googlefloob
Posts: 12 +0
for 3 days my internet speed on my laptop has been extremely slow and very fast on the other computers in my home. i have exhausted many efforts to fix this issue including: scanning / removing many files using malware scanners like Malwarebytes, AVG, etc. i have cleaned the registry with various cleaning programs, i have removed all temporary files, cleared history. i have tried pretty much everything so i am really desperate for help. i have scanned the file with Hijack This and i have included the log file. if it makes any difference, there are 11 svchost.exe processes running at the moment and most lead to the same file location so i think this is a major issue. thank you so much for the help. ='/
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:02:47 PM, on 8/2/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18372)
Boot mode: Normal
Running processes:
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\WLTRYSVC.EXE
C:\Windows\System32\bcmwltry.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
C:\Program Files\CommRA\CommRA.exe
C:\Program Files\IObit\IObit Security 360\IS360srv.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Windows\System32\SmartAssemblyHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Sandboxie\SbieCtrl.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\No-IP\DUC20.exe
C:\Downloads\jdk\bin\javaw.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
C:\Program Files\Sandboxie\SbieSvc.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Windows\System32\alg.exe
C:\Windows\system32\taskmgr.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Opera\opera.exe
C:\Windows\system32\msiexec.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\TrendMicro\Trend Micro\HiJackThis\HiJackThis.exe
C:\Windows\system32\SearchIndexer.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.pctools.com/mrc/fix_homepage/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.pctools.com/mrc/fix_homepage/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program
Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Browser Defender BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program
Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O2 - BHO: Street-Ads Browser Enhancer nplsp - {2D317AE0-6595-428A-9365-2361CDE6E167} -
C:\Windows\system32\nplsp.dll
O2 - BHO: Sky-Banners Browser Enhancer rplsp - {69A4616D-43A3-498F-9867-CEDBA8E741D7}
- C:\Windows\system32\rplsp.dll (file missing)
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program
Files\AOL\AIM Toolbar 5.0\aoltb.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} -
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program
Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -
C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E}
- C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} -
C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: AIM Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program
Files\AOL\AIM Toolbar 5.0\aoltb.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program
Files\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} -
C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O4 - HKLM\..\Run: [Windows Defender] "%ProgramFiles%\Windows Defender\MSASCui.exe" -
hide
O4 - HKLM\..\Run: [SynTPEnh] "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0
\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0
\AdobeARM.exe"
O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
O4 - HKLM\..\Run: [ECenter] "c:\dell\E-Center\EULALauncher.exe"
O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support
Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKLM\..\Run: [SmartAssemblyHelper] "C:\Windows\system32\SmartAssemblyHelper.exe"
O4 - HKLM\..\Run: [sta] rundll32 "rplsp.dll",,Run
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java
Update\jusched.exe"
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [SandboxieControl] "C:\Program Files\Sandboxie\SbieCtrl.exe"
O4 - HKCU\..\Run: [swg] "C:\Program
Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-18\..\Run: [Mbutaludejemilap] rundll32.exe "C:\Windows\system32
\config\systemprofile\AppData\Local\KBDape.dll",Startup (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Mbutaludejemilap] rundll32.exe "C:\Windows\system32
\config\systemprofile\AppData\Local\KBDape.dll",Startup (User 'Default user')
O4 - Startup: No-IP DUC.lnk = C:\Program Files\No-IP\DUC20.exe
O4 - Startup: SDK Tray Menu.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line
Detect\DLG.exe
O4 - Global Startup: NETGEAR WG111v3 Smart Wizard.lnk = C:\Program
Files\NETGEAR\WG111v3\WG111v3.exe
O4 - Global Startup: QuickSet.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3
\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} -
C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49}
- C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: AIM Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program
Files\AOL\AIM Toolbar 5.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1
\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\tigbdte.dll
O15 - Trusted Zone: scanner.novirusthanks.org
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) -
http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} -
http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} -
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program
Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-
BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common
Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. -
C:\Windows\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program
Files\Bonjour\mDNSResponder.exe
O23 - Service: Browser Defender Update Service - Unknown owner - C:\Program
Files\Spyware Doctor\BDT\BDTUpdateService.exe
O23 - Service: CommViewAgent - TamoSoft - C:\Program Files\CommRA\CommRA.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program
Files\DellSupport\brkrsvc.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program
Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation -
C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: IS360service - IObit - C:\Program Files\IObit\IObit Security 360
\IS360srv.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio
Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program
Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE
Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Sandboxie Service (SbieSvc) - tzuk - C:\Program
Files\Sandboxie\SbieSvc.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program
Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program
Files\Spyware Doctor\pctsSvc.exe
O23 - Service: SupportSoft Sprocket Service (dellsupportcenter)
(sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support
Center\bin\sprtsvc.exe
O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program
Files\TeamViewer\Version5\TeamViewer_Service.exe
O23 - Service: ThreatFire - PC Tools - C:\Program Files\Spyware
Doctor\TFEngine\TFService.exe
O23 - Service: UnrealIRCd - none - C:\Program Files\Unreal3.25\wircd.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner -
C:\Windows\System32\WLTRYSVC.EXE
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32
\DRIVERS\xaudio.exe
--
End of file - 12781 bytes