Jump to content

"Configuring updates" for hours


7Priest7
 Share

Recommended Posts

http://www.walmart.com/catalog/product.do?product_id=5946677

^ Specs of machine

I am running Windows Vista Home Basic

Here is a hijackthis log...

Logfile of HijackThis v1.99.1

Scan saved at 6:19:47 AM, on 11/15/2007

Platform: Unknown Windows (WinNT 6.00.1904)

MSIE: Internet Explorer v7.00 (7.00.6000.16386)

Running processes:

C:\Windows\system32\taskeng.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files\Windows Defender\MSASCui.exe

C:\Windows\System32\s3trayp.exe

C:\Program Files\Apoint2K\Apoint.exe

C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe

C:\Program Files\COMODO\Firewall\cfp.exe

C:\Program Files\Alwil Software\Avast4\ashDisp.exe

C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

C:\Program Files\tinySpell\tinyspell.exe

C:\Program Files\CyberBuddy\CyberBud.exe

C:\Users\Priest.Priests-PC\Documents\PopTray\PopTray.exe

C:\Program Files\Palm\Hotsync.exe

C:\Program Files\PeoplePC\ISP6200\Browser\Bartshel.exe

C:\Program Files\OpenOffice.org 2.2\program\soffice.exe

C:\Program Files\OpenOffice.org 2.2\program\soffice.BIN

C:\Program Files\Apoint2K\Apntex.exe

C:\Program Files\PeoplePC\ISP6200\Browser\PPShared.exe

C:\Program Files\Internet Explorer\ieuser.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Users\Priest.Priests-PC\AppData\Local\Temp\Temp1_hijackthis.zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.peoplepc.com/search

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.everex.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://home.peoplepc.com/search

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O1 - Hosts: ::1 localhost

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [s3Trayp] S3trayp.exe

O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VistaADeck\HDAudioCPL.exe 1

O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe

O4 - HKLM\..\Run: [sMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe

O4 - HKLM\..\Run: [COMODO Firewall Pro] "C:\Program Files\COMODO\Firewall\cfp.exe" -s

O4 - HKLM\..\Run: [bart Station] C:\Program Files\PeoplePC\ISP6200\BIN\PPCOLink.exe -STATION

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKCU\..\Run: [tinySpell] C:\Program Files\tinySpell\tinyspell.exe

O4 - Startup: HotSync Manager.lnk = ?

O4 - Startup: OpenOffice.org 2.2.lnk = C:\Program Files\OpenOffice.org 2.2\program\quickstart.exe

O4 - Global Startup: CyberBuddy.lnk = C:\Program Files\CyberBuddy\CyberBud.exe

O4 - Global Startup: PopTray.lnk = C:\Users\Priest.AlexanderLeonnS\Documents\PopTray\PopTray.exe

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll

O11 - Options group: [iNTERNATIONAL] International*

O13 - Gopher Prefix:

O17 - HKLM\System\CCS\Services\Tcpip\..\{8C574CEC-6E73-46F7-A18F-0EF38AA8246E}: NameServer = 209.244.0.3 209.244.0.4

O17 - HKLM\System\CS1\Services\Tcpip\..\{8C574CEC-6E73-46F7-A18F-0EF38AA8246E}: NameServer = 209.244.0.3 209.244.0.4

O20 - AppInit_DLLs: C:\Windows\system32\guard32.dll

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: COMODO Firewall Pro Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\Firewall\cmdagent.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe

O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)

Now to exactley what happens...

I run the updater program.

It gets the updates.

It restarts.

It takes an hour or more to configure them :(

Why does it take so long?

Are there any fixes?

Please and Thank You

Alex

Link to comment
Share on other sites

No one on here reads Hijack This scans now.

Best to register on this forum.

Firstly it is NOT malware...

It has to be Vista...

The only reason I put the HiJackThis is, in case it is a program that does not like vista...

I put the HiJackThis for people who are capable of responding intelligently!

If you were intelligent enough to read my post you would see comodo.exe(firewall) teatimer.exe(shield to prevent malware) and ashdisp.exe(Virus shield)

Now...

Is there a fix to this Vista problem or not?

Please and Thank You

Alex

P.S. You are the reason I like to ask questions at the ubuntu forums...

Linux users seem to be way more tech savvy

Link to comment
Share on other sites

7Priest7

I run the updater program.

It gets the updates.

It restarts.

It takes an hour or more to configure them

Which are classic symptoms of malware.

You don't state which updater, I'm guessing windows update but you haven't been specific.

You also have a number of lines with reference to files missing such as

O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

The only persons likely to know whether those lines are relevant to the problem, are those who do regularly check for malware and know how to correctly interpret a Hijackthis log, such as the experts at the malware forums.

Link to comment
Share on other sites

No one on here reads Hijack This scans now.

Best to register on this forum.

Firstly it is NOT malware...

It has to be Vista...

The only reason I put the HiJackThis is, in case it is a program that does not like vista...

I put the HiJackThis for people who are capable of responding intelligently!

If you were intelligent enough to read my post you would see comodo.exe(firewall) teatimer.exe(shield to prevent malware) and ashdisp.exe(Virus shield)

Now...

Is there a fix to this Vista problem or not?

Please and Thank You

Alex

P.S. You are the reason I like to ask questions at the ubuntu forums...

Linux users seem to be way more tech savvy

There is NO NEED whatsoever to come on the forum and be extremely rude. I saw the hijack this log and automatically directed you to a forum where people are qualified to read these logs. I don't think that you are going the right way about things if you expect people to help you. So, it seems that I am not intelligent enough for you, I would suggest that you are not intelligent enough to be polite to those who offer help. Why not visit one of these forums where everyone is so intelligent and tech savvy as you call it. All of us on here are intelligent and 'tech savvy' enough to know that a firewall and Anti Malware programs DO NOT guarantee freedom from Malware. These programs are only as effective as their latest update, and can easily fall behind the Malware writers.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue. Privacy Policy