Tech Support Guy banner
Status
Not open for further replies.
1 - 19 of 19 Posts

·
Registered
Joined
·
8 Posts
Discussion Starter · #1 ·
Hi all,

New to this forum!

My PC takes an absoulte age to start and its driving me crazy!

I'm running Vista and when the PC boots, it I think that I get the bios, then the bar that swishs across the bottom does its thing. The screen then goes blank for about 10 - 15 minutes with the harddrive light just flickering every now and again, before kicking into the OS.

While I'm working on the PC the harddrive light is usually on permenantly as well, which doesnt seem right to me....even though I only have a few applications open.

I have uninstalled a few things such as skype, napster etc and took them out using hijackthis, but as I've reached the limit of my PC knowledge (and may have surpassed it!!) I'm looking for some help please!

Also for some reason I cant attach a hijackthis log file for you guys to have a look through, the upload says its an invalid file!

Many thanks in anticipation.

WS
 

·
Registered
Joined
·
14,142 Posts
Did the slowdown happen suddenly or has it been a gradual deterioration?
You can copy & paste the HJT log into your next post.
 

·
Registered
Joined
·
8 Posts
Discussion Starter · #4 ·
Hi Mark,

Many thanks for your response. It happened a while ago and I think it was pretty quick to slow down. I havent used this PC in anger for a couple of months. But the problem happened circa 12 months ago!


Shall I copy the hijack report into this section?
 

·
Registered
Joined
·
14,142 Posts
Yes, just copy & paste it into your next post.
 

·
Registered
Joined
·
8 Posts
Discussion Starter · #6 ·
Hi Mark

Prior to running the report, I have taken a couple of files out using hijakthis and the PC is booting up quicker, but would appreciate your view on the below to see if there is anything that can be addressed to make it go faster?

The report is as follows:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:14:55, on 11/11/2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v7.00 (7.00.6002.18005)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Virgin Media\Security\rps.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Virgin Media\Service Manager\ServiceManager.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\BitTorrent\BitTorrent.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Virgin Media\Service Manager\ServiceManagerComHandler.exe
C:\Program Files\Safari\Safari.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
C:\Program Files\Mozilla Firefox\firefox.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=73&bd=Pavilion&pf=laptop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=73&bd=Pavilion&pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_GB&c=73&bd=Pavilion&pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://uk.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://uk.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://uk.search.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
R3 - URLSearchHook: (no name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ServiceManager.exe] "C:\Program Files\Virgin Media\Service Manager\ServiceManager.exe" /AUTORUN
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [TurboKey] C:\Program Files\Race The World (TM)\turbokey.exe
O4 - HKLM\..\Run: [NapsterShell] C:\Program Files\Napster\napster.exe /systray
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\BitTorrent.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O20 - AppInit_DLLs:
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: PDAgent - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk10\PDAgent.exe
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk10\PDEngine.exe
O23 - Service: Virgin Media Security (Radialpoint Security Services) - Virgin Media - C:\Program Files\Virgin Media\Security\RpsSecurityAwareR.exe
O23 - Service: RadialpointIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\Virgin Media\Security\AVG\Identity Protection\agent\Bin\AVGIDSAgent.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Virgin Media Security Firewall (RP_FWS) - Virgin Media - C:\Program Files\Virgin Media\Security\Fws.exe
O23 - Service: ServicepointService - Radialpoint Inc. - C:\Program Files\Virgin Media\Service Manager\ServicepointService.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 7446 bytes
 

·
Registered
Joined
·
14,142 Posts
What entries did you remove? Open HijackThis, and click on "View the list of Backups". Copy and Paste the items you removed into your next post. Please do not make any further deletions until instructed, we need to see exactly what is being done in order to give you the best help possible.

Flavallee will take it from here as I do not have the appropriate permission to make any alterations to your HJT log. There are some more entries that need to be removed but please wait for Flavallee's instructions.
 

·
Trusted Advisor
Joined
·
85,507 Posts
What exactly did you mean by this comment?

Prior to running the report, I have taken a couple of files out using hijakthis and the PC is booting up quicker

What did you do?

---------------------------------------------------------

Start HiJackThis, but don't run a scan.

Click on the "Open The Misc Tools Section" button.

Click on the "Open Uninstall Manager" button.

Click on the "Save List" button.

Save the "uninstall_list.txt" file somewhere.

It'll then open in Notepad.

Return here to your thread, then copy-and-paste the entire file here.

---------------------------------------------------------
 

·
Registered
Joined
·
14,142 Posts
Flavallee, I have already instructed the OP to use the Back ups list in HJT to report back with the entries removed as I knew you would want to see them. Post 7.
 

·
Registered
Joined
·
8 Posts
Discussion Starter · #10 ·
Hi, many thanks for both your help!

Looking back, the list sent was before I partially removed some of the files I sent which included the following:

O4 - HKLM\..\Run: [TurboKey] C:\Program Files\Race The World (TM)\turbokey.exe
O4 - HKLM\..\Run: [NapsterShell] C:\Program Files\Napster\napster.exe /systray
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

The full backup list shows the above plus skype, a program called 'Steam' (associated with Football Manager 2010) and another napster file.

Here's the list from the uninstall manager:

32 Bit HP CIO Components Installer
Activation Assistant for the 2007 Microsoft Office suites
ActiveCheck component for HP Active Support Library
Adobe Acrobat 4.0
Adobe Flash Player 11 Plugin
Adobe Flash Player ActiveX
Adobe Reader 8.3.1
Adobe Shockwave Player 11.5
Apple Application Support
Apple Software Update
BitTorrent
CCleaner
Conexant HD Audio
CutePDF Writer 2.8
DivX Codec
DivX Converter
DivX Player
DivX Plus DirectShow Filters
ESU for Microsoft Vista
Football Manager 2010
GetDiz
Google Update Helper
HDAUDIO Soft Data Fax Modem with SmartCP
HiJackThis
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
HP Active Support Library
HP Active Support Library 32 bit compon
 

·
Registered
Joined
·
8 Posts
Discussion Starter · #11 ·
Hi Just realised that I didnt paste the full uninstalled list....so here it is:


32 Bit HP CIO Components Installer
Activation Assistant for the 2007 Microsoft Office suites
ActiveCheck component for HP Active Support Library
Adobe Acrobat 4.0
Adobe Flash Player 11 Plugin
Adobe Flash Player ActiveX
Adobe Reader 8.3.1
Adobe Shockwave Player 11.5
Apple Application Support
Apple Software Update
BitTorrent
CCleaner
Conexant HD Audio
CutePDF Writer 2.8
DivX Codec
DivX Converter
DivX Player
DivX Plus DirectShow Filters
ESU for Microsoft Vista
Football Manager 2010
GetDiz
Google Update Helper
HDAUDIO Soft Data Fax Modem with SmartCP
HiJackThis
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
HP Active Support Library
HP Active Support Library 32 bit components
HP Customer Experience Enhancements
HP Doc Viewer
HP Easy Setup - Frontend
HP Help and Support
HP Photosmart All-In-One Software 9.0
HP Photosmart Essential 2.0
HP Update
HP User Guides 0057
HP Wireless Assistant
HPAsset component for HP Active Support Library
HPNetworkAssistant
Java(TM) 6 Update 22
Java(TM) SE Runtime Environment 6
K-Lite Codec Pack 5.1.0 (Basic)
Kubex Software 3D Home Designer
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Client Profile
Microsoft Office Excel MUI (English) 2007
Microsoft Office Home and Student 2007
Microsoft Office Home and Student 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Standard 2007
Microsoft Office Standard 2007
Microsoft Office Word MUI (English) 2007
Microsoft Visual C++ 2005 Redistributable
Mozilla Firefox (3.5.19)
MSCU for Microsoft Vista
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB941833)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Native Instruments Reaktor v4.1.3.005
NVIDIA Drivers
PerfectDisk 10 Professional
Roxio Activation Module
Roxio Creator Audio
Roxio Creator Basic v9
Roxio Creator Copy
Roxio Creator Data
Roxio Creator EasyArchive
Roxio Creator Tools
Roxio Express Labeler 3
Roxio MyDVD Basic v9
RPS CRT
RPS PerfectDiskStub
RPS RpsCore
Safari
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
SmartAudio
Switch Sound File Converter
Synaptics Pointing Device Driver
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
VC80CRTRedist - 8.0.50727.762
Virgin Media Security
Virgin Media Service Manager 3.7.47
Windows Media Player Firefox Plugin
WinRAR 4.01 (32-bit)
 

·
Trusted Advisor
Joined
·
85,507 Posts
Do the following in the order that they're listed.

--------------------------------------------------------------

Download and SAVE these programs and add-ons:

Adobe Flash Player ActiveX 11.1.102.55

Adobe Reader 10.1.1

Java Runtime Environment 6 Update 29

Mozilla Firefox 8.0.1

Malwarebytes Anti-Malware Free 1.51.2.1300

SUPERAntiSpyware Free 5.0.0.1136

DON'T install any of them yet.

--------------------------------------------------------------

Go to Control Panel - Programs And Features.

Uninstall these programs and add-ons:

Adobe Reader 8.3.1

BitTorrent

CCleaner
(unless you REALLY know how to use it safely)

Java(TM) SE Runtime Environment 6

After you're done, restart the computer.

--------------------------------------------------------------

Install the 6 programs and add-ons that you previously saved.

The first 4 are to update older versions in your computer.

The last 2 are to combat malware, spyware, rogues, hijackers, and any "nasties" that may be in your computer.

After you're done, restart the computer.

--------------------------------------------------------------

Click Start - Run, then type in

%temp%

then click OK.

Click Start - Run, then type in

c:\windows\temp

then click OK.

Once those 2 temp folders appear and you can view their contents, select and delete EVERYTHING that's inside them.

If a few files resist being deleted, that's normal behavior. Leave them alone and delete EVERYTHING else.

After you're done, restart the computer.

--------------------------------------------------------------
 

·
Trusted Advisor
Joined
·
85,507 Posts
Advise when you've completed ALL of my previous instructions, then I'll give you complete instructions for using

Malwarebytes Anti-Malware

SUPERAntiSpyware
.

--------------------------------------------------------

Go to Control Panel - Device Manager.

Click the + in Display Adapters.

What's the description listed there?

Double-click that description to open its properties window, then click the "Driver" tab.

What's the driver date and driver version listed there?

--------------------------------------------------------
 

·
Registered
Joined
·
8 Posts
Discussion Starter · #16 ·
Hi Flavallee,

Many thanks for the help so far. I have almost completed the actions above. The question is, i generally use safari instead of firefox, therefore do i need to update it or is FF a better system?

Concerning your questions, my display adapter is : NVIDIA Geforce 7150M / nForce 630M
The driver date is 03/12/2008
The driver version is 7.15.11.7713

many thanks so far!

Things seem to be running better already!

ian
 

·
Trusted Advisor
Joined
·
85,507 Posts
If Safari is your preferred browser, update it to version 5.1.1 - if you haven't already.

------------------------------------------------------------

The current graphics driver for Windows Vista(32-bit) for the NVIDIA GeForce 7150M/nForce 630M is version 7.15.11.7948, dated 2009.02.11.

Download and SAVE the current version, then close all open windows first, then install it. There's no need to uninstall the older version first.

-------------------------------------------------------------
 

·
Trusted Advisor
Joined
·
85,507 Posts
Glad to hear that, and you're welcome. :) :up:

If you haven't turned the UAC setting back on, let's see a new HiJackThis log.

---------------------------------------------------------
 
1 - 19 of 19 Posts
Status
Not open for further replies.
Top