Content Top
DAL Computer Help » Internet Security Help » Spyware, Adware, Viruses and HijackThis Logs » PC Freezing, please help.

Recommended Fix

Click here to fix Windows Errors and Optimize Windows Performance

Need Computer Help?
Register Now for FREE

PC Freezing, please help.

Reply
Thread Tools
Spyware, Adware, Viruses and HijackThis Logs
  #1 (permalink)  
Old 20-05-2006, 02:59 AM
Newbie
D-A-L Newbie
 
Join Date: May 2006
Posts: 6
Jamesba Is a beginner here at D-A-L
PC Freezing, please help. HJT log included

Hi. i'm hoping someone has the patience to help me with my laptop. I'm a bit of a amateur so step by step instructions would be helpful! Basically my computer is recently taking ages to start up. I get my desktop screen up as usual but cannot do anything for about 10 mins after. Then when i am able to use it, it freezes on regular occassions rendering it useless, then it suddenly catches up. Just before this started i was getting an error msg saying 'NMBgMonitor.exe unable to initialise application'. From google i found this had something to do with Nero, so i uninstalled Nero, but still have the problem. I've done a system restore, no help. Any ideas i will be eternally grateful.

Logfile of HijackThis v1.99.1
Scan saved at 07:26:04, on 19/05/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\ZCfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\BullGuard Software\BullGuard\BullGuardUpdate.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\WINDOWS\system32\o2flash.exe
C:\WINDOWS\system32\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\Elantech\Ktp.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\BullGuard Software\BullGuard\bullguard.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\1XConfig.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\DOCUME~1\JAMESE~1\LOCALS~1\Temp\Temporary Directory 1 for hijackthis[1].zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bbc.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.pcservicecall.co.uk
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [KTPWare] C:\Program Files\Elantech\Ktp.exe
O4 - HKLM\..\Run: [ZCfgSvc.exe] C:\WINDOWS\system32\ZCfgSvc.exe
O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\PROSetWireless\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [BullGuard] "C:\Program Files\BullGuard Software\BullGuard\bullguard.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: FreeventsSchedule.lnk = C:\Freevents\FreeventsSchedule.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.pcservicecall.co.uk
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - http://www.musicnotes.com/download/mnviewer.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1143826673231
O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.kodakgallery.co.uk/downlo...1/axofupld.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: Sebring - C:\WINDOWS\system32\LgNotify.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: BullGuard LiveUpdate (BGLiveSvc) - BullGuard Software - C:\Program Files\BullGuard Software\BullGuard\BullGuardUpdate.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: O2Micro Flash Memory (O2Flash) - Unknown owner - C:\WINDOWS\system32\o2flash.exe
O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\system32\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\system32\S24EvMon.exe

Last edited by Jamesba; 20-05-2006 at 04:15 PM. Reason: included HJT log
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #2 (permalink)  
Old 20-05-2006, 06:47 PM
VopThis's Avatar
Senior Member (Canada)
 
Join Date: Nov 2005
Posts: 3,439
VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!
Re: PC Freezing, please help.

Please try and complete the following scans as described here (SpyBot and Ad-Aware):
Read This First - IMPORTANT Instructions


Each scan will take around five (5) minutes each. Thereafter, let us know if you think your PC is up to doing much longer scans using online tools or downloads.



You could initially try:

[Internet Explorer required]
Go to Kaspersky website: www.kaspersky.com/virusscanner and click on the Kaspersky Online Scanner BUTTON/BOX.

You will be prompted to install an ActiveX component from Kaspersky, Click Yes.
  • The program will launch and then begin downloading the latest definition files:
  • Once the files have been downloaded click on NEXT
  • Now click on Scan Settings
  • In the scan settings make sure that the following are selected:
    • Scan using the following Anti-Virus database:
      - Extended (if available otherwise Standard)
    • Scan Options:
      - Scan Archives
      - Scan Mail Bases
  • Click OK
  • Now under select a target to scan:
    • Select My Computer
  • This program will start and scan your system.
  • The scan will take a while so be patient and let it run.
  • Once the scan is complete it will display if your system has been infected.
    • Now click on the Save as Text button:
  • Save the file to your desktop.
  • Copy and paste that information in your next post.
__________________
Vincent P

MALWARE: READ FIRST Procedures:
|_ SpyBot V1.5 _|_ HijackThis LOG __V2.0.2 _|


__
ASAP: promoting a high standard and quality of security support no matter where you seek help.

Quote:
SAFER SURFING TOOLS (IE/FF **FREE** browser addons):
Linkscanner + WOT (Web of Trust) + SiteAdvisor (suggest at least two but not necessarily all)
Quote:
Tell me and I forget; show me and I remember; involve me and I understand.
There are no foolish questions, the only thing foolish is not asking if you're unsure of something.
Never ASSUME any detail because it can make an ASS out of U and ME... (ASS/U/ME ).
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #3 (permalink)  
Old 20-05-2006, 08:35 PM
Newbie
D-A-L Newbie
 
Join Date: May 2006
Posts: 6
Jamesba Is a beginner here at D-A-L
Re: PC Freezing, please help.

Thanks. Done as advised, spybot got rid of a few things but think these were just tracking cookies. Kaspersky came up with nothing. AdAware get halfway through and freezes. It's always when it's 'deep scanning registry files', software/microsoft/shared dlls.....
Not sure if this means anything. This all began at the same time as i was getting an error msg - 'NMBgMonitor.exe failed to initialise application.' not sure if this is connected.
Hope this helps.
Thanks again.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #4 (permalink)  
Old 20-05-2006, 09:43 PM
VopThis's Avatar
Senior Member (Canada)
 
Join Date: Nov 2005
Posts: 3,439
VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!
Re: PC Freezing, please help.

Quote:
'NMBgMonitor.exe failed to initialise application.' not sure if this is connected.
That might normally mean that a system file is missing or corrupted. Was that the exact message? Were there any other files referred to.




Lets try one more malware scan:

Please download WebRoot SpySweeper from HERE (It's a 14 day trial):
http://www.webroot.com/consumer/prod...de=af1&rc=3597
OR
http://www.webroot.com/shoppingcart/...php?bjpc=64011

  • Click the Free Trial link to download the program.
  • Double-click the file to install it as follows:
    • Click "Next", read the agreement, Click "Next"
    • Choose "Custom" click "Next".
    • Leave the default installation directory as it is, then click "Next".
    • UNcheck "Run SpySweeper at Windows Startup" and "Add Sweep for Spyware to Windows Explorer Context Menu". Click "Next".
    • On the following screen you can leave the e-mail address field blank, if you wish. Click "Next".
    • Finally, click "Install"
  • Once the program is installed, it will open.
  • It will prompt you to update to the latest definitions, click Yes.

    Once the definitions are installed, click Options on the left side.
    Click the Sweep Options tab.
    Under What to Sweep please put a check next to the following:
    • Sweep Memory
    • Sweep Registry -----> Might want to leave that out on initial scan
    • Sweep Cookies
    • Sweep All User Accounts
    • Enable Direct Disk Sweeping
    • Sweep Contents of Compressed Files
    • Sweep for Rootkits
    • Please UNCHECK Do not Sweep System Restore Folder.

    Disable SpySweeper Shields
    • Click Shields on the left.
    • Click Internet Explorer and uncheck all items.
    • Click Windows System and uncheck all items.
    • Click Startup Programs and uncheck all items.
  • Once the definitions are installed and shields disabled, click Sweep Now on the left side.
  • Click the Start button.
  • When it's done scanning, click the Next button.
  • Make sure everything has a check next to it, then click the Next button.
  • It will remove all of the items found.
  • Click Session Log in the upper right corner, copy everything in that window.
  • Click the Summary tab and click Finish.
  • Paste the contents of the session log you copied into your next reply.


REBOOT and Post the SpySweeper session log here along with a fresh HiJackThis log.
__________________
Vincent P

MALWARE: READ FIRST Procedures:
|_ SpyBot V1.5 _|_ HijackThis LOG __V2.0.2 _|


__
ASAP: promoting a high standard and quality of security support no matter where you seek help.

Quote:
SAFER SURFING TOOLS (IE/FF **FREE** browser addons):
Linkscanner + WOT (Web of Trust) + SiteAdvisor (suggest at least two but not necessarily all)
Quote:
Tell me and I forget; show me and I remember; involve me and I understand.
There are no foolish questions, the only thing foolish is not asking if you're unsure of something.
Never ASSUME any detail because it can make an ASS out of U and ME... (ASS/U/ME ).
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #5 (permalink)  
Old 21-05-2006, 12:10 AM
Newbie
D-A-L Newbie
 
Join Date: May 2006
Posts: 6
Jamesba Is a beginner here at D-A-L
Re: PC Freezing, please help.

Thanks for bearing with me on this! The error msg was just as i put it, but i looked online and think it was something to do with nero, so i uninstalled it and i havent had the error msg since. Spysweeper has done as AdAware did, just stops. It's still working as the icon is still moving but it's not counting up the files (hope that makes sense). The file its stuck on is c:\windows\system32\mui\0009\hhctrlui.dll.
It's found 52 items so far, all spyware cookies.
Thanks
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #6 (permalink)  
Old 21-05-2006, 12:11 AM
Newbie
D-A-L Newbie
 
Join Date: May 2006
Posts: 6
Jamesba Is a beginner here at D-A-L
Re: PC Freezing, please help.

It just started again so ignore that.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #7 (permalink)  
Old 21-05-2006, 12:21 AM
Newbie
D-A-L Newbie
 
Join Date: May 2006
Posts: 6
Jamesba Is a beginner here at D-A-L
Re: PC Freezing, please help.

********
23:49: | Start of Session, 20 May 2006 |
23:49: Spy Sweeper started
23:49: Sweep initiated using definitions version 682
23:49: Starting Memory Sweep
23:54: Memory Sweep Complete, Elapsed Time: 00:04:47
23:54: Starting Registry Sweep
23:54: Registry Sweep Complete, Elapsed Time:00:00:09
23:54: Starting Cookie Sweep
23:54: Found Spy Cookie: 80503492 cookie
23:54: james edmondson@80503492[1].txt (ID = 2013)
23:54: Found Spy Cookie: about cookie
23:54: james edmondson@about[2].txt (ID = 2037)
23:54: Found Spy Cookie: yieldmanager cookie
23:54: james edmondson@ad.yieldmanager[2].txt (ID = 3751)
23:54: Found Spy Cookie: adlegend cookie
23:54: james edmondson@adlegend[1].txt (ID = 2074)
23:54: Found Spy Cookie: adrevolver cookie
23:54: james edmondson@adrevolver[2].txt (ID = 2088)
23:54: Found Spy Cookie: addynamix cookie
23:54: james edmondson@ads.addynamix[1].txt (ID = 2062)
23:54: Found Spy Cookie: cd freaks cookie
23:54: james edmondson@ads.cdfreaks[1].txt (ID = 2371)
23:54: Found Spy Cookie: pointroll cookie
23:54: james edmondson@ads.pointroll[2].txt (ID = 3148)
23:54: Found Spy Cookie: adserver cookie
23:54: james edmondson@adserver[1].txt (ID = 2141)
23:54: Found Spy Cookie: adultfriendfinder cookie
23:54: james edmondson@adultfriendfinder[2].txt (ID = 2165)
23:54: Found Spy Cookie: anm.co.uk cookie
23:54: james edmondson@anm.co[2].txt (ID = 2223)
23:54: Found Spy Cookie: apmebf cookie
23:54: james edmondson@apmebf[2].txt (ID = 2229)
23:54: Found Spy Cookie: falkag cookie
23:54: james edmondson@as-us.falkag[2].txt (ID = 2650)
23:54: Found Spy Cookie: ask cookie
23:54: james edmondson@ask[1].txt (ID = 2245)
23:54: Found Spy Cookie: a cookie
23:54: james edmondson@a[1].txt (ID = 2027)
23:54: Found Spy Cookie: banners cookie
23:54: james edmondson@banners[1].txt (ID = 2282)
23:54: Found Spy Cookie: bizrate cookie
23:54: james edmondson@bizrate[1].txt (ID = 2308)
23:54: Found Spy Cookie: bluestreak cookie
23:54: james edmondson@bluestreak[2].txt (ID = 2314)
23:54: Found Spy Cookie: burstnet cookie
23:54: james edmondson@burstnet[2].txt (ID = 2336)
23:54: Found Spy Cookie: casalemedia cookie
23:54: james edmondson@casalemedia[1].txt (ID = 2354)
23:54: james edmondson@cdfreaks[2].txt (ID = 2370)
23:54: Found Spy Cookie: clickbank cookie
23:54: james edmondson@clickbank[1].txt (ID = 2398)
23:54: james edmondson@club.cdfreaks[1].txt (ID = 2371)
23:54: Found Spy Cookie: 2o7.net cookie
23:54: james edmondson@cnn.122.2o7[1].txt (ID = 1958)
23:54: Found Spy Cookie: customer cookie
23:54: james edmondson@customer[1].txt (ID = 2481)
23:54: Found Spy Cookie: directtrack cookie
23:54: james edmondson@directtrack[1].txt (ID = 2527)
23:54: Found Spy Cookie: touchclarity cookie
23:54: james edmondson@easyjet.touchclarity[1].txt (ID = 3566)
23:54: Found Spy Cookie: ru4 cookie
23:54: james edmondson@edge.ru4[1].txt (ID = 3269)
23:54: Found Spy Cookie: adbureau cookie
23:54: james edmondson@etype.adbureau[2].txt (ID = 2060)
23:54: Found Spy Cookie: firstchoice cookie
23:54: james edmondson@firstchoice[1].txt (ID = 2678)
23:54: james edmondson@firstchoice[2].txt (ID = 2678)
23:54: james edmondson@firstdirect.touchclarity[1].txt (ID = 3566)
23:54: james edmondson@ford.touchclarity[1].txt (ID = 3566)
23:54: james edmondson@gm.touchclarity[1].txt (ID = 3566)
23:54: Found Spy Cookie: humanclick cookie
23:54: james edmondson@hc2.humanclick[1].txt (ID = 2810)
23:54: Found Spy Cookie: hotlog cookie
23:54: james edmondson@hotlog[2].txt (ID = 2801)
23:54: james edmondson@hsbc.touchclarity[1].txt (ID = 3566)
23:54: Found Spy Cookie: informit cookie
23:54: james edmondson@informit[2].txt (ID = 2863)
23:54: Found Spy Cookie: webtrends cookie
23:54: james edmondson@m.webtrends[1].txt (ID = 3669)
23:54: Found Spy Cookie: maxserving cookie
23:54: james edmondson@maxserving[2].txt (ID = 2966)
23:54: james edmondson@mobilepartners.directtrack[1].txt (ID = 2528)
23:54: Found Spy Cookie: outster cookie
23:54: james edmondson@outster[1].txt (ID = 3103)
23:54: james edmondson@partygaming.122.2o7[1].txt (ID = 1958)
23:54: Found Spy Cookie: partypoker cookie
23:54: james edmondson@partypoker[2].txt (ID = 3111)
23:54: james edmondson@pbh.adbureau[2].txt (ID = 2060)
23:54: james edmondson@pcworld.about[1].txt (ID = 2038)
23:54: Found Spy Cookie: pricegrabber cookie
23:54: james edmondson@pcworld.pricegrabber[1].txt (ID = 3186)
23:54: james edmondson@pricegrabber[2].txt (ID = 3185)
23:54: Found Spy Cookie: questionmarket cookie
23:54: james edmondson@questionmarket[2].txt (ID = 3217)
23:54: Found Spy Cookie: realmedia cookie
23:54: james edmondson@realmedia[2].txt (ID = 3235)
23:54: Found Spy Cookie: adjuggler cookie
23:54: james edmondson@rotator.adjuggler[1].txt (ID = 2071)
23:54: Found Spy Cookie: server.iad.liveperson cookie
23:54: james edmondson@server.iad.liveperson[1].txt (ID = 3341)
23:54: Found Spy Cookie: spylog cookie
23:54: james edmondson@spylog[1].txt (ID = 3415)
23:54: Found Spy Cookie: statcounter cookie
23:54: james edmondson@statcounter[2].txt (ID = 3447)
23:54: Found Spy Cookie: clicktracks cookie
23:54: james edmondson@stats2.clicktracks[2].txt (ID = 2407)
23:54: Found Spy Cookie: tacoda cookie
23:54: james edmondson@tacoda[1].txt (ID = 6444)
23:54: james edmondson@theaa.touchclarity[1].txt (ID = 3566)
23:54: Found Spy Cookie: tribalfusion cookie
23:54: james edmondson@tribalfusion[2].txt (ID = 3589)
23:54: james edmondson@umstreet.adbureau[2].txt (ID = 2060)
23:54: Found Spy Cookie: versiontracker cookie
23:54: james edmondson@versiontracker[1].txt (ID = 3636)
23:54: Found Spy Cookie: burstbeacon cookie
23:54: james edmondson@www.burstbeacon[2].txt (ID = 2335)
23:54: Found Spy Cookie: co cookie
23:54: james edmondson@www.firstchoice.co[2].txt (ID = 2428)
23:54: Found Spy Cookie: stopzilla cookie
23:54: james edmondson@www.stopzilla[1].txt (ID = 3466)
23:54: Found Spy Cookie: xiti cookie
23:54: james edmondson@xiti[1].txt (ID = 3717)
23:54: james edmondson@z1.adserver[1].txt (ID = 2142)
23:54: Found Spy Cookie: zedo cookie
23:54: james edmondson@zedo[2].txt (ID = 3762)
23:54: Cookie Sweep Complete, Elapsed Time: 00:00:04
23:54: Starting File Sweep
23:54: Found Adware: bullguard popup ad
23:54: c:\documents and settings\all users\start menu\programs\bullguard (3 subtraces) (ID = -2147481289)
00:11: bullguard.lnk (ID = 52019)
00:14: Found System Monitor: potentially rootkit-masked files
00:14: pocket mechanic arm xscale ppc2002 wm2003.exe (ID = 0)
00:14: pocket mechanic arm xscale ppc2002 wm2003.exe (ID = 0)
00:17: Warning: File not found
00:18: Warning: Invalid Stream
00:18: File Sweep Complete, Elapsed Time: 00:23:41
00:18: Full Sweep has completed. Elapsed time 00:28:45
00:18: Traces Found: 73
00:18: Removal process initiated
00:19: Quarantining All Traces: potentially rootkit-masked files
00:19: potentially rootkit-masked files is in use. It will be removed on reboot.
00:19: pocket mechanic arm xscale ppc2002 wm2003.exe is in use. It will be removed on reboot.
00:19: pocket mechanic arm xscale ppc2002 wm2003.exe is in use. It will be removed on reboot.
00:19: Quarantining All Traces: bullguard popup ad
00:19: Quarantining All Traces: 2o7.net cookie
00:19: Quarantining All Traces: 80503492 cookie
00:19: Quarantining All Traces: a cookie
00:19: Quarantining All Traces: about cookie
00:19: Quarantining All Traces: adbureau cookie
00:19: Quarantining All Traces: addynamix cookie
00:19: Quarantining All Traces: adjuggler cookie
00:19: Quarantining All Traces: adlegend cookie
00:19: Quarantining All Traces: adrevolver cookie
00:19: Quarantining All Traces: adserver cookie
00:19: Quarantining All Traces: adultfriendfinder cookie
00:19: Quarantining All Traces: anm.co.uk cookie
00:19: Quarantining All Traces: apmebf cookie
00:19: Quarantining All Traces: ask cookie
00:19: Quarantining All Traces: banners cookie
00:19: Quarantining All Traces: bizrate cookie
00:19: Quarantining All Traces: bluestreak cookie
00:19: Quarantining All Traces: burstbeacon cookie
00:19: Quarantining All Traces: burstnet cookie
00:19: Quarantining All Traces: casalemedia cookie
00:19: Quarantining All Traces: cd freaks cookie
00:19: Quarantining All Traces: clickbank cookie
00:19: Quarantining All Traces: clicktracks cookie
00:19: Quarantining All Traces: co cookie
00:19: Quarantining All Traces: customer cookie
00:19: Quarantining All Traces: directtrack cookie
00:19: Quarantining All Traces: falkag cookie
00:19: Quarantining All Traces: firstchoice cookie
00:19: Quarantining All Traces: hotlog cookie
00:19: Quarantining All Traces: humanclick cookie
00:19: Quarantining All Traces: informit cookie
00:19: Quarantining All Traces: maxserving cookie
00:19: Quarantining All Traces: outster cookie
00:19: Quarantining All Traces: partypoker cookie
00:19: Quarantining All Traces: pointroll cookie
00:19: Quarantining All Traces: pricegrabber cookie
00:19: Quarantining All Traces: questionmarket cookie
00:19: Quarantining All Traces: realmedia cookie
00:19: Quarantining All Traces: ru4 cookie
00:19: Quarantining All Traces: server.iad.liveperson cookie
00:19: Quarantining All Traces: spylog cookie
00:19: Quarantining All Traces: statcounter cookie
00:19: Quarantining All Traces: stopzilla cookie
00:19: Quarantining All Traces: tacoda cookie
00:19: Quarantining All Traces: touchclarity cookie
00:19: Quarantining All Traces: tribalfusion cookie
00:19: Quarantining All Traces: versiontracker cookie
00:19: Quarantining All Traces: webtrends cookie
00:19: Quarantining All Traces: xiti cookie
00:19: Quarantining All Traces: yieldmanager cookie
00:19: Quarantining All Traces: zedo cookie
00:19: Removal process completed. Elapsed time 00:00:16
********
23:48: | Start of Session, 20 May 2006 |
23:48: Spy Sweeper started
23:48: Sweep initiated using definitions version 682
23:48: Starting Memory Sweep
23:49: Sweep Canceled
23:49: Memory Sweep Complete, Elapsed Time: 00:00:24
23:49: Traces Found: 0
23:49: | End of Session, 20 May 2006 |
********
23:44: | Start of Session, 20 May 2006 |
23:44: Spy Sweeper started
23:46: Your spyware definitions have been updated.
23:48: | End of Session, 20 May 2006 |
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #8 (permalink)  
Old 21-05-2006, 02:19 AM
VopThis's Avatar
Senior Member (Canada)
 
Join Date: Nov 2005
Posts: 3,439
VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!
Re: PC Freezing, please help.

Does Ad-Aware still freeze up?
__________________
Vincent P

MALWARE: READ FIRST Procedures:
|_ SpyBot V1.5 _|_ HijackThis LOG __V2.0.2 _|


__
ASAP: promoting a high standard and quality of security support no matter where you seek help.

Quote:
SAFER SURFING TOOLS (IE/FF **FREE** browser addons):
Linkscanner + WOT (Web of Trust) + SiteAdvisor (suggest at least two but not necessarily all)
Quote:
Tell me and I forget; show me and I remember; involve me and I understand.
There are no foolish questions, the only thing foolish is not asking if you're unsure of something.
Never ASSUME any detail because it can make an ASS out of U and ME... (ASS/U/ME ).
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #9 (permalink)  
Old 23-05-2006, 07:12 AM
Newbie
D-A-L Newbie
 
Join Date: May 2006
Posts: 6
Jamesba Is a beginner here at D-A-L
Re: PC Freezing, please help.

Hi, yes it's still freezing (AdAware), and when it freezes it slows the whole pc up. It freezes in the same place; Software\Microsoft\Windows\Current Version\Shared DLLs.....
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #10 (permalink)  
Old 27-05-2006, 12:01 AM
VopThis's Avatar
Senior Member (Canada)
 
Join Date: Nov 2005
Posts: 3,439
VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!VopThis is a D-A-L Rockstar!
Re: PC Freezing, please help.

Quote:
It freezes in the same place; Software\Microsoft\Windows\Current Version\Shared DLLs.....
Your freezing is occuring in the 'system registry'. You should try to restore your computer to an earlier time when this issue was not apparent:


http://www.microsoft.com/windowsxp/u...w_03may19.mspx
SECTION: -------> Use System Restore
__________________
Vincent P

MALWARE: READ FIRST Procedures:
|_ SpyBot V1.5 _|_ HijackThis LOG __V2.0.2 _|


__
ASAP: promoting a high standard and quality of security support no matter where you seek help.

Quote:
SAFER SURFING TOOLS (IE/FF **FREE** browser addons):
Linkscanner + WOT (Web of Trust) + SiteAdvisor (suggest at least two but not necessarily all)
Quote:
Tell me and I forget; show me and I remember; involve me and I understand.
There are no foolish questions, the only thing foolish is not asking if you're unsure of something.
Never ASSUME any detail because it can make an ASS out of U and ME... (ASS/U/ME ).
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Thread Tools

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Freezing PC Carlos 2 Windows XP Help 3 07-11-2007 03:47 AM
Freezing!!!!!! P4IsAn0 Windows XP Help 3 30-05-2006 03:43 AM
Freezing mattby1 Windows XP Help 27 15-05-2006 12:26 AM
Freezing!!!!! sicken_it Windows XP Help 9 11-07-2005 05:24 AM
XP freezing vavst4 Windows XP Help 15 03-06-2005 04:45 AM


All times are GMT +1. The time now is 02:49 PM.

Bottom Corner