Home > Hijackthis Log > HijackThis Log - Csrss.exe & Generic.exe - Slow PC

HijackThis Log - Csrss.exe & Generic.exe - Slow PC

It's taking up to 4 mins to load and be ready from power on and takes a while to respond to open the program menu or shut down a program etc. OriginalFilename : Atiptaxx.exe #:16 [updaterui.exe] FilePath : C:\Program Files\Network Associates\Common Framework\ ProcessID : 1640 ThreadCreationTime : 12-25-2006 6:46:33 AM BasePriority : Normal FileVersion : 3.1.1.184 ProductName : McAfee Common Framework CompanyName My McAfee Antivirus detected generic adware, and, I thought, deleted it, but I've turned the computer on twice after that and the same warning was stated. OriginalFilename : UpdaterUI.exe #:17 [pdvdserv.exe] FilePath : C:\Program Files\CyberLink\PowerDVD\ ProcessID : 1672 ThreadCreationTime : 12-25-2006 6:46:33 AM BasePriority : Normal FileVersion : 6.00.1027 ProductVersion : 6.00.1027 ProductName : PowerDVD CompanyName : his comment is here

FileDescription : iPodService Module InternalName : iPodService LegalCopyright : © 2003-2005 Apple Computer, Inc. If you have not received help after 3 days, please CLICK HERE, and post a link to your log and the date it was originally posted.   Thank you for your FileDescription : PowerDVD RC Service InternalName : PowerDVD RC Service LegalCopyright : Copyright © CyberLink Corp. 1997-2004 OriginalFilename : PDVDSERV.EXE #:18 [realsched.exe] FilePath : C:\Program Files\Common Files\Real\Update_OB\ ProcessID : 1688 ThreadCreationTime As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged

Repeat as many times as necessary to remove each Java version.12. All Rights Reserved. Location: : S-1-5-21-527237240-1993962763-854245398-1003\software\microsoft\windows\currentversion\applets\wordpad\recent file list Description : list of recent files opened using wordpad MRU List Object Recognized! All rights reserved.

That may cause it to stall.Gogo Die Hijacker DieMember ofALLIANCE OF SECURITY ANALYSIS PROFESSIONALSSince 2004Warning My killer dog at work.QUOTEIMPORTANT - Before Posting a HijackThis LogInstructions - on creating a HijackThis GSpot & HJSplit\HJT\HijackThis.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/?fr=fp-yie8R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://login.yahoo.com/config/login_verify...=us&.src=ymR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/.../search/ie.htmlR1 - FileDescription : Framework Service InternalName : Framework LegalCopyright : Copyright© 2000-2003 Networks Associates Technology, Inc. OriginalFilename : CTFMON.EXE #:23 [aim.exe] FilePath : C:\Program Files\AIM95\ ProcessID : 1864 ThreadCreationTime : 12-23-2006 11:48:49 PM BasePriority : Normal FileVersion : 5.9.3861 ProductVersion : 5.9.3861 ProductName : AOL Instant Messenger

You shouldnt have 2 firewalls running. All rights reserved. OriginalFilename : naPrdMgr.exe #:30 [mdm.exe] FilePath : C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\ ProcessID : 400 ThreadCreationTime : 12-23-2006 11:48:57 PM BasePriority : Normal FileVersion : 7.00.9466 ProductVersion : 7.00.9466 ProductName : Microsoft® http://pressf1.pcworld.co.nz/showthread.php?76850-hijackthis-help-computer-soooo-slooooowwww Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dllR3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dllO2 - BHO: &Yahoo!

Your Display Name will now be the only name you have for the forum and, if you used your Username to log in, you will now need to use your Display and/or other countries. or read our Welcome Guide to learn how to use this site. Inc.)IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local========== FireFox ==========FF - prefs.js..browser.startup.homepage: "http://www.google.com/"FF - prefs.js..extensions.enabledItems: [email protected]:1.0FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.0FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.1.2.20100119091315FF - prefs.js..extensions.enabledItems: {9CB58B10-BBB3-4120-9C2B-A1BCB3FEEBFB}:1.9.1FF -

If you have questions about smartphones, please feel free to post them and we will do our best to help you with them. No, create an account now. OriginalFilename : iTunesHelper.exe #:19 [qttask.exe] FilePath : C:\Program Files\QuickTime\ ProcessID : 1764 ThreadCreationTime : 12-23-2006 11:48:48 PM BasePriority : Normal FileVersion : 7.0.2 ProductVersion : QuickTime 7.0.2 ProductName : QuickTime CompanyName Download the latest version of Java Runtime Environment (JRE)2.

O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe" - uninstall this and ALL previous versions of Sun Java. http://pcialliance.org/hijackthis-log/hijackthis-log-very-slow-pc.html Several functions may not work. All rights reserved. OriginalFilename : EXPLORER.EXE #:14 [shstat.exe] FilePath : C:\Program Files\Network Associates\VirusScan\ ProcessID : 1620 ThreadCreationTime : 12-25-2006 6:46:33 AM BasePriority : Normal #:15 [atiptaxx.exe] FilePath : C:\Program Files\ATI Technologies\ATI Control Panel\ ProcessID

IMO it hasn't enough RAM onboard and I've voiced that already. OriginalFilename : AIM.EXE #:24 [msmsgs.exe] FilePath : C:\Program Files\Messenger\ ProcessID : 1876 ThreadCreationTime : 12-23-2006 11:48:49 PM BasePriority : Normal FileVersion : 4.7.3001 ProductVersion : Version 4.7.3001 ProductName : Messenger CompanyName Sign Up This Topic All Content This Topic This Forum Advanced Search Browse Forums Calendar Staff Online Users More Activity All Activity Search More More More All Activity Home Spyware, thiefware, http://pcialliance.org/hijackthis-log/hijackthis-log-pc-slow.html Yes, my password is: Forgot your password?

Logfile of HijackThis v1.99.1 Scan saved at 3:26:59 PM, on 2/18/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16414) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe mDNSResponder.exe 576 Bonjour Service Apple Inc. Register a free account to unlock additional features at BleepingComputer.com Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers.

Click on the link to download 'Windows Offline Installation, Multi-language' and save to your desktop.7.

I have two copys and both are reported   as being 6mb and the dates match.   spybot reports that csrss.exe and winlogon.exe both load from \??\C:\WINDOWS\system32\ which is something that We will probably focus mostly on Android phones, but are open to learning and discussing iOS and Windows phones as well. FileDescription : QuickTime Task InternalName : QuickTime Task LegalCopyright : Copyright Apple Computer, Inc. 1989-2005 OriginalFilename : QTTask.exe #:20 [picasamediadetector.exe] FilePath : C:\Program Files\Picasa2\ ProcessID : 1772 ThreadCreationTime : 12-23-2006 11:48:48 Site Changelog Community Forum Software by IP.Board Sign In Use Facebook Use Twitter Need an account?

When it's finished it will produce a log. nvsvc32.exe 1052 NVIDIA Driver Helper Service, Version 100.95 NVIDIA Corporation svchost.exe 1136 Generic Host Process for Win32 Services Microsoft Corporation wdfmgr.exe 1152 Windows User Mode Driver Manager Microsoft Corporation iPodService.exe 296 The vulnerability appears to have been through one of the vendor’s other clients, however it allowed attackers to access some information on other accounts. check over here Location: : S-1-5-21-527237240-1993962763-854245398-1003\software\realnetworks\realplayer\6.0\preferences Description : list of recent skins in realplayer MRU List Object Recognized!

Location: : S-1-5-21-527237240-1993962763-854245398-1003\software\microsoft\windows media\wmsdk\general Description : windows media sdk Listing running processes »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» #:1 [smss.exe] FilePath : \SystemRoot\System32\ ProcessID : 444 ThreadCreationTime : 12-25-2006 6:46:19 AM BasePriority : Normal #:2 [csrss.exe] OriginalFilename : svchost.exe #:33 [ipodservice.exe] FilePath : C:\Program Files\iPod\bin\ ProcessID : 1600 ThreadCreationTime : 12-23-2006 11:49:11 PM BasePriority : Normal FileVersion : 5.0.1.4 ProductVersion : 5.0.1.4 ProductName : iTunes CompanyName :