PDA

View Full Version : A Plethora of Problems, Please Help!



thedeejay
2012-07-21, 04:44
Hello, I am having a good amount of problems with computer performance and have a good amount of reason to figure that software, perhaps malware or otherwise, is ruining things. My PC occasionally crashes with blue-screen or has large performance drops that I would like to fix, and I am hoping someone here can help me! Here are a list of problems that come to mind currently:

-After a while of running the computer, I suspect after Adobe Flash activates as it often happens after watching HD videos on Youtube, attempting to play any computer game that involves a good amount of graphics power runs at roughly 6 to 8 times lower FPS than usual. The only remedy to this seems to be a restart of the PC.

-Occasionally, my USB ports will simply stop responding. I have not confirmed what causes this, but the PC has usually been on roughly an hour or two.

-Youtube itself in my preferred browser (Firefox) seems to be unresponsive and crashes Firefox many times. I had uninstalled and installed a different version of Flash, but ended up returning to the newest driver / player. Instead of causing Blue Screen like before, now it just locks up Firefox.

-As mentioned before, BSOD is also an issue. Usually it gives me something akin to Page Fault in Non-Paged Area (roughly), but sometimes it gives me a full error, saying that nv4_disp.dll has been the cause, and something about an "infinite loop" causing the BSOD.

-My Comodo Antivirus seems to be in a glitched state where it refuses to be deleted or activate.

-Although minor, some AVG toolbar keeps appearing in my firefox. I don't know where it is coming from, but I'd prefer it to be gone, as the Toolbar has some processes running that I can't seem to swat away.

-Lastly, I am not sure if my System Restore Points thing is even active or not. How can I enable it, if it isn't already?

Those are the major culprits that come to mind at the moment. I have performed the ERUNT backup of my registry. I also have the DDS and Attach files, and I will post them here. I understand that this is a lot of issues, but I have tried to provide all the information possible that the DDS log doesn't seem to already give. Thanks for any help you can offer, I greatly appreciate it!

.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.5.1
Run by DJ at 21:24:29 on 2012-07-20
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2814.1827 [GMT -4:00]
.
AV: COMODO Antivirus *Enabled/Outdated* {043803A5-4F86-4ef7-AFC5-F6E02A79969B}
AV: AVG Anti-Virus Free *Disabled/Outdated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
FW: COMODO Firewall *Enabled*
.
============== Running Processes ===============
.
C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\12.1.3\ToolbarUpdater.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54GS.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\Logitech Gaming Software\LCore.exe
C:\Program Files\AVG Secure Search\vprot.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe
C:\FRAPS\FRAPS.EXE
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\SafeConnect\scClient.exe
C:\Documents and Settings\DJ\Application Data\Dropbox\bin\Dropbox.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = https://isearch.avg.com/?cid={3ECCEDD7-0D22-4A1B-AD41-B3DB164BD66D}&mid=d51d21b0f90647d095d2d15b5144336b-7de3c30e79ee05057d069f3f7b1caf47bd442410&lang=en&ds=st011&pr=sa&d=2012-07-18 10:33:27&v=12.1.0.20&sap=hp
mURLSearchHooks: H - No File
mWinlogon: SfcDisable=-99 (0xffffff9d)
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - No File
BHO: DivX Plus Web Player HTML5 <video>: {326e768d-4182-46fd-9c16-1449a49795f4} - c:\program files\divx\divx plus web player\ie\divxhtml5\DivXHTML5.dll
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\oracle\javafx 2.1 runtime\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: AVG Security Toolbar: {95b7759c-8c7f-4bf1-b163-73684a933233} - c:\program files\avg secure search\12.1.0.20\AVG Secure Search_toolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\oracle\javafx 2.1 runtime\bin\jp2ssv.dll
TB: {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - No File
TB: AVG Security Toolbar: {95b7759c-8c7f-4bf1-b163-73684a933233} - c:\program files\avg secure search\12.1.0.20\AVG Secure Search_toolbar.dll
uRun: [Advanced SystemCare 5] "c:\program files\iobit\advanced systemcare 5\ASCTray.exe" /AutoStart
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
uRun: [Fraps] c:\fraps\FRAPS.EXE
mRun: [WinampAgent] "c:\program files\winamp\winampa.exe"
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [Alcmtr] ALCMTR.EXE
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [XboxStat] "c:\program files\microsoft xbox 360 accessories\XboxStat.exe" silentrun
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
mRun: [DivXUpdate] "c:\program files\divx\divx update\DivXUpdate.exe" /CHECKNOW
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [Launch LCore] c:\program files\logitech gaming software\LCore.exe /minimized
mRun: [vProt] "c:\program files\avg secure search\vprot.exe"
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
mRun: [PWRISOVM.EXE] c:\program files\poweriso\PWRISOVM.EXE -startup
mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
dRunOnce: [nltide_2] regsvr32 /s /n /i:U shell32
dRunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe
StartupFolder: c:\docume~1\dj\start menu\programs\startup\dropbox.lnk - c:\documents and settings\dj\application data\dropbox\bin\Dropbox.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\safeco~1.lnk - c:\program files\safeconnect\scClient.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
TCP: DhcpNameServer = 72.240.13.7 72.240.13.6 156.154.70.43
TCP: Interfaces\{C846D02C-5C99-4CD8-81B8-8DF205C2CCF6} : DhcpNameServer = 72.240.13.7 72.240.13.6 156.154.70.43
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\common files\avg secure search\viprotocolinstaller\12.1.3\ViProtocol.dll
AppInit_DLLs: c:\windows\system32\guard32.dll
Hosts: 127.0.0.1 www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\dj\application data\mozilla\firefox\profiles\we3icybo.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Guild Wars 2 Wiki (en)
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?btnG=Google+Search&q=
.
---- FIREFOX POLICIES ----
FF - user.js: yahoo.homepage.dontask - true
============= SERVICES / DRIVERS ===============
.
.
=============== Created Last 30 ================
.
.
==================== Find3M ====================
.
.
============= FINISH: 21:25:35.03 ===============

shelf life
2012-07-25, 00:33
hi,

Your post is a few days old. If you still need help simply reply back.

thedeejay
2012-07-25, 04:11
I do still need some help, yes :)

shelf life
2012-07-26, 03:49
BSOD can be hardware or software related, not necessarily caused by malware.
You do have only one active antivirus correct? That would be Comodo.
Look in the add/remove program panel for AVG and run its uninstaller if you havent already, that should remove its toolbar also.

This:
releasing the built-in power of your systemReally?
Up to you if you want to remove it.
We can start with that anyway.

thedeejay
2012-07-26, 06:57
Just removed the Iobit Advanced Windows Care and the AVG toolbar. Comodo isn't in my uninstall list at all and as far as I can tell it isn't running correctly. Where should we go from here?

shelf life
2012-07-26, 23:53
Comodo isn't in my uninstall list at all and as far as I can tell it isn't running correctly.
Do you see the icon by the clock? Can you manually check for updates or start a scan with it? What makes you think it isnt running right?

If you right click on start>explore and navigate to: C:\Program Files\Comodo\Antivirus you might find a uninstall icon in the folder or there could be a unwise.exe which is also a uninstaller. Same for the Comodo firewall.
If you find the uninstaller and run it you may get a option to try a repair of the antivirus (or remove it). Since you think its not running correctly maybe trying a repair is in order.
If you do remove it then you will need to get another antivirus to take its place.

thedeejay
2012-07-27, 00:37
Comodo Internet Security has been successfully removed and reinstalled now. It functions well, it didn't before because it was on an administrator account that was deleted and everything that was in the Add/Remove programs vanished, also many programs had refused to acknowledge they were installed. Comodo was the last program that I had as a remnant of then, so now all is well :)

What should we do next?

shelf life
2012-07-27, 04:05
You mentioned firefox crashing, are you using the latest version. 14.0.1 for Windows? You should also check the plugins for updates. (http://www.mozilla.org/en-US/plugincheck/)

thedeejay
2012-07-27, 04:14
I am updated to Firefox 14.0.1 and all of my plugins are up to date. I don't really have many to begin with, but I think that my issue lies here, which I found while I was looking to see if I'd updated:

http://support.mozilla.org/en-US/questions/932486

Looks like the latest Flash is just incompatible with the latest Firefox for a while. I'll have to wait for it, it seems. What should be next to address, the blue screens from nv4_disp?

shelf life
2012-07-27, 04:32
Do you have a Nvidia graphics card? You can check if you open up device manager. Click on start>run and type in devmgmt.msc and click ok or enter.
Device manager will open, click the plus sign next to Display adapters and you should see the name of your graphics card.

thedeejay
2012-07-27, 04:34
I have the NVIDIA GeForce GTX 560 Ti graphics card, normally pretty boss but lately blue screen has been popping up every so often.

shelf life
2012-07-28, 02:05
Have you recently updated the Nvidia drivers for your card? If so maybe you should go back to the original drivers. If not you might consider updating the drivers off the Nvidia website (http://www.geforce.com/drivers) based on your card and Windows version.
Read the how to/FAQ first and it may or may not solve the BSOD's your having.

The Nvidia support forum is currently offline to investigate suspicious behavior, ie: they've been hacked

thedeejay
2012-07-28, 20:12
I've got the latest drivers now, no blue screens so far, but we'll see. What's next?

shelf life
2012-07-29, 01:32
If you go to start>run and type in services.msc then look for the System Restore Service, right click on it and select properties then check the service status: Should be either started or stopped.

If you also right click on My Computer icon>properties and select the system restore tab at the top the status should be: Monitoring, it system restore is on.

thedeejay
2012-07-29, 05:27
Looks good! That should help if any issues come up in the future. What's next?

shelf life
2012-07-29, 21:25
You can get the free version of Ccleaner (http://www.piriform.com/ccleaner/download) It will clean up your browser and temps, also has a registry function.
I cant remember but it might ask you to install some useless tool bar (Ask toolbar?) Its checked by default. Uncheck it first before continuing with the install unless you want another toolbar.


What's next?
I dont know, I think we covered everything from your first post.

thedeejay
2012-07-30, 01:55
I downloaded the CCleaner and ran it through the options available. I haven't gotten any Blue Screens yet and performance seems to be going well, even with Youtube enabled on Firefox. I think everything is fixed, thank you for all the help! I appreciate it greatly :thanks:

shelf life
2012-07-30, 03:58
ok. Good, your welcome. This wasnt a malware issue but I will post my tips for your reference anyway. Happy Safe Surfing.

10 Tips for Prevention and Avoidance of Malware:
There is no reason why your computer can not stay malware free.

No software can think for you. Help yourself. In no special order:

1) It is essential to keep your operating system (Windows) browser (IE, FireFox, Chrome, Opera) and other software up to date to "patch" vulnerabilities that could be exploited. Visit Windows Update (http://www.update.microsoft.com/microsoftupdate/v6/default.aspx?ln=en-us) frequently or use the Windows auto-update feature. (http://www.microsoft.com/windows/downloads/windowsupdate/automaticupdate.mspx) Staying updated is also essential for other web based applications like Java, Adobe Flash/Reader, iTunes etc. More and more third party applications are being targeted. Use the auto-update features available in most software. Not sure if you are using the latest version of software? Check their version status and get the updates here. (http://secunia.com/vulnerability_scanning/online/)

2) Know what you are installing to your computer. Alot of software can come bundled with unwanted add-ons, like adware, toolbars and malware. More and more legitimate software is installing useless toolbars if not unchecked first. Do not install any files from ads, popups or random links. Do not fall for fake warnings about virus and trojans being found on your computer and you are then prompted to install software to remedy this. See also the signs (http://www.malwarevault.com/signs.html)that you may have malware on your computer.

3) Install and keep updated: one antivirus and two or three anti-malware applications. If not updated they will soon be worthless. If either of these frequently find malware then its time to *review your computer habits*.

4) Refrain from clicking on links or attachments via E-Mail, IM, IRC, Chat Rooms, Blogs or Social Networking Sites, no matter how tempting or legitimate the message may seem. See also E-mail phishing Tricks (http://www.fraud.org/tips/internet/phishing.htm).

5) Do not click on ads/pop ups or offers from websites requesting that you need to install software to your computer--*for any reason*. Use the Alt+F4 keys to close the window.

6) Don't click on offers to "scan" your computer. Install ActiveX Objects with care. Do you trust the website to install components?

7) Consider the use of limited (non-privileged) accounts for everyday use, rather than administrator accounts. Limited accounts (http://www.microsoft.com/protect/computer/advanced/useraccount.mspx) can help prevent *malware from installing and lessen its potential impact.* This is exactly what user account control (UAC) in Windows Vista, Windows 7 and Windows 8 attempts to address.

8) Install and understand the *limitations* of a software firewall.

9) Your browser risks: The why and how (http://www.cert.org/tech_tips/securing_browser/) to secure your browser for safer surfing.

10) Warez, cracks, keygens etc are very popular for carrying malware payloads. If you look for these you will encounter malware. If you download/install files via p2p networks you will encounter malware. Do you really trust the source of the file?


More info/tips with pictures, links below

Happy Safe Surfing.