Help - Search - Members - Calendar
Full Version: CPU!!
Forums > Community Center > Technology
asdf
hii. i already posted this in 'the lounge' but someone told me i should post heree. sorry!

but i have a laptop and recently its been reall slow. so i went to task manager and it shows that iexplore.exe tkaes lot of the CPU.

i noticed that whenever im on the internt the cpu is 100 and veryy sloow

is iexplore. bad?? what do i dooo? sry.. i'm comp. illiterate..:\

if anyone knowss please helppp.. wacko.gif cry.gif
DrNick311
Iexplore.exe = Internet Explorer. You should try a different browser like Mozilla and see if it's still slow.
mystical
Check for spyware / adware because they load into InternetExplore

download http://www.tomcoyote.org/hjt/ and post ur log
asdf
Logfile of HijackThis v1.98.2
Scan saved at 7:26:10 PM, on 8/18/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Altiris\eXpress\NS Client\AeXNSClient.exe
C:\Program Files\Altiris\eXpress\NS Client\AeXNSClientTransport.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\System32\ccsrvc.exe
C:\Program Files\NavNT\defwatch.exe
C:\Program Files\Altiris\Carbon Copy\shellker.exe
C:\Program Files\NavNT\rtvscan.exe
C:\Program Files\Common Files\Lanovation\PrismXL\PRISMXL.SYS
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\Altiris\CARBON~1\client.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\GWMDMMSG.exe
C:\Program Files\NavNT\vptray.exe
C:\Program Files\Altiris\eXpress\NS Client\AeXSWDUsr.exe
C:\PROGRA~1\Altiris\eXpress\NSCLIE~1\SOFTWA~1\SOFTWA~1\{F68CF~1\AClntUsr.EXE
C:\Documents and Settings\achoi\Application Data\blnh.exe
C:\WINDOWS\System32\exf.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\achoi\Local Settings\Temp\Temporary Directory 1 for hijackthis[1].zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drsnsrch.com/sidesearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drsnsrch.com/sidesearch.cgi?id=
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.stlcop.edu/1200/index1200.asp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drsnsrch.com/sidesearch.cgi?id=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drsnsrch.com/sidesearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = websearch.drsnsrch.com/q.cgi?q=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.stlcop.edu/1200/index1200.asp
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by STL College of Pharmacy
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: UserInit=C:\Windows\System32\wsaupdater.exe,
O2 - BHO: BHObj Class - {00000010-6F7D-442C-93E3-4A4827C2E4C8} - C:\WINDOWS\nem219.dll (file missing)
O2 - BHO: (no name) - {0000607D-D204-42C7-8E46-216055BF9918} - (no file)
O2 - BHO: Band Class - {01F44A8A-8C97-4325-A378-76E68DC4AB2E} - C:\WINDOWS\systb.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {3CDE405B-966B-0AC6-D324-165579A17F1A} - C:\WINDOWS\System32\ucbug.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: BAHelper Class - {A3FDD654-A057-4971-9844-4ED8E67DBBB8} - C:\Program Files\SideFind\sfbho.dll
O2 - BHO: disknopy - {C1A99063-7BE2-3500-5660-84CCBD6F9137} - C:\WINDOWS\System32\disknopy.dll (file missing)
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [GWMDMMSG] GWMDMMSG.exe
O4 - HKLM\..\Run: [vptray] C:\Program Files\NavNT\vptray.exe
O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
O4 - HKLM\..\Run: [AeXSWDUsr] "C:\Program Files\Altiris\eXpress\NS Client\AeXSWDUsr.exe"
O4 - HKLM\..\Run: [AClntUsr] C:\PROGRA~1\Altiris\eXpress\NSCLIE~1\SOFTWA~1\SOFTWA~1\{F68CF~1\AClntUsr.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [tkhjkvwt] C:\WINDOWS\System32\ozrhnl.exe
O4 - HKLM\..\Run: [dyjmpuz] C:\WINDOWS\dyjmpuz.exe
O4 - HKLM\..\Run: [Windows SA] C:\Program Files\WindowsSA\omniscient.exe
O4 - HKLM\..\Run: [WebRebates0] "C:\Program Files\Web_Rebates\WebRebates0.exe"
O4 - HKCU\..\Run: [Acsa] C:\Documents and Settings\achoi\Application Data\blnh.exe
O4 - HKCU\..\Run: [Ddampoh] C:\WINDOWS\System32\exf.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O8 - Extra context menu item: Save Flash - res://C:\Program Files\UnH Solutions\Flash Saving Plugin\FlashSButton.dll/210
O8 - Extra context menu item: Web Rebates - file://C:\Program Files\Web_Rebates\Sy1150\Tp1150\scri1150a.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: SideFind - {10E42047-DEB9-4535-A118-B3F6EC39B807} - C:\Program Files\SideFind\sidefind.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra button: Flash - {43CF38F3-5AEC-45a3-AD31-04EB06E9C6CA} - (no file) (HKCU)
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {205FF73B-CA67-11D5-99DD-444553540000} - http://www.spywarestormer.com/files2/Install.cab
O16 - DPF: {9EB320CE-BE1D-4304-A081-4B4665414BEF} (MediaTicketsInstaller Control) - http://www.mt-download.com/MediaTicketsInstaller.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = stlcop.local
O17 - HKLM\Software\..\Telephony: DomainName = stlcop.local
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = stlcop.local
Levy2k6
maybe if u don't have alot of plug ins and alot of IE windows up then it might be low... try doing one or two things at a time.. be patient.
asdf
okaay i'll try that.

i forgot to mention i do have spybot and adaware happy.gif
mystical
Your Hijack this log looks clean from the search viruses but remove those spyware / adawares.
F1R3B4T
u posted 2 of these jus to let u kno
MeanBastard
Your computer is hopeless. Launch it into space and nuke it.
asdf
QUOTE(mystical @ Aug 19 2004, 12:01 AM)
Your Hijack this log looks clean from the search viruses but remove those spyware / adawares.

but i thought spyware and adaware helps get rid of the bad..? _unsure.gif
mystical
QUOTE(asdf @ Aug 19 2004, 7:57 AM)
but i thought spyware and adaware helps get rid of the bad..? _unsure.gif

typo remove the spyware and adware junk

use adaware and spybots SD
F1R3B4T
allt he stuff that u haf in ur task manager, u shud check it up with the tasklist programs. its pretty neat, u search up wat u haf (say "explorer" so u look up "e" in the task list program it'll give u stuff about it, whether its good or bad.) pretty useful it helped me in several various occasions.
asdf
ooh thank youu happy.gif
PingPong
haha uve been owned by spyware.. DELETE EMM! haha...
get lavasoft Ad_Ware remover its really good..
go to www.Download.com
n search Lavasoft it should have it
update ur windows n get Virus protection.
Trend Micro is a good program.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.