isnt a problem with the internet. I ran adaware a few times also, but the scans diddnt help, even after I removed the few items it had, which were mostly cookies. I ran all of the removing processes in Secretmaker, but that did not help either.

Suggestions?


Oh, by the way, here is my hijack this log:

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\PROGRAM FILES\ENCOMPASS\ENCMONTR.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\SYMTRAY.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\EXPLORER.EXE
C:\PROGRAM FILES\NETROPA\MULTIMEDIA KEYBOARD\MMKEYBD.EXE
C:\PROGRAM FILES\VISIONEER ONETOUCH\ONETOUCHMON.EXE
C:\WINDOWS\FVPROTECT.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON ANTIVIRUS\NAVAPW32.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\PROGRAM FILES\NETROPA\MULTIMEDIA KEYBOARD\TRAYMON.EXE
C:\PROGRAM FILES\NETROPA\ONSCREEN DISPLAY\OSD.EXE
C:\PROGRAM FILES\WINDOWS MEDIA COMPONENTS\ENCODER\WMENCAGT.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\PROGRAM FILES\NORTON SYSTEMWORKS\NORTON CLEANSWEEP\CSINSM32.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\WINDOWS\SYSTEM\HPZSTATX.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE
C:\WINDOWS\SYSTEM\PSTORES.EXE
C:\WINDOWS\DESKTOP\HIJACKTHIS.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bexhcjciyfiarylatemnatkt.biz/srUH_UZ68EeuvC5Y9dU_iwMHtQj2c3Kzj7GT1SmKtIOXqp9uKO 4oDojYL5y8MHGZ.jsp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.lrxbdymalpkrk.org/srUH_UZ68Ed8UQoRVmLNIcF0oyLxUYGS386_Pjq2VQQ.cgi
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\about.htm
F1 - win.ini: run=hpfsched
O2 - BHO: (no name) - {02478D28-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: (no name) - {00F16DC8-1B2A-42F4-B18B-E21DA9D2D7FD} - C:\PROGRAM FILES\COMMON FILES\IESERVICES\01A00.DLL
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
O2 - BHO: (no name) - {2E65A557-173C-4DE9-860B-28FC5CACA542} - C:\WINDOWS\ALL USERS\APPLICATION DATA\SETUP\SETUP.DLL
O2 - BHO: (no name) - {1BBB89DC-B54D-3011-2957-5CEE591D7C66} - C:\WINDOWS\APPLICATION DATA\AXIS GRIM MATH\ELSEGREY.EXE
O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [$EnterNet] C:\PROGRAM FILES\EFFICIENT NETWORKS\ENTERNET 300\APP\EnterNet.exe -AutoStart
O4 - HKLM\..\Run: [xidsfsodt] C:\WINDOWS\SYSTEM\rireho.exe
O4 - HKLM\..\Run: [CriticalUpdate] C:\WINDOWS\SYSTEM\wucrtupd.exe -startup
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [OneTouch Monitor] C:\PROGRA~1\VISION~1\ONETOU~2.EXE
O4 - HKLM\..\Run: [Norton Antivirus AV] C:\WINDOWS\FVProtect.exe
O4 - HKLM\..\Run: [Memoheckgreattest] C:\WINDOWS\Application Data\Itch Win Memo Heck\Testinfo.exe
O4 - HKLM\..\Run: [Norton Auto-Protect] C:\PROGRA~1\NORTON~1\NORTON~2\NAVAPW32.EXE /LOADQUIET
O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\RunServices: [Encompass_ENCMONTR] C:\Program Files\Encompass\ENCMONTR.EXE
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [ScriptBlocking] "C:\Program Files\Common Files\Symantec Shared\Script Blocking\SBServ.exe" -reg
O4 - HKLM\..\RunServices: [SymTray - Norton SystemWorks] C:\Program Files\Common Files\Symantec Shared\SymTray.exe "Norton SystemWorks"
O4 - HKLM\..\RunServices: [WinTools] C:\Program Files\Common files\WinTools\WToolsA.exe
O4 - HKCU\..\Run: [DR_S] C:\Program Files\DR_S\DR_S.exe
O4 - HKCU\..\Run: [GRAM SPAM] C:\WINDOWS\APPLIC~1\BLEHPO~1\Findsetupkeep.exe
O4 - Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: ColdFusion 5.lnk = C:\CFusion\BIN\cfserver.exe
O4 - Startup: Encoder Agent.lnk = C:\Program Files\Windows Media Components\Encoder\WMENCAGT.EXE
O4 - Startup: CleanSweep Smart Sweep-Internet Sweep.lnk = C:\Program Files\Norton SystemWorks\Norton CleanSweep\csinsm32.exe
O4 - Startup: ColdFusion RDS Service.lnk = C:\CFusion\BIN\cfrdsservice.exe
O8 - Extra context menu item: &Google Search - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsearch.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmcache.html
O8 - Extra context menu item: Similar Pages - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsimilar.html
O8 - Extra context menu item: Backward Links - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmbacklinks.html
O8 - Extra context menu item: Translate into English - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmtrans.html
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Yahoo! Messenger (HKLM)
O9 - Extra button: Yahoo! Login (HKLM)
O9 - Extra 'Tools' menuitem: Yahoo! Login (HKLM)
O9 - Extra button: ICQ 4.1 (HKLM)
O9 - Extra 'Tools' menuitem: ICQ Lite (HKLM)
O12 - Plugin for .wav: C:\PROGRA~1\INTERN~1\PLUGINS\npqtplugin.dll
O12 - Plugin for .mp3: C:\PROGRA~1\INTERN~1\PLUGINS\npqtplugin4.dll
O12 - Plugin for .pdf: C:\PROGRA~1\INTERN~1\PLUGINS\nppdf32.dll
O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
O15 - Trusted Zone: http://www.runescape.com
O16 - DPF: {0FC6BF2B-E16A-11CF-AB2E-0080AD08A326} - http://www.liveupdate.com/controls/getcab2.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\VxD\MSTCP: Domain = ameritech.net
O17 - HKLM\System\CCS\Services\VxD\MSTCP: SearchList = ameritech.net
O18 - Protocol: pcn - {D540F040-F3D9-11D0-95BE-00C04FD93CA5} - C:\PROGRAM FILES\ENCOMPASS\V1MK.DLL

Exedore
12-08-2004, 8:05 PM
C:\WINDOWS\FVPROTECT.EXE is most likely the main culprit. It's a virus. You'll probably also want to remove:

O4 - HKLM\..\Run: [xidsfsodt] C:\WINDOWS\SYSTEM\rireho.exe
O4 - HKLM\..\Run: [Norton Antivirus AV] C:\WINDOWS\FVProtect.exe
O4 - HKLM\..\Run: [Memoheckgreattest] C:\WINDOWS\Application Data\Itch Win Memo Heck\Testinfo.exe - no clue what this is
O4 - HKLM\..\RunServices: [WinTools] C:\Program Files\Common files\WinTools\WToolsA.exe
O4 - HKCU\..\Run: [DR_S] C:\Program Files\DR_S\DR_S.exe
O4 - HKCU\..\Run: [GRAM SPAM] C:\WINDOWS\APPLIC~1\BLEHPO~1\Findsetupkeep.exe



Oh, and change your signature image to a JPEG or GIF, MarkPyro. Bitmaps take foerver to download, which annoys both readers and your host when you eat their bandwidth.

Moser
12-08-2004, 9:20 PM
And on top of Exedore's excellent advise, run a spyware program.. such as Adaware SE or something.

Markpyro
12-08-2004, 9:58 PM
Like I said, I ran adaware.

xodkrm
12-17-2004, 10:46 AM
1.ctrl+alt+delete
2.processes
3.end everything that is suspicious. (The needed ones cannot be ended.)
4.look under CPU collumn and everything that has high rate of CPU, delete it except for SIP annd explorer.exe (look for crss.exe- delete this!)
5. If you have cable, look at the thing that connects to your computer. If you aren't using any interent and the lights go on, it means that either your computer is doing an update or there is a 'ware'.
6.If you don't have cable, go to Networking and take a look.
7. Go to C: drive and program files. If there is anything suspicious, delete it.
8. Run adaware in file WINDOWS > system32 and DOCUMENTS AND SETTINGS > All Users.
9.Restart computer and before the screen switches to the blue screen, quickly unplugg interent
10.ctrl+alt+delete
11.See if there are any ad-wares.
12.If performance does not improve, i recommend buying 'Norton Internet Security' or re formmating hard drive.
TIP: One adware brings another, so if you see on task manager, quickly end process.

Basan
12-17-2004, 12:59 PM
Pyro, I'm no expert but I know that some of Xodkrm steps above aren't very trust worthy. When it's suspicious ask folks around here or where ever you know to be sure help. You could severely crash your PC's OS. It's preferable to ask, than do random and unsure moves with your OS files and regret later.
Take care of your system, 'cause no one is gonna do it for ya... unless some friend(s) of yours can pull that off. :)

See this (http://www.warboards.org/showthread.php?t=4133) for Internet security improvement (tips). I use most of'em, if not all. As you can see here (http://www.warboards.org/showthread.php?t=5544), my Hi-Jack This logs are almost always clean. What I did? Asked around ('till I learned a thing or two about'em). ;)
And when you're about to do an Anti-Virus sweeps, unplug the Net before (either in software or hardware). I also suggest some other tools, to improve Net security, especially if you use IE (Internet Explorer). These are Secret Maker (http://www.secretmaker.com/) and PeerGuardian (http://www.methlabs.org/methlabs.htm). This last one has it's improved security lists on the bottom left of the page and I use one of those.
They're both freeware and if you still have any doubts, read around the links I provided to clear'em out. In case you want any details of'em, feel free to drop me a line or two (PM style).

Exe' (from post #2) and Neox are the tech gurus I've 1st recall to have aided me in these parts and that could answer almost everything you ask as well. There are a few others talented too, but I can't immediatly recall their names. ;)

Modred
12-17-2004, 6:19 PM
I find it a bit humorous...I don't update Spybot or Adaware for 3 months, and after updating and scanning, I have a total of 10 mysterious files. In contrast, many who probably run those programs more often have frequent encounters with spyware/adware which slows their computers down. I wonder what the difference is...

By the way, this is rather off topic, but I felt a thread dedicated to this would be pointless.

Falhem
01-02-2005, 2:55 AM
If your running like 10 or more processes at one time in your system trey then that will hinder you. You should also do a "Dick cleanup" Which is
Start> All Programs> Accessories> System Tools

In System tools is Disk Clean up.
You should also Defrag your HD if you haven't within a month or so. Which is in the same catagory.

You should run a Anti-Virus program such as Norton, AVG, or whatever other big and GOOD programs. And not McAfee. I have had horrible luck with that program.

This is just general stuff though. If your as knowledgeable as I think then you have probibly already done all this.

bluemicrobyte
01-03-2005, 2:36 AM
UPDATE EVERYTHING!!! first go to microsoft.com and look for windows update, then download everything. then if you have A/V software, update it. update everything else, then see if theres still a problem. if you are using a network adapter other than the one that was installed on your computer when you bought it (if any) try disabling it for a while and see if the problem continues.