SHOP PRODUCTS
Houzz Logo Print
kyry

Extremely slow start up

kyry
13 years ago

I have a HP Pavilion dv4-1430us Entertainment Notebook, Intel duo core processor running Win 7 originally Vista but got the upgrade to 7 when it was released. Had this since September 09. I tried removing some of the bloated software it came with but just am never sure exactly what else could be removed. I hope it is ok that I did a HJT scan without being asked to but thought maybe one of you good people could look at it and tell me if there is anything that could be fixed to help out with a speedier start up. Once it is up and running it is quick. I don't use it as my main computer but am now forced to as the desktop is in for diagnostics and probably virus removal. Another question is (which is probably a dumb one) can I leave it plugged in and just close the lid with out shutting down and for how long? This is the only thing that saves me from going through the whole long start up problem. Appreciate any advice. And will get back to ravencajun with the results of my desktop problem.

Thanks

Carol

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 11:53:08 AM, on 4/24/2010

Platform: Windows 7 (WinNT 6.00.3504)

MSIE: Internet Explorer v8.00 (8.00.7600.16385)

Boot mode: Normal

Running processes:

C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe

C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe

C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe

C:\Program Files (x86)\Mozilla Firefox\firefox.exe

C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.verizon.net/central/appmanager/portal/vzcentral#Scene_1

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

F2 - REG:system.ini: UserInit=userinit.exe

O1 - Hosts: ::1 localhost

O2 - BHO: AcroIEHelperStub - (18DF081C-E8AD-4283-A596-FA578C2EBDC3) - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: DigitalPersona Personal Extension - (395610AE-C624-4f58-B89E-23733EA00F9A) - C:\Program Files (x86)\DigitalPersona\Bin\DpOtsPluginIe8.dll

O2 - BHO: Symantec NCO BHO - (602ADB0E-4AFF-4217-8AA1-95DAC4DFA408) - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\coIEPlg.dll

O2 - BHO: Symantec Intrusion Prevention - (6D53EC84-6AAE-4787-AEEE-F4628F01010C) - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\IPSBHO.DLL

O2 - BHO: Google Toolbar Helper - (AA58ED58-01DD-4d91-8333-CF10577473F7) - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll

O2 - BHO: Microsoft Live Search Toolbar Helper - (d2ce3e00-f94a-4740-988e-03dc2f38c34f) - c:\Program Files (x86)\MSN\Toolbar\3.0.0541.0\msneshellx.dll

O2 - BHO: Java(tm) Plug-In 2 SSV Helper - (DBC80044-A445-435b-BC74-9C25C1C588A9) - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

O3 - Toolbar: Microsoft Live Search Toolbar - (1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414) - c:\Program Files (x86)\MSN\Toolbar\3.0.0541.0\msneshellx.dll

O3 - Toolbar: Norton Toolbar - (7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA) - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\coIEPlg.dll

O3 - Toolbar: Google Toolbar - (2318C2B1-4965-11d4-9B18-009027A5CD4F) - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe

O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"

O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html

O16 - DPF: vzTCPConfig - http://www2.verizon.net/help/fios_settings/include/vzTCPConfig.CAB

O16 - DPF: (1851174C-97BD-4217-A0CC-E908F60D5B7A) (Hewlett-Packard Online Support Services) - http://h20364.www2.hp.com/CSMWeb/Customer/cabs/HPISDataManager.CAB

O16 - DPF: (36299202-09EF-4ABF-ADB9-47C599DBE778) (HP Product Detection Control) - https://www.hpwindows7upgrade.arvato.com/north_america/Endcustomer/HPProdDetect.cab

O16 - DPF: (BB21F850-63F4-4EC9-BF9D-565BD30C9AE9) (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab

O18 - Protocol: symres - (AA1061FE-6C41-421F-9344-69640C9732AB) - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\coIEPlg.dll

O20 - Winlogon Notify: !SASWinLogon - C:\Program Files (x86)\SUPERAntiSpyware\SASWINLO.dll

O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe

O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe

O23 - Service: @C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe

O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe

O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe

O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Nalpeiron Licensing Service 64-bit (nlsInterface) - Unknown owner - C:\Windows\system32\nlsInterface.exe (file missing)

O23 - Service: Norton Internet Security - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe

O23 - Service: Recovery Service for Windows - Unknown owner - C:\Program Files (x86)\SMINST\BLService.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe

O23 - Service: TV Background Capture Service (TVBCS) (TVCapSvc) - Unknown owner - C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe

O23 - Service: TV Task Scheduler (TVTS) (TVSched) - Unknown owner - C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: Windows Media Player Network Sharing Service (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--

End of file - 10332 bytes

Comments (29)

  • ravencajun Zone 8b TX
    13 years ago
    last modified: 9 years ago

    zep should be along soon and I am sure he can help you with your log, my old eyes made me give up on that these days.

    as to can you just leave the laptop with the lid down yes since that puts it into hibernation you are fine doing that. It is a good idea to fully reboot any pc once a week or so to let everything reset and start fresh, sometimes programs hold on to memory even after you shut them down and at times that memory is not released and reallocated as it should be so when you reboot it takes care of things like that and lets you start fresh.
    But there is no problem with one being in hibernation as long as it is responding properly when you bring it back up.
    In some cases some people have had issues with hibernation and prefer not to use it, it is totally up to you and how your computer handles it.

  • zep516
    13 years ago
    last modified: 9 years ago

    Once it is up and running it is quick.

    Good news there! Let me take a look. I see Norton Anti Virus off the bat. Do you know version it is?

  • Related Discussions

    Extremely slow to load today?

    Q

    Comments (3)
    Thanks gardenerme and Annette. Tonight everything seems back to normal. Maybe I was just being impatient? But it only seemed to happen on GW not on other sites. Oh well, just glad it is working good tonight.
    ...See More

    Dutchman's Pipe vine extremely slow growth

    Q

    Comments (7)
    I planted one about 6 years ago with the same expectations that you had, and was also disappointed. I decided to wait it out and was rewarded. If you can tough it out for another year, maybe two, you will have more pipevine growth than you know what to do with. Think of it as a woody shrub, which is kind of what it is; like them, you don't see the major top growth until the roots have regrown and settled in. Once they have settled in, though, stand back!
    ...See More

    2000 Chevrolet S-10 slow start

    Q

    Comments (2)
    It looks as though the gas gauge is faulty. The truck would not crank at all, even though it registered in between empty and 1/4 of a tank of gas. I took the gas cap off and had someone turn the key to the on position over and over again the I could hear the pump try to suck gas but sounded as though it only had a tiny bit on the bottom of the tank or was unable to access the gas on the bottom of the tank. So, I put a couple of gallons of gas in the tank and it fired right off. I know that the 80's model Chevrolets have similar problems with the gas gauges, I personally have a couple of them that when you get to 1/4 of a tank you are out of gas, however, is this still a common issue with a vehicle this new or could their possibly be something else?
    ...See More

    about to start our extreme low budget diy

    Q

    Comments (12)
    Thank you everyone!! I am super happy with the cabinets it is nice to keep them from the landfill and they are appreciated here!!!! pasigal I hear you 2 little kids can cause extreme havic on a DIY LOL I have 4&6 year old boys who desperately wanted to use the drill to hang the cabinets! not to mention help me paint the chocolate brown wall I decided to attempt! LOL which brings me to my extreme paint colour, I left one the window wall the yellow that is in the pic but since I couldn't match the paint and there was a nice white square left from where the old cabinet was I decided to pain a deep chocolate brown... it is dark! But I love it... Dh and I are the only ones though. DH maybe just so I don't repaint I'm not sure LOL I do like the colour though and think once I have a different stove, my lower cabinets and some counters that are nice... hopefully it will look good and if not its just paint!!! Have a great day everyone. ~Meghan
    ...See More
  • kyry
    Original Author
    13 years ago
    last modified: 9 years ago

    It is Norton Internet Security 2009 version 16.8.0.41

  • zep516
    13 years ago
    last modified: 9 years ago

    Did you do the up-grade to Windows 7? or was it done by a tech so to speak.

  • kyry
    Original Author
    13 years ago
    last modified: 9 years ago

    First off thank you Raven for the info.
    I did the upgrading. Just followed the instructions and kept my fingers crossed. Did a backup first. Took about five cd's to do that.

  • zep516
    13 years ago
    last modified: 9 years ago

    I want to see the free space on the "c' Drive.

    Look for the "Computer" in the start menu, use to be My Computer. Windows 7 refers to as "Computer" When you find it in the Start menu double click it, when it opens hold the mouse arrow over "Local Disk" "C" Drive. A little window will pop up, it's telling us how big the drive is and amount of free space.

    Please provide that information.

    When you're done close it, now this time Right click "Computer" choose Properties . Tell me how much RAM (Memory) is being reported.

    Please provide that information as well

  • kyry
    Original Author
    13 years ago
    last modified: 9 years ago

    210 GB free of 283 GB. Ram is 4 GB 2.90 GB usable

  • zep516
    13 years ago
    last modified: 9 years ago

    Good there.

    Double click the hijackthis Icon on the Desktop, Scroll down to ђOpen the Misc Tools section" Click it at the bottom under System tools click "Open Uninstall Manager" over to the right click "Save List" Save it to your Desktop so you may find it, copy and paste it in your next reply..

  • kyry
    Original Author
    13 years ago
    last modified: 9 years ago

    Here goes:
    Acrobat.com
    Acrobat.com
    Activation Assistant for the 2007 Microsoft Office suites
    ActiveCheck component for HP Active Support Library
    Ad-Aware
    Ad-Aware
    Ad-Aware Email Scanner for Outlook
    Adobe AIR
    Adobe AIR
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 10 Plugin
    Adobe Reader 9.3
    Alien Skin Exposure
    Alien Skin Eye Candy 5 Impact
    Alien Skin Eye Candy 5 Nature
    Alien Skin Eye Candy 5 Textures
    Alien Skin Eye Candy 6
    Alien Skin Xenofex 2.0
    Belarc Advisor 8.1
    Color Efex Pro 3.0 Complete
    Compatibility Pack for the 2007 Office system
    Corel Paint Shop Pro Photo X2
    Corel Painter Photo Essentials 4
    Corel Painter Photo Essentials 4
    CyberLink DVD Suite
    CyberLink DVD Suite
    ESU for Microsoft Vista
    Filters Unlimited 2.0.3
    Google Toolbar for Internet Explorer
    Google Toolbar for Internet Explorer
    Google Update Helper
    HiJackThis
    HP Advisor
    HP Common Access Service Library
    HP Customer Experience Enhancements
    HP Doc Viewer
    HP MediaSmart DVD
    HP MediaSmart DVD
    HP MediaSmart SlingPlayer
    HP MediaSmart TV
    HP MediaSmart TV
    HP MediaSmart Webcam
    HP MediaSmart Webcam
    HP MULTIPLE MODEM INSTALLER for VISTA
    HP Quick Launch Buttons
    HP RC Mirror Driver
    HP Support Assistant
    HP Total Care Setup
    HP Update
    HP User Guides 0125
    HP Wireless Assistant
    HPAsset component for HP Active Support Library
    IDT Audio
    IrfanView (remove only)
    Java 2 Runtime Environment, SE v1.4.2_19
    Java(TM) 6 Update 17
    JMicron JMB38X Flash Media Controller
    LabelPrint
    LabelPrint
    Microsoft Live Search Toolbar
    Microsoft Office PowerPoint Viewer 2007 (English)
    Microsoft Silverlight
    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Word 2002
    Microsoft Works
    Microsoft Works 2004 Setup Launcher
    Microsoft Works Suite Add-in for Microsoft Word
    Mozilla Firefox (3.6.3)
    MSXML 4.0 SP2 (KB954430)
    MSXML 4.0 SP2 (KB973688)
    muvee Reveal
    Norton Internet Security
    Paint Shop Pro 7 Anniversary Edition
    PHOTORECOVERY LE
    Power2Go
    Power2Go
    PowerDirector
    PowerDirector
    QLBCASL
    Realtek 8101E/8168/8169 PCI/PCIe Adapters
    Slingbox - Watch Your TV Anywhere
    SlingPlayer
    Spelling Dictionaries Support For Adobe Reader 9
    SpywareBlaster 4.2
    Sqirlz Water Reflections
    SUPERAntiSpyware Free Edition
    Visual C++ 2008 x86 Runtime - (v9.0.30729)
    Visual C++ 2008 x86 Runtime - v9.0.30729.01
    WinZip 12.0

  • ravencajun Zone 8b TX
    13 years ago
    last modified: 9 years ago

    I personally no longer use ad-aware there are more substantial programs now like superantispyware which you have and definitely malwarebytes free, I would go with those 2 over ad-aware.
    good to see you have spywareblaster also.

    How do you like the slingbox? I am a little jealous.

    definitely a couple of old java's in there, zep will probably tell you how to get rid of that and get the newest.

  • zep516
    13 years ago
    last modified: 9 years ago

    Please remove this for now,

    Java 2 Runtime Environment, SE v1.4.2_19

    I would remove these: Is that a paid version? Ad-Aware...

    Ad-Aware
    Ad-Aware
    Ad-Aware Email Scanner for Outlook

    Google Update Helper

    HP Update

  • kyry
    Original Author
    13 years ago
    last modified: 9 years ago

    Have never used slingbox! Is that the one you can watch TV with? Not sure if I will but thought I would keep it just in case. I have kept Adaware only because after I run Superantispyware Adaware always seems to find more. But if the consensus is Malware bytes is better than I have no objection of getting rid of it.

  • zep516
    13 years ago
    last modified: 9 years ago

    Lets remove it for now, it will interfere with any fix in hijackthis if we do any, you can reinstall again if you want it.

  • kyry
    Original Author
    13 years ago
    last modified: 9 years ago

    Do you mean Slingbox or Adaware?

    Java 2 Runtime Environment, SE v1.4.2_19 renoved from add remove programs

    I would remove these: Is that a paid version? Ad-Aware... Free version

    Ad-Aware Removed, but only found 1
    Ad-Aware
    Ad-Aware Email Scanner for Outlook this was remove when I did Adaware.
    Google Update Helper Couldn't find this one and removed Goosgle toolbar for IE by mistake.

    HP Update Removed

  • zep516
    13 years ago
    last modified: 9 years ago

    Slingbox can stay!

    Google Update Helper Couldn't find this one and removed Goosgle toolbar for IE by mistake.

    No problem.

    Please post a fresh Hijackthis log, do a system scan save a log file and post it.

  • kyry
    Original Author
    13 years ago
    last modified: 9 years ago

    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 4:36:49 PM, on 4/24/2010
    Platform: Windows 7 (WinNT 6.00.3504)
    MSIE: Internet Explorer v8.00 (8.00.7600.16385)
    Boot mode: Normal

    Running processes:
    C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
    C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe
    C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.verizon.net/central/appmanager/portal/vzcentral#Scene_1
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    F2 - REG:system.ini: UserInit=userinit.exe
    O1 - Hosts: ::1 localhost
    O2 - BHO: AcroIEHelperStub - (18DF081C-E8AD-4283-A596-FA578C2EBDC3) - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: DigitalPersona Personal Extension - (395610AE-C624-4f58-B89E-23733EA00F9A) - C:\Program Files (x86)\DigitalPersona\Bin\DpOtsPluginIe8.dll
    O2 - BHO: Symantec NCO BHO - (602ADB0E-4AFF-4217-8AA1-95DAC4DFA408) - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\coIEPlg.dll
    O2 - BHO: Symantec Intrusion Prevention - (6D53EC84-6AAE-4787-AEEE-F4628F01010C) - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\IPSBHO.DLL
    O2 - BHO: Microsoft Live Search Toolbar Helper - (d2ce3e00-f94a-4740-988e-03dc2f38c34f) - c:\Program Files (x86)\MSN\Toolbar\3.0.0541.0\msneshellx.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - (DBC80044-A445-435b-BC74-9C25C1C588A9) - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    O3 - Toolbar: Microsoft Live Search Toolbar - (1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414) - c:\Program Files (x86)\MSN\Toolbar\3.0.0541.0\msneshellx.dll
    O3 - Toolbar: Norton Toolbar - (7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA) - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\coIEPlg.dll
    O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
    O9 - Extra button: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C:\Program Files (x86)\Java\jre6\bin\npjpi160_17.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C:\Program Files (x86)\Java\jre6\bin\npjpi160_17.dll
    O16 - DPF: vzTCPConfig - http://www2.verizon.net/help/fios_settings/include/vzTCPConfig.CAB
    O16 - DPF: (1851174C-97BD-4217-A0CC-E908F60D5B7A) (Hewlett-Packard Online Support Services) - http://h20364.www2.hp.com/CSMWeb/Customer/cabs/HPISDataManager.CAB
    O16 - DPF: (36299202-09EF-4ABF-ADB9-47C599DBE778) (HP Product Detection Control) - https://www.hpwindows7upgrade.arvato.com/north_america/Endcustomer/HPProdDetect.cab
    O16 - DPF: (BB21F850-63F4-4EC9-BF9D-565BD30C9AE9) (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
    O18 - Protocol: symres - (AA1061FE-6C41-421F-9344-69640C9732AB) - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\coIEPlg.dll
    O20 - Winlogon Notify: !SASWinLogon - C:\Program Files (x86)\SUPERAntiSpyware\SASWINLO.dll
    O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe
    O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
    O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
    O23 - Service: @C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
    O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
    O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
    O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: Nalpeiron Licensing Service 64-bit (nlsInterface) - Unknown owner - C:\Windows\system32\nlsInterface.exe (file missing)
    O23 - Service: Norton Internet Security - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
    O23 - Service: Recovery Service for Windows - Unknown owner - C:\Program Files (x86)\SMINST\BLService.exe
    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
    O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe
    O23 - Service: TV Background Capture Service (TVBCS) (TVCapSvc) - Unknown owner - C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe
    O23 - Service: TV Task Scheduler (TVTS) (TVSched) - Unknown owner - C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: Windows Media Player Network Sharing Service (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --
    End of file - 9678 bytes

  • zep516
    13 years ago
    last modified: 9 years ago

    Close all browser windows only have hijackthis open. Do A System Scan Only. Place a check mark in the following entries in bold make sure you get them all and no others.

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

    O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe

    Click Fixed Checked.

    Close Hijackthis.

    Reboot

    * Service: HP Health Check Service , we are stopping that service 023------ it's really the only one I can see that might be an issue. It does not remove anything only stops the service from running.

    **** All those (File Missing) are legit in a 64bit operating system the file is really there, Hijackthis has a difficult time listing services.

    Let me know if there is any improvement....

    The only other consideration would be Norton Anti Virus.

  • kyry
    Original Author
    13 years ago
    last modified: 9 years ago

    Followed your instructions. Checked the 3 you suggested,fixed checked Rebooted still about 3 min. to fully boot.

  • zep516
    13 years ago
    last modified: 9 years ago

    Not sure what to tell you here. I don't see anything else..

    Slow boot windows 7, I would Google that. More often then not it's a program or driver issue, while booting it's trying to load a driver or start up program, I just don't see it from here..

  • kyry
    Original Author
    13 years ago
    last modified: 9 years ago

    Zep, thank you so much for all you time and advise. I truly appreciate it.
    Can I ask you about the log I posted at 14:41 particularly the double entries?
    Acrobat.com
    Acrobat.com
    Ad-Aware
    Ad-Aware
    Adobe AIR
    Adobe AIR
    Corel Painter Photo Essentials 4
    Corel Painter Photo Essentials 4
    CyberLink DVD Suite
    CyberLink DVD Suite
    Google Toolbar for Internet Explorer
    Google Toolbar for Internet Explorer
    HP MediaSmart TV
    HP MediaSmart TV
    HP MediaSmart Webcam
    HP MediaSmart Webcam
    LabelPrint
    LabelPrint
    etc?
    Why are there doubles?
    I have to log off for the night, but if you have any more suggestions I will check back tomorrow. Thanks again.
    Carol

  • zep516
    13 years ago
    last modified: 9 years ago

    I don't know.

    But I will Google double entries in add remove.

  • mike_kaiser_gw
    13 years ago
    last modified: 9 years ago

    Did you upgrade to Win7 or do a fresh install? From what I've read, the latter is the better path.

  • kyry
    Original Author
    13 years ago
    last modified: 9 years ago

    I upgraded. I just did what ever the instructions that came with the disc said.
    Zep the only place they show as double is in the HJT log. Not in my add remove programs.

  • zep516
    13 years ago
    last modified: 9 years ago

    kyry,

    The log posted at 14:41 is a list of your add / remove programs, generated from the hijackthis program. It's not the actual Hijackthis log. I always ask for the add / remove list along with the Hijackthis log.

    * If you do not see double entries in your actual add / remove list on your computer, and only see them after Hijackthis generates the list then it's just a glitch with the Hijackthis generation of the list and not a worry. Is that the case?

  • mike_kaiser_gw
    13 years ago
    last modified: 9 years ago

    My suggestion, rather than working through log after log trying to identify what might be wrong, is to backup critical data and do a fresh install of Windows 7.

  • kyry
    Original Author
    13 years ago
    last modified: 9 years ago

    Thank you Mike, but I was a wreck doing it the first time I am a wimp when it comes to this sort of thing. I would love to have a faster start up but maybe will just have to put up with the one I have rather than doing a fresh install. But I really do appreciate your responding to my post.

  • mike_kaiser_gw
    13 years ago
    last modified: 9 years ago

    You know that Windows7 works with your machine. Just make sure you have any critical drivers handy before you start. It should be easy after that; stick in the disc and follow the prompts.

    Just out of curiosity, is this a generic version of Windows7 or some kind of HP branded thing. IMHO the PC manufacturers like to add a bunch of stuff to "help" you but what I've found is that the marginal help it may provide is offset by loaded your machine with a bunch of crapola.

  • kyry
    Original Author
    13 years ago
    last modified: 9 years ago

    Looks like you guessed right Mike. I just got the disc out and it is two disc. The first one HP Upgrade Manager (Insert this disc first). The second Windows 7 Home Premium Upgrade Media ( For use only as an upgrade to a qualifying HP Windows 7 Upgrade option PC)
    "Just make sure you have any critical drivers handy before you start."
    Sorry don't know where the critical drivers might be. See now do you wonder why I would be hesitant about doing a clean install?

  • gamerdude8962_gmail_com
    12 years ago
    last modified: 9 years ago

    Hope you solved it.

Sponsored
Frasure Home Improvements
Average rating: 5 out of 5 stars2 Reviews
Franklin County's Highly Skilled General Contractor