I don't see anything that, in my opinion, could
be causing you problems. There are a few things
that I would correct: first, it seems that you
are running TWO anti-virus programs. To wit,
Avast and Security Essentials. I would suggest,
if you were a client of mine, that you remove one
or the other. Malware Bytes reports that it wants
a reboot; if you have already done that then you
might allow HJT to remove these entries.
Also, you can remove any entry which ends in
"(file missing" - there is at least one. You are
also running a lot of stuff that I just wouldn't
such as Google Desktop, Google Update, Spybot as
a service (I prefer to manually control my
malware programs), Sidebar, Welcome Service and
just any other thing that I don't use constantly
or can use just as easily manually. Probably a
lot of that Toshiba stuff - though I would
research carefully before making any change.
But I see nothing evil.
...Bryce
At 10:09 AM 10/2/2011, you wrote:
>
>
>HI,thanks for your help. Here is the log file I
>copied to email already. yes a few things are
>acting oddly. I figiure Id start with hijack
>this.Ive done virus scans ot much help so far. Thank you.
>
>nLogfile of Trend Micro HijackThis v2.0.4
>Scan saved at 12:41:15 PM, on 9/30/2011
>Platform: Windows Vista SP2 (WinNT 6.00.1906)
>MSIE: Internet Explorer v9.00 (9.00.8112.16421)
>Boot mode: Normal
>
>Running processes:
>C:\Windows\system32\Dwm.exe
>C:\Windows\Explorer.EXE
>C:\Windows\RtHDVCpl.exe
>C:\Program Files\Toshiba\TRCMan\TRCMan.exe
>C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
>C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe
>C:\Program Files\Toshiba\Power Saver\TPwrMain.exe
>C:\Windows\system32\taskeng.exe
>C:\Program Files\Toshiba\SmoothView\SmoothView.exe
>C:\Program Files\Windows Defender\MSASCui.exe
>C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
>C:\Program Files\Toshiba\ConfigFree\NDSTray.exe
>C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
>C:\Program Files\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe
>C:\Program Files\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe
>C:\Program Files\Toshiba\FlashCards\TCrdMain.exe
>C:\Program Files\Alwil Software\Avast5\AvastUI.exe
>C:\Program Files\Common Files\Research In Motion\Auto Update\RIMAutoUpdate.exe
>C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe
>C:\Windows\ehome\ehtray.exe
>C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
>C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
>C:\Program Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
>C:\Windows\system32\wbem\unsecapp.exe
>C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe
>C:\Windows\ehome\ehmsas.exe
>C:\Program Files\Toshiba\ConfigFree\CFSwMgr.exe
>C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
>C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
>C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
>
>R1 - HKCU\Software\Microsoft\Internet
>Explorer\Main,Default_Page_URL =
><http://www.toshibadirect.com/dpdstart>http://www.toshibadirect.com/dpdstart
>R1 - HKCU\Software\Microsoft\Internet
>Explorer\Main,Search Page =
><http://go.microsoft.com/fwlink/?LinkId=54896>http://go.microsoft.com/fwlink/?LinkId=54896
>R0 - HKCU\Software\Microsoft\Internet
>Explorer\Main,Start Page = <http://www.rense.com/>http://www.rense.com/
>R1 - HKLM\Software\Microsoft\Internet
>Explorer\Main,Default_Page_URL =
><http://www.toshibadirect.com/dpdstart>http://www.toshibadirect.com/dpdstart
>R1 - HKLM\Software\Microsoft\Internet
>Explorer\Main,Default_Search_URL =
><http://go.microsoft.com/fwlink/?LinkId=54896>http://go.microsoft.com/fwlink/?LinkId=54896
>R1 - HKLM\Software\Microsoft\Internet
>Explorer\Main,Search Page =
><http://go.microsoft.com/fwlink/?LinkId=54896>http://go.microsoft.com/fwlink/?LinkId=54896
>R0 - HKLM\Software\Microsoft\Internet
>Explorer\Main,Start Page =
><http://go.microsoft.com/fwlink/?LinkId=69157>http://go.microsoft.com/fwlink/?LinkId=69157
>R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
>R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
>R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
>O1 - Hosts: ::1 localhost
>O2 - BHO: Adobe PDF Reader Link Helper -
>{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -
>C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
>O2 - BHO: Spybot-S&D IE Protection -
>{53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
>O2 - BHO: SSVHelper Class -
>{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -
>C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
>O2 - BHO: Google Toolbar Helper -
>{AA58ED58-01DD-4d91-8333-CF10577473F7} -
>C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
>O2 - BHO: SkypeIEPluginBHO -
>{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -
>C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
>O3 - Toolbar: Google Toolbar -
>{2318C2B1-4965-11d4-9B18-009027A5CD4F} -
>C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
>O4 - HKLM\..\Run: [StartCCC] C:\Program
>Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
>O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
>O4 - HKLM\..\Run: [TRCMan] C:\Program Files\TOSHIBA\TRCMan\TRCMan.exe
>O4 - HKLM\..\Run: [Camera Assistant Software]
>"C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe" /start
>O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
>O4 - HKLM\..\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe
>O4 - HKLM\..\Run: [SmoothView]
>%ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
>O4 - HKLM\..\Run: [Windows Defender]
>%ProgramFiles%\Windows Defender\MSASCui.exe -hide
>O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
>O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
>O4 - HKLM\..\Run: [Google Desktop Search]
>"C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
>O4 - HKLM\..\Run: [PCMAgent] "C:\Program
>Files\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe"
>O4 - HKLM\..\Run: [CLMLServer] "C:\Program
>Files\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe"
>O4 - HKLM\..\Run: [00TCrdMain] C:\Program
>Files\TOSHIBA\FlashCards\TCrdMain.exe
>O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
>O4 - HKLM\..\Run: [BlackBerryAutoUpdate]
>C:\Program Files\Common Files\Research In
>Motion\Auto Update\RIMAutoUpdate.exe /background
>O4 - HKLM\..\Run: [Malwarebytes Anti-Malware
>(reboot)] "C:\Program Files\Malwarebytes'
>Anti-Malware\mbam.exe" /runcleanupscript
>O4 - HKLM\..\Run: [Skytel] Skytel.exe
>O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware
>(reboot)] "C:\Program Files\Malwarebytes'
>Anti-Malware\mbam.exe" /runcleanupscript
>O4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXE
>O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
>O4 - HKCU\..\Run: [swg] "C:\Program
>Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
>O4 - HKCU\..\Run: [Google Update]
>"C:\Users\jigsaw\AppData\Local\Google\Update\GoogleUpdate.exe" /c
>O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program
>Files\Spybot - Search & Destroy\TeaTimer.exe
>O4 - HKUS\S-1-5-19\..\Run: [Sidebar]
>%ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
>O4 - HKUS\S-1-5-19\..\Run:
>[WindowsWelcomeCenter] rundll32.exe
>oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
>O4 - HKUS\S-1-5-20\..\Run: [Sidebar]
>%ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
>O4 - Global Startup: Bluetooth Monitor.lnk = ?
>O8 - Extra context menu item: Add to Google
>Photos Screensa&ver - <res://C:>res://C:\Windows\system32\GPhotos.scr/200
>O8 - Extra context menu item: E&xport to
>Microsoft Excel - <res://C:>res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
>O8 - Extra context menu item: Google Sidewiki...
>- <res://C:>res://C:\Program Files\Google\Google
>Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html
>O9 - Extra button: (no name) -
>{08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
>C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
>O9 - Extra 'Tools' menuitem: Sun Java Console -
>{08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
>C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
>O9 - Extra button: Skype Plug-In -
>{898EA8C8-E7FF-479B-8935-AEC46303B9E5} -
>C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
>O9 - Extra 'Tools' menuitem: Skype Plug-In -
>{898EA8C8-E7FF-479B-8935-AEC46303B9E5} -
>C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
>O9 - Extra button: Research -
>{92780B25-18CC-41C8-B9BE-3C9C571A8263} -
>C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
>O9 - Extra button: (no name) -
>{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
>O9 - Extra 'Tools' menuitem: Spybot - Search &
>Destroy Configuration -
>{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
>O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
>O18 - Protocol: skype-ie-addon-data -
>{91774881-D725-4E58-B298-07617B9B86A8} -
>C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
>O18 - Protocol: skype4com -
>{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} -
>C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
>O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
>O22 - SharedTaskScheduler: Component Categories
>cache daemon -
>{8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
>O23 - Service: Agere Modem Call Progress Audio
>(AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
>O23 - Service: Ati External Event Utility - ATI
>Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
>O23 - Service: avast! Antivirus - ALWIL Software
>- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
>O23 - Service: avast! Mail Scanner - ALWIL
>Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
>O23 - Service: avast! Web Scanner - ALWIL
>Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
>O23 - Service: Symantec Lic NetConnect service
>(CLTNetCnService) - Unknown owner - C:\Program
>Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
>O23 - Service: ConfigFree Service - TOSHIBA
>CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
>O23 - Service: FlipShare Service - Unknown owner
>- C:\Program Files\Flip Video\FlipShare\FlipShareService.exe
>O23 - Service: GameConsoleService - WildTangent,
>Inc. - C:\Program Files\TOSHIBA Games\TOSHIBA
>Game Console\GameConsoleService.exe
>O23 - Service: GoogleDesktopManager - Google -
>C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
>O23 - Service: Google Update Service (gupdate)
>(gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
>O23 - Service: Google Update Service (gupdatem)
>(gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
>O23 - Service: Google Software Updater (gusvc) -
>Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
>O23 - Service: InstallDriver Table Manager
>(IDriverT) - Macrovision Corporation -
>C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
>O23 - Service: Jumpstart Wifi Protected Setup
>(jswpsapi) - Atheros Communications, Inc. -
>C:\Program Files\Jumpstart\jswpsapi.exe
>O23 - Service: lxbf_device - - C:\Windows\system32\lxbfcoms.exe
>O23 - Service: pinger - Unknown owner - C:\Toshiba\IVP\ISM\pinger.exe
>O23 - Service: SBSD Security Center Service
>(SBSDWSCService) - Safer Networking Ltd. -
>C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
>O23 - Service: Swupdtmr - Unknown owner - c:\Toshiba\IVP\swupdate\swupdtmr.exe
>O23 - Service: TOSHIBA Navi Support Service
>(TNaviSrv) - TOSHIBA Corporation - C:\Program
>Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
>O23 - Service: TOSHIBA Optical Disc Drive
>Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe
>O23 - Service: TOSHIBA Power Saver (TosCoSrv) -
>TOSHIBA Corporation - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
>O23 - Service: TOSHIBA SMART Log Service -
>TOSHIBA Corporation - C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe
>O23 - Service: Ulead Burning Helper
>(UleadBurningHelper) - Ulead Systems, Inc. -
>C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
>
>--
>End of file - 10726 bytes
>
>--- In
><mailto:simplycomputers2%40yahoogroups.com>simplycomputers2@yahoogroups.com,
>B Welkin <welkinator@...> wrote:
> >
> > OoooKKkkkkay
> >
> > If you want help with HiJackThis here's what you do:
> > Run the HJT program and save a log file.
> > Open the log file and use Edit | Select All
> > Then (still in the log file) Edit | Copy.
> > Now hit Reply to this message and at the top type in something (like,
> > "Hi") then, using your keyboard, press Ctrl - V (that is, you hold
> > down the Ctrl key and press and release the letter "v"). The log file
> > contents should now be in your email.
> >
> > Go ahead and post your reply then we'll help you with just this. But
> > I remember, and it's at the bottom of this post, that you had a
> > keyboard, login, continuos scrolling "it doesn't work anymore"
> > problem. You're now saying the keyboard is fixed? Is this correct?
> >
> > Yours,
> >
> > ...Bryce
> >
> > At 10:55 PM 9/30/2011, you wrote:
> > >Ok. Well what I did come back to list for was help identifing
> > >whats in my hijack this log file,I have it who could take a look and
> > >let me know :-) ?. yes there are some other things going on. Also
> > >fyi, I had some odd keyboard functionig last month and did a restore
> > >and it seemed repaired. My restore now does not show past a few
> > >weeks now. I also recently connected a wifi adapter to the usb port.
> > >It seem to have a few problems( I thought)loading the disk but I
> > >guess it evetually just worked. not long after this the problems
> > >seem to have started. I uninstalled the usb wifi program.
> > >--- In
> > ><mailto:simplycomputers2%40yahoogroups.com><m
> ailto:simplycomputers2%40yahoogroups.com>simplycomputers2@yahoogroups.com,
> > >B Welkin <welkinator@> wrote:
> > > >
> > > > I am sure no one here understands what your Subject line has to do
> > > > with the multiple problems you present.
> > > >
> > > > BUT... to help better please quote EXACTLY the bootup message that
> > > > you refer to as "something about reatec".
> > > >
> > > > In addition, if you have a keyboard problem, which is where I >think<
> > > > this thread started, AND if you will post your laptop model number,
> > > > Ardell or others will give you help in fixing that. Which might then
> > > > be the cure to the login scrolling.
> > >
> > > >
> > > > At 01:46 PM 9/30/2011, you wrote:
> > > > >
> > > > >
> > > > >I forgot to mention,start up has changed .when booting up it says
> > > > >something about realtec and then it asks what system I want to use
> > > > >but only offers vista which I have then gets to password and it is
> > > > >srolling ****. I have to backspace it out and enter password. ???
> > > > >
> > > ><mailto:simplycomputers2%40yahoogroups.com><mailto:simplycomputers2
> > >
> %40yahoogroups.com><mailto:simplycomputers2%40yahoogroups.com>simplycomputers2@yahoogroups.com,
> > > > >"Bill Aycock" <billaycock@> wrote:
> > > > > >
> > > > > > Ardell- The Satellite Laptop is a Toshiba, and replacing the
> > > > > Keyboard is not simple. It looks like a cleaning job is needed.
> > > Or--can he use a USB substitute?
> > > > > >
> > > > > > From: "Ardell Faul" <ardell@>
> > > > > >
> > > > > > > You probably have stuck key, most
> likely the "n" key. At log on, you
> > > > > > > can try tapping it until the scrolling stops, then
> > > backspace until you
> > > > > > > can use the On Screen keyboard. But
> in the long run, you will have to
> > > > > > > replace it. This is usually not
> difficult to do if you have a small
> > > > > > > phillips screwdriver. Just go to
> Ebay and look up your model number
> > > > > > > followed by the word keyboard and you will find one.
> > > > > > >
> > > > > > > On 9/30/2011 9:53 AM, vibroman7 wrote:
> > > > > > >> I just had the strangest problems occur lately,and now
> > > barely limping
> > > > > > >> by. The letter n will not work, I
> had to use o screen keyboard. On
> > > > > > >> password log in it just scrolls
> ****** across it. On boot up it, it
> > > > > > >> doest work correctly any more. I have a satelite laptop with
> > > > > > >> vista.Please need help,thanks.
> >
> >
> > [Non-text portions of this message have been removed]
> >
>
>
[Non-text portions of this message have been removed]
http://tech.groups.yahoo.com/group/simplycomputers2
0 comments:
Post a Comment
Note: Only a member of this blog may post a comment.