Page 3 of 3 FirstFirst 123
Results 21 to 26 of 26

Thread: Cannot Load Spybot Search & Destroy

  1. #21
    Junior Member
    Join Date
    Oct 2007
    Posts
    16

    Default Kaspersky Indicates persistent viruses

    rskelley,

    I followed your advise regarding a Recycle bin purge and sytem restore actions, ran a Kaspersky scan, and found the system to be infected. To be sure, I followed the proceedure again, followed by a consistent result.

    Additionally, I tried to follow some of the recommendations for firewalls, anti virus programs, etc., and after installing some Microsoft updates (not SP2) including IE7, the system grew very sluggish, control panel would not open, everything felt 'jumpy' and very slow, so I used a system restore to the point preceeding. Just prior to running the following Kaspersky scan, I verified that the Recycle Bin was emptied, and scrubbed the sytem restore settings per your instructions. Please advise...

    The following is the results of the latest:
    -------------------------------------------------------------------------------
    KASPERSKY ONLINE SCANNER REPORT
    Saturday, November 10, 2007 2:11:28 PM
    Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
    Kaspersky Online Scanner version: 5.0.98.0
    Kaspersky Anti-Virus database last update: 10/11/2007
    Kaspersky Anti-Virus database records: 427873
    -------------------------------------------------------------------------------

    Scan Settings:
    Scan using the following antivirus database: standard
    Scan Archives: true
    Scan Mail Bases: true

    Scan Target - My Computer:
    C:\
    D:\
    E:\

    Scan Statistics:
    Total number of scanned objects: 58119
    Number of viruses found: 15
    Number of infected objects: 27
    Number of suspicious objects: 0
    Duration of the scan process: 00:34:03

    Infected Object Name / Virus Name / Last Action
    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\3ad391678a806ec4d691e83aaa393b6f_24adf822-76f7-4481-b30b-ff1b40f8687f Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Microsoft\eHome\logs\ehRecvr.log Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
    C:\Documents and Settings\Gentle Husband\Local Settings\Temp\hsperfdata_Gentle Husband\3204 Object is locked skipped
    C:\Documents and Settings\Gentle Wife\Application Data\Gtek\GTUpdate\AUpdate\DellSupport\DSAgnt.log Object is locked skipped
    C:\Documents and Settings\Gentle Wife\Application Data\Gtek\GTUpdate\AUpdate\DellSupport\DSAgnt_GTActions.log Object is locked skipped
    C:\Documents and Settings\Gentle Wife\Application Data\Gtek\GTUpdate\AUpdate\DellSupport\gdql_d_DSAgnt.log Object is locked skipped
    C:\Documents and Settings\Gentle Wife\Application Data\Gtek\GTUpdate\AUpdate\DellSupport\glog.log Object is locked skipped
    C:\Documents and Settings\Gentle Wife\Cookies\index.dat Object is locked skipped
    C:\Documents and Settings\Gentle Wife\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
    C:\Documents and Settings\Gentle Wife\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
    C:\Documents and Settings\Gentle Wife\Local Settings\History\History.IE5\index.dat Object is locked skipped
    C:\Documents and Settings\Gentle Wife\Local Settings\History\History.IE5\MSHist012007111020071111\index.dat Object is locked skipped
    C:\Documents and Settings\Gentle Wife\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
    C:\Documents and Settings\Gentle Wife\NTUSER.DAT Object is locked skipped
    C:\Documents and Settings\Gentle Wife\ntuser.dat.LOG Object is locked skipped
    C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
    C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped
    C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
    C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
    C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
    C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
    C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
    C:\Program Files\Adobe\Adobe Version Cue CS2\config\configuration\org.eclipse.core.runtime\.manager\.tmp20694.instance Object is locked skipped
    C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\data\ibdata1 Object is locked skipped
    C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\data\ib_logfile0 Object is locked skipped
    C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\data\ib_logfile1 Object is locked skipped
    C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\data\versioncue\bhasset.ibd Object is locked skipped
    C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\data\versioncue\bhlabel.ibd Object is locked skipped
    C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\data\versioncue\bhlabeltoversion.ibd Object is locked skipped
    C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\data\versioncue\bhpqentry.ibd Object is locked skipped
    C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\data\versioncue\bhserverglobals.ibd Object is locked skipped
    C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\data\versioncue\bhuser.ibd Object is locked skipped
    C:\Program Files\Adobe\Adobe Version Cue CS2\logs\VersionCue.log Object is locked skipped
    C:\Program Files\Common Files\rtemehd.html Infected: Trojan-Clicker.HTML.IFrame.dn skipped
    C:\SDFix\backups\backups.zip/backups/autorun.exe Infected: Trojan.Win32.Qhost.uo skipped
    C:\SDFix\backups\backups.zip/backups/avp.exe Infected: Trojan-Downloader.Win32.Alphabet.gen skipped
    C:\SDFix\backups\backups.zip/backups/b104.exe/stream/data0002 Infected: Trojan-Downloader.Win32.Small.buy skipped
    C:\SDFix\backups\backups.zip/backups/b104.exe/stream Infected: Trojan-Downloader.Win32.Small.buy skipped
    C:\SDFix\backups\backups.zip/backups/b104.exe Infected: Trojan-Downloader.Win32.Small.buy skipped
    C:\SDFix\backups\backups.zip/backups/b122.exe Infected: Trojan-Downloader.Win32.Agent.dpn skipped
    C:\SDFix\backups\backups.zip/backups/b128.exe/stream/data0002/data0002 Infected: Trojan-Downloader.Win32.PurityScan.eh skipped
    C:\SDFix\backups\backups.zip/backups/b128.exe/stream/data0002 Infected: Trojan-Downloader.Win32.PurityScan.eh skipped
    C:\SDFix\backups\backups.zip/backups/b128.exe/stream Infected: Trojan-Downloader.Win32.PurityScan.eh skipped
    C:\SDFix\backups\backups.zip/backups/b128.exe Infected: Trojan-Downloader.Win32.PurityScan.eh skipped
    C:\SDFix\backups\backups.zip/backups/b138.exe Infected: Trojan-Downloader.Win32.Agent.cbx skipped
    C:\SDFix\backups\backups.zip/backups/b147.exe Infected: Trojan.Win32.Agent.bnd skipped
    C:\SDFix\backups\backups.zip/backups/mgrs.exe Infected: Trojan-Downloader.Win32.Alphabet.gen skipped
    C:\SDFix\backups\backups.zip/backups/printer.exe Infected: Trojan.Win32.Qhost.uo skipped
    C:\SDFix\backups\backups.zip/backups/retadpu1000106.exe.tmp Infected: Trojan-Downloader.Win32.Agent.dvd skipped
    C:\SDFix\backups\backups.zip/backups/startdrv.exe Infected: Trojan.Win32.Pakes.bmk skipped
    C:\SDFix\backups\backups.zip/backups/sulimo.dat Infected: not-virus:Hoax.Win32.Renos.lq skipped
    C:\SDFix\backups\backups.zip/backups/system.exe Infected: Trojan.Win32.Qhost.uo skipped
    C:\SDFix\backups\backups.zip/backups/uninstall.exe Infected: Trojan-Downloader.Win32.Agent.buo skipped
    C:\SDFix\backups\backups.zip/backups/vtr.dll Infected: not-virus:Hoax.Win32.Renos.lq skipped
    C:\SDFix\backups\backups.zip/backups/WinAvXX.exe Infected: Trojan.Win32.Qhost.uo skipped
    C:\SDFix\backups\backups.zip/backups/Yazzle1122OinAdmin.exe Infected: Trojan-Downloader.Win32.PurityScan.eh skipped
    C:\SDFix\backups\backups.zip ZIP: infected - 22 skipped
    C:\SDFix\backups\HOSTS Infected: Trojan.Win32.Qhost.my skipped
    C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP14\change.log Object is locked skipped
    C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
    C:\WINDOWS\Registration\{02D4B3F1-FD88-11D1-960D-00805FC79235}.{8BA68A56-CBC6-4A1B-A835-A6E88B9AA2C9}.crmlog Object is locked skipped
    C:\WINDOWS\SchedLgU.Txt Object is locked skipped
    C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
    C:\WINDOWS\Sti_Trace.log Object is locked skipped
    C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
    C:\WINDOWS\system32\CatRoot2\edbtmp.log Object is locked skipped
    C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
    C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
    C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
    C:\WINDOWS\system32\config\default.LOG Object is locked skipped
    C:\WINDOWS\system32\config\Media Ce.evt Object is locked skipped
    C:\WINDOWS\system32\config\SAM Object is locked skipped
    C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
    C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
    C:\WINDOWS\system32\config\SECURITY Object is locked skipped
    C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
    C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
    C:\WINDOWS\system32\config\software.LOG Object is locked skipped
    C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
    C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
    C:\WINDOWS\system32\config\system.LOG Object is locked skipped
    C:\WINDOWS\system32\GB9\wrdrvrdl23.exe Infected: Trojan-Downloader.Win32.Small.fuq skipped
    C:\WINDOWS\system32\h323log.txt Object is locked skipped
    C:\WINDOWS\system32\kwdadwur.dll Infected: Trojan.Win32.BHO.rf skipped
    C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
    C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
    C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
    C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
    C:\WINDOWS\Temp\hsperfdata_SYSTEM\1812 Object is locked skipped
    C:\WINDOWS\Temp\ib11 Object is locked skipped
    C:\WINDOWS\Temp\ib12 Object is locked skipped
    C:\WINDOWS\Temp\ib13 Object is locked skipped
    C:\WINDOWS\wiadebug.log Object is locked skipped
    C:\WINDOWS\wiaservc.log Object is locked skipped
    C:\WINDOWS\WindowsUpdate.log Object is locked skipped
    D:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

    Scan process completed.

  2. #22
    In Memoriam -Always in our heart pskelley's Avatar
    Join Date
    Oct 2005
    Location
    Clearwater, Florida
    Posts
    20,247

    Default

    My instructions:
    C:\SDFix\backups\ <<< remove SDFix from your computer the backups will go with the folder
    Well, if you deleted the SDFix these would not be there, that is 24 of the items.

    C:\SDFix\backups\backups.zip/backups/autorun.exe Infected: Trojan.Win32.Qhost.uo skipped
    C:\SDFix\backups\backups.zip/backups/avp.exe Infected: Trojan-Downloader.Win32.Alphabet.gen skipped
    C:\SDFix\backups\backups.zip/backups/b104.exe/stream/data0002 Infected: Trojan-Downloader.Win32.Small.buy skipped
    C:\SDFix\backups\backups.zip/backups/b104.exe/stream Infected: Trojan-Downloader.Win32.Small.buy skipped
    C:\SDFix\backups\backups.zip/backups/b104.exe Infected: Trojan-Downloader.Win32.Small.buy skipped
    C:\SDFix\backups\backups.zip/backups/b122.exe Infected: Trojan-Downloader.Win32.Agent.dpn skipped
    C:\SDFix\backups\backups.zip/backups/b128.exe/stream/data0002/data0002 Infected: Trojan-Downloader.Win32.PurityScan.eh skipped
    C:\SDFix\backups\backups.zip/backups/b128.exe/stream/data0002 Infected: Trojan-Downloader.Win32.PurityScan.eh skipped
    C:\SDFix\backups\backups.zip/backups/b128.exe/stream Infected: Trojan-Downloader.Win32.PurityScan.eh skipped
    C:\SDFix\backups\backups.zip/backups/b128.exe Infected: Trojan-Downloader.Win32.PurityScan.eh skipped
    C:\SDFix\backups\backups.zip/backups/b138.exe Infected: Trojan-Downloader.Win32.Agent.cbx skipped
    C:\SDFix\backups\backups.zip/backups/b147.exe Infected: Trojan.Win32.Agent.bnd skipped
    C:\SDFix\backups\backups.zip/backups/mgrs.exe Infected: Trojan-Downloader.Win32.Alphabet.gen skipped
    C:\SDFix\backups\backups.zip/backups/printer.exe Infected: Trojan.Win32.Qhost.uo skipped
    C:\SDFix\backups\backups.zip/backups/retadpu1000106.exe.tmp Infected: Trojan-Downloader.Win32.Agent.dvd skipped
    C:\SDFix\backups\backups.zip/backups/startdrv.exe Infected: Trojan.Win32.Pakes.bmk skipped
    C:\SDFix\backups\backups.zip/backups/sulimo.dat Infected: not-virus:Hoax.Win32.Renos.lq skipped
    C:\SDFix\backups\backups.zip/backups/system.exe Infected: Trojan.Win32.Qhost.uo skipped
    C:\SDFix\backups\backups.zip/backups/uninstall.exe Infected: Trojan-Downloader.Win32.Agent.buo skipped
    C:\SDFix\backups\backups.zip/backups/vtr.dll Infected: not-virus:Hoax.Win32.Renos.lq skipped
    C:\SDFix\backups\backups.zip/backups/WinAvXX.exe Infected: Trojan.Win32.Qhost.uo skipped
    C:\SDFix\backups\backups.zip/backups/Yazzle1122OinAdmin.exe Infected: Trojan-Downloader.Win32.PurityScan.eh skipped
    C:\SDFix\backups\backups.zip ZIP: infected - 22 skipped
    C:\SDFix\backups\HOSTS Infected: Trojan.Win32.Qhost.my skipped

    Here are the other three, delete those as well:

    C:\WINDOWS\system32\GB9\ <<< delete that folder
    C:\WINDOWS\system32\kwdadwur.dll <<< delete that file
    C:\Program Files\Common Files\rtemehd.html <<< delete that file
    and after installing some Microsoft updates (not SP2) including IE7, the system grew very sluggish, control panel would not open
    If you continue to have issues here, I would consult Microsoft:
    http://support.microsoft.com/

    I would have prefered you waited until I told you the computer was clean, but at some point you will have to install windows updates and IE7 will afford you additional protection, considering I have not seen a computer this infected in a while, I would say you need all of the protection you can get.

    Once you have a clean Kaspersky, look at at this information, if the computer was this infected, chances are very good maintenance proceedures are poor also.
    http://users.telenet.be/bluepatchy/m...wcomputer.html

    I also suggest you run a free diagnostic here: http://www.pcpitstop.com/pcpitstop/
    I would be glad to advise you if you post a link to the Test Results.

    Here is some great information from experts in this field that will help you stay clean and safe online.
    http://users.telenet.be/bluepatchy/m...revention.html
    http://forums.spybot.info/showthread.php?t=279
    http://russelltexas.com/malware/allclear.htm
    http://forum.malwareremoval.com/viewtopic.php?t=14
    http://www.bleepingcomputer.com/forums/topict2520.html
    http://cybercoyote.org/security/not-admin.shtml

    Thanks...pskelley
    Safer Networking Forums
    http://www.spybot.info/en/donate/index.html
    If you are reading this information...thank a teacher,
    If you are reading it in English...thank a soldier.
    MS-MVP Consumer Security 2007-08-09
    Proud Member ASAP
    UNITE Member 2006

  3. #23
    Junior Member
    Join Date
    Oct 2007
    Posts
    16

    Default Almost Clean Kaspersky + PCPitstop log

    Rskelley,

    Thanks for your patience and input.

    This is a secondary computer in our household that was set up with no anti-virus... My inclination is that with no active protection, every time we turn the system on we are exposed. Per your advise, I will wait you to initiate the installation of recommended security measures.

    As my previous message indicated, the system was restored to previous settings, I deleted the backup files missed on a previous hunting expedition, (oops!) and the subsequent Kaspersky log showed only two trojan-type 'exe' files in Windows\System32 that I deleted.

    I will read the info you provided regarding maintenance, etc., and have provided a text save of the PCPitstop check. (not sure how to give you a link...) Once again I am very grateful for your help and expertise, and simply want to get to the point where this mischief is under control.

    Thanks Again!

    PCPitstop Info
    Detailed Summary Home Page
    Logged in
    Kenneth French
    Full Tests
    Optimize 1.5
    Internet Speed
    Spyware Scan
    AntiVirus
    Running Programs
    Data Profiler
    Driver Alert
    Disk Health
    Check ActiveX
    Vista Readiness
    Info Centers
    Help & Support
    Battling Spyware
    Gator / Claria
    Privacy & ID Theft
    MaxPC Performance
    PC Safety
    The Pit Blog
    PC Market Trends
    About Us Forums
    Forums Home
    Fix My PC
    Internet Tests
    Viruses & Spyware
    Site Feedback

    Current Test Results
    Summary
    Test Details
    Hardware List
    Installed Software
    Software by Category
    System Comparisons
    Test History

    Share Results with
    Test Details
    TipsIn the tips and the tables, red indicates a serious problem, yellow a
    minor problem, and blue a suggestion.
    • Sub Optimal Internet Performance
    • Reduce System Restore space (Drive C)
    • Adjust IE browser cache size
    • Install Backup Software

    Windows ConfigurationDescription Your Results
    Common NameWindows XP Pro SP2
    Full VersionWindows XP Pro SP2
    First InstallFri Sep 15 2006
    Free Resources90%
    Fonts Installed274
    Windows Scripting Version5.6.0.8820
    PCPitstop Version179
    CPU Load1%
    Running ProgramsMalicious or poorly written running programs are a common
    cause of poor performance and system instability. We strongly recommend
    that you use an antivirus program like CA Anti-Virus and a spyware scanner
    such as PC Pitstop Exterminate on a regular basis. To get control over
    your running programs we suggest WinPatrol Plus. Click on a file name to
    see more information about it.
    Legend: Virus Spyware/Adware Optional Required No
    data
    designates programs that can safely be disabled to improve computer
    performance, PC Pitstop Optimize disables these programs.
    NameVendorComplete File Name
    Speech Microsoft CorporationC:\WINDOWS\system32\ctfmon.exe
    Distiller Tray Icon Adobe Systems Inc.C:\Program Files\Adobe\Adobe
    Acrobat 7.0\Distillr\Acrotray.exe
    ISUSScheduler InstallShield Software CorporationC:\Program
    Files\Common Files\InstallShield\U ... \issch.exe
    Digital Line Detect BVRP SoftwareC:\Program Files\Digital Line
    Detect\DLG.exe
    MusicMatch tray icon Musicmatch, Inc.C:\Program
    Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
    Intel Hotkeys Intel CorporationC:\WINDOWS\system32\hkcmd.exe
    Adobe Version Cue CS2 Adobe Sytems IncorporatedC:\Program
    Files\Adobe\Adobe Version Cue CS2\ ... \VersionCueCS2Tray.exe
    Version Cue Adobe Systems IncorporatedC:\Program Files\Adobe\Adobe
    Version Cue CS2\ ... \VersionCueCS2.exe
    Debugger Microsoft CorporationC:\Program Files\Common
    Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    Dell Support Gteko Ltd.C:\Program Files\DellSupport\DSAgnt.exe
    Media Experience C:\Program Files\Dell\Media
    Experience\DMXLauncher.exe
    GoogleToolbarNotifier Google Inc.C:\Program
    Files\Google\GoogleToolbarNotifier ... \GoogleToolbarNotifier.exe
    Epson Status Monitor SEIKO EPSON
    CORPORATIONC:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2J1.EXE
    Media Center Remote Microsoft
    CorporationC:\WINDOWS\eHome\ehRecvr.exe
    Intel(R) Common User Interface Intel
    CorporationC:\WINDOWS\system32\igfxpers.exe
    (Various) Microsoft CorporationC:\WINDOWS\system32\dllhost.exe
    AOL Connectivity America Online,
    Inc.C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    MySQL Daemon C:\Program Files\Adobe\Adobe Version Cue CS2\ ...
    \mysqld-nt.exe
    Microsoft eHome Microsoft CorporationC:\WINDOWS\ehome\ehtray.exe
    Print spooler Microsoft CorporationC:\WINDOWS\system32\spoolsv.exe
    Windows Security Center Microsoft
    CorporationC:\WINDOWS\system32\wscntfy.exe
    Windows Update Microsoft CorporationC:\WINDOWS\system32\wuauclt.exe
    DLACTRLW Sonic SolutionsC:\WINDOWS\System32\DLA\DLACTRLW.EXE
    Internet Explorer Microsoft CorporationC:\Program Files\internet
    explorer\iexplore.exe
    Windows Explorer Microsoft CorporationC:\WINDOWS\Explorer.EXE
    Microsoft Media Center Microsoft
    CorporationC:\WINDOWS\eHome\ehSched.exe
    Microsoft Media Center Microsoft
    CorporationC:\WINDOWS\eHome\ehmsas.exe
    Local Security Authority Microsoft
    CorporationC:\WINDOWS\system32\lsass.exe
    Service control process Microsoft
    CorporationC:\WINDOWS\system32\services.exe
    Service host process Microsoft
    CorporationC:\WINDOWS\system32\svchost.exe

    Performance-Related Windows Settings
    The following settings may be helpful in diagnosing general system
    performance problems.
    Setting nameValue
    Video acceleration disabledNo
    Paging of kernel disabledNo
    Screen saver running during testsNo
    NOIDE key found in registryNo
    Running 32-bit code on 64-bit WindowsNo
    System Restore disabledNo
    Large System Cache enabledNo
    Has batteriesNo
    Hibernate enabledNo
    HIBERFIL.SYS presentNo
    Hibernate policy in useNo
    Sleep/Resume policy in useYes
    Running on battery powerNo
    Internet Configuration
    Run our Free PC Pitstop Optimize 1.5 Scan to check proper registry
    settings for your connection type. Optimize tweaks the optimal registry
    values to get the most from your Internet connection.
    Try our free Optimize 1.5 Scan Now!
    Learn More.Description Your Results
    Bandwidth Down2801 Kbits/sec
    Bandwidth Up225 Kbits/sec
    Average Ping54 ms
    Ping Loss0%
    TCP Receive Window(default)
    External IP Address208.102.115.223
    Internal IP Address192.168.1.102
    BrowserMSIE 6.0; SV1; .NET CLR 1.0.3705; .NET CLR 1.1.4322; Media
    Center PC 4.0
    IE current cache55 MB
    IE max cache128 MB

    Packet8 Internet Phone Service
    Make unlimited voice calls on your broadband Internet connection for only
    $19.99/month! Forget long distance phone bills with Packet8 Voice-over-IP
    technology.
    Click here for information on how to get startedThe Bandwidth tests
    measure the Internet bandwidth between your computer and PC Pitstop's
    servers. In general, if your bandwidth result is at least 85% of the rated
    connection speed, you're receiving good throughput (though shared
    connections may affect this, too).
    Average Ping measures the round-trip time for a packet to travel from the
    PC being tested to PC Pitstop's web site and back; lower numbers indicate
    better performance. Ping times under 150ms are typical of T1, DSL, or
    cable modems. Consistent ping times of more than 500ms should only be seen
    in connections that span continents (e.g., USA to Europe) and/or are
    linked by satellite. Ping losses usually indicate serious Internet
    congestion.
    Internet performance can be erratic for many different reasons, so you
    can't expect to get maximum bandwidth and ping performance every time you
    test. You should test several times and at different times of the day to
    get the most accurate picture of your connection speed. To repeat only our
    Bandwidth test and get more information, plus tips for improving
    performance, click here. For additional testing of your browser
    configuration and Internet connection, we recommend BrowserTune.
    More Internet related Settings
    The following settings may be helpful in diagnosing internet performance
    problems.
    Setting nameValue
    Using a proxyNo
    HTTP 1.1 through proxy EnabledNo
    HTTP 1.1 EnabledYes
    Check for newer pages turned offNo
    Show PicturesNo
    Format docs using my style sheetNo
    Content Advisor enabledNo
    Check Associations DisableNo
    Enable Automatic Image ResizeYes
    Enable third-party browser extensionsNo
    Enable page transitionsYes
    Always use my {colors|fonts|size}No
    Security ConfigurationDescription Your Results
    IE Restricted Zone PermissionsNone

    Security-Related Windows Settings
    The following settings may be helpful in diagnosing spyware and browser
    hijacks.
    Setting nameValue
    Explorer: Some drive letters are hiddenNo
    Explorer: Hide extensions for known file typesNo
    Explorer: Hide protected operating system filesNo
    Explorer: Do not show hidden files and foldersNo
    Explorer: Do not display contents of system foldersYes
    HOSTS location remapped via the RegistryNo
    System File Protection disabledNo
    Main BoardDescription Your Results
    Brand/Model Dell Inc. Dell DV051
    Type Desktop
    Serial Number HFDQZ91
    BIOS Dell Inc. A03 10/08/2005
    System Board Dell Inc. 0JC474
    ProcessorDescription Your Results
    Brand/Model Intel Pentium 4
    Nominal Clock Speed 2800 MHz
    Measured Clock Speed 2793 MHz
    External Clock Speed 800 MHz
    CPU Load 1%
    Speed Rating 4552 (97% of 12577 similar)
    Memory ConfigurationDescription Results
    RAM installed1024 MB
    Windows RAM1015 MB
    Total RAM slots2
    Available RAM slots0
    Max RAM module size0 MB
    Memory Type512+512;DIMM,?18,|Synchronous;T16
    Speed Rating6865 MB/s (108% of 12577 similar)
    Memory Tip
    On virtually any system, memory is the best bang-for-the-buck upgrade,
    especially if you currently have 256MB or less. Installing memory is a
    snap, it just works and your PC is faster. PC World has put together a
    step-by-step guide if you need help.
    With prices so low lately I've purchased a lot of memory, and all of it
    has been from Crucial. Their prices beat the competition and they
    currently have free shipping.
    -- Rob Cheng, CEO, PC PitstopUpgrading memory can give your computer extra
    performance. Crucial Technology can identify the memory you need at very
    competitive prices.
    Speed rating is measured in megabytes per second. The percentage indicates
    the performance of this system compared to systems in our database with a
    similar CPU and clock speed; the number of similar systems is also shown.
    For example, a score of 50% would indicate this system had half the
    performance of comparable systems; 200% would indicate twice the
    performance. A "normal" number is 100% plus or minus about 15%.
    The System Management BIOS is reporting that there is 1024 MB of RAM, but
    Windows reports that 1015 MB is available. The most common reason for this
    discrepancy is that your system uses some system RAM for the video
    graphics card or BIOS functions. This case is common in highly-integrated
    PCs with video graphics built into the system board, and does not require
    any changes on your part.
    Drive LettersThese are drive letters associated with hard disk drives.
    This list does not include drive letters for floppy disks or other
    removable media such as CD-ROM, DVD, Zip or Jaz drives.
    DescriptionDrive CDrive D
    Partition formatNTFS NTFS
    Cluster size4 KB4 KB
    Drive labelNo LabelBackup
    Size52438 MB19053 MB
    Free space35937 MB (69%)18988 MB (100%)
    Junk files55 MB (0%)0 MB (0%)
    System Restore Space6292 MB (12%) 2286 MB (12%)
    Data fragmentation2%Not tested
    File fragmentation2%Not tested
    Uncached speed48 MB/s (124%)43 MB/s (111%)


    Percentages shown for free space, junk files (temporary files, browser
    cache, Recycle Bin files), and system restore space represent the size
    relative to the total disk capacity. A disk with 50% free space is
    half-full (or half-empty, if you're an optimist). PC Pitstop Optimize is
    an easy way to keep your hard disk free of unnecessary files.

    Our full tests only perform disk health checking on the C drive. We
    recommend that you check the health of your other drives using Disk MD.
    Data fragmentation measures the percentage of data on the disk that is
    contained in fragmented files. File fragmentation is the percentage of
    files on the disk that are fragmented. Some disk optimization programs
    such as Window's Disk Defragmenter intentionally fragment files to place
    them in the best position to ensure quick program loading, so the
    fragmentation measures may be non-zero even after running a disk
    optimizer. For more details check out Disk MD.
    Cached and uncached speed is measured in megabytes per second (MB/s). When
    a percentage is shown for cached and uncached speed, it compares the
    performance of the drive with those of systems in our database with the
    same processor and clock speed. (Our database currently has 12577 similar
    systems.) A rating of 200% means a disk is twice the performance of
    similar systems, 50% means it's half the performance. Cached disk speed
    generally measures the efficiency of the system's processor and memory
    system, not the performance of the hard disk. Uncached speed is most
    affected by the physical hard disk and the disk interface.
    Disk DrivesHere are the physical disk drives that we have detected on your
    system:
    Drive 0
    Drive lettersCD
    Removable mediaNo
    Brand/ModelSAMSUNG HD080HJ/P
    IDE details
    Serial number
    Revision level

    For IDE drives, IDE details show whether the drive has DMA enabled and is
    an IDE master (single drive, or master drive in a master/slave pair).
    CD/DVD DrivesHere are the CD and DVD drives that we have detected on your
    system:
    ModelTypeMax Read SpeedMax Write Speed
    TSSTcorp CDRWDVD TS-H492CCD-RW8467 KB/s (48X)8467 KB/s (48X)

    Video BoardDescription Your Results
    Brand/ModelIntel(R) 82915G/GV/910GL Express Chipset Family
    Resolution1024x768 pixels
    Colors16 million
    DirectX version5.03.2600.2180 (xpsp_sp2_rtm.040803-2158)
    OpenGL version5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    Acceleration optionsEnabled
    Performance146.78 MP/s (70% of 1633 similar)

    Get Updated Drivers!
    Run PC Pitstop Driver Alert FREE to find your PCs most up-to-date drivers.
    more
    Better Performance
    Improved Stability
    Fast and Easy
    PC Pitstop's video performance performs a basic test of your system's
    graphics capabilities and reports the result in millions of pixels
    displayed per second (MP/s). The percentage indicates the performance of
    this system compared to systems in our database with a similar CPU, clock
    speed, and video board. For example, a score of 50% would indicate this
    system had half the performance of comparable systems; 200% would indicate
    twice the performance. Determining "normal" performance can be difficult,
    there can be wide differences due to video drivers even on the same video
    board. (You can use TouchStone's DriverAgent to see if you have the latest
    driver.)
    MonitorsDescription
    MonitorDell 230322Dell 230322
    Max. Resolution (HxV)1600 x 1200 pixels1600 x 1200 pixels
    Screen Size (HxV)34 x 27 cm34 x 27 cm
    Viewable Diagonal Size17.09 inch17.09 inch
    Manufacture DateApril 2006April 2006
    Serial Number809848148809848148



    Home | Our Legal Stuff | Privacy Policy | Press | Our Store | Link to Us
    Testimonials | Customer Service | Support PC Pitstop | Printable Page

  4. #24
    In Memoriam -Always in our heart pskelley's Avatar
    Join Date
    Oct 2005
    Location
    Clearwater, Florida
    Posts
    20,247

    Default

    You used to be able to run without a antivirus and with some luck stay fairly clean...not anymore. It is cyber-suicide going online without and antivirus program, firewall and a good spyware program, see this:
    http://www.theregister.com/2007/05/1...e_malware_map/
    http://redtape.msnbc.com/2007/05/the_next_net_th.html
    http://www.channelregister.co.uk/200...tispyware_ads/

    The information you posted from PCPitStop does not help, here is the forum where you can post your questions about the test results:
    http://pcpitstop.invisionzone.com/index.php?showforum=6 and here is an example of what a link to a test results would look like:
    http://www.pcpitstop.com/pcpitstop/S...BKHWY8HEVS8KPV

    Thanks
    MS-MVP Consumer Security 2007-08-09
    Proud Member ASAP
    UNITE Member 2006

  5. #25
    Junior Member
    Join Date
    Oct 2007
    Posts
    16

    Default Link to pcpitstop

    rskelley,

    Here is the pcpitstop link: http://www.pcpitstop.com/pcpitstop/S...conid=18894333

    Are we clean enough to install security measures and use this sytem?

    Thanks again for all your help!

  6. #26
    In Memoriam -Always in our heart pskelley's Avatar
    Join Date
    Oct 2005
    Location
    Clearwater, Florida
    Posts
    20,247

    Default

    Click on that link and see where it sends you.

    Are we clean enough to install security measures and use this sytem?
    should be fine but review the information for security measures asap.

    Thanks
    Last edited by pskelley; 2007-11-11 at 23:25. Reason: add information
    MS-MVP Consumer Security 2007-08-09
    Proud Member ASAP
    UNITE Member 2006

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •