Need Help Virus Control

129 views
Skip to first unread message

Royce Savory

unread,
Aug 1, 2012, 4:44:17 PM8/1/12
to FreeFixer User Forum
Hello, I would like some help with virus control and PC tends to be a
little
slow
Transport service providers (3 whitelisted)
{D2526071-5B0C-4983-955A-E6F266B31E5C} - C:\Program Files\Avira
\AntiVir Desktop\avsda.dll
{D2526071-5B0C-4983-955A-E6F266B31E5D} - C:\Program Files\Avira
\AntiVir Desktop\avsda.dll
{14072000-1136-5503-4156-504F504C5350} - C:\Program Files\Avira
\AntiVir Desktop\avsda.dll

Browser Helper Objects (3 whitelisted)
{02478D38-C3F9-4efb-9B51-7695ECA05670}, &Yahoo! Toolbar Helper, C:
\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}, &Inbox.com Toolbar Helper, C:
\PROGRA~1\Inbox\ctbr.dll
{5d79f641-c168-40df-a32f-bacea7509e75}, Search Assistant BHO, C:
\Program Files\TelevisionFanatic\bar\1.bin\64SrcAs.dll
{6E13D095-45C3-4271-9475-F3B48227DD9F}, StartNow Toolbar Helper, C:
\Program Files\StartNow Toolbar\Toolbar32.dll
{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}, AppGraffiti, C:
\PROGRA~1\APPGRA~1\APPGRA~1.DLL
{cb41fc95-f1b3-4797-8bb6-1012ff62abba}, Toolbar BHO, C:
\PROGRA~1\TELEVI~2\bar\1.bin\64bar.dll
{CCB69577-088B-4004-9ED8-FF5BCC83A039}, , C:
\PROGRA~1\REBATE~1\RebateI.dll
{D3D233D5-9F6D-436C-B6C7-E63F77503B30}, Inbox Toolbar, C:
\PROGRA~1\INBOXT~1\Inbox.dll
{D4027C7F-154A-4066-A1AD-4243D8127440}, Avira SearchFree Toolbar plus
Web Protection, C:\Program Files\Ask.com\GenericAskToolbar.dll
{E38FA08E-F56A-4169-ABF5-5C71E3C153A1}, NetAssistant, C:\Program Files
\Freeze.com\NetAssistant\NetAssistant.dll
{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}, SingleInstance Class, C:
\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll

Internet Explorer toolbars (1 whitelisted)
HKLM\..\Toolbar\{4B3803EA-5230-4DC3-A7FC-33638F3D3542} - &Inbox.com
Toolbar - C:\PROGRA~1\Inbox\ctbr.dll
HKLM\..\Toolbar\{5911488E-9D1E-40ec-8CBB-06B231CC153F} - StartNow
Toolbar - C:\Program Files\StartNow Toolbar\Toolbar32.dll
HKLM\..\Toolbar\{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo!
Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
HKLM\..\Toolbar\{c98d5b61-b0ea-4d48-9839-1079d352d880} -
TelevisionFanatic - C:\Program Files\TelevisionFanatic\bar\1.bin
\64bar.dll
HKLM\..\Toolbar\{D7E97865-918F-41E4-9CD0-25AB1C574CE8} - &Inbox
Toolbar - C:\PROGRA~1\INBOXT~1\Inbox.dll
HKLM\..\Toolbar\{D4027C7F-154A-4066-A1AD-4243D8127440} - Avira
SearchFree Toolbar plus Web Protection - C:\Program Files\Ask.com
\GenericAskToolbar.dll

Basic Internet Explorer settings
HKCU\..\Main, Start Page = http://www.yahoo.com/?ilc=1
HKCU\..\Desktop\General, Wallpaper = C:\WINDOWS\web\wallpaper
\Bliss.bmp

Registry Startups (6 whitelisted)
HKLM\..\Run, ATIPTA = "C:\Program Files\ATI Technologies\ATI Control
Panel\atiptaxx.exe"
HKLM\..\Run, NeroFilterCheck = C:\WINDOWS\system32\NeroCheck.exe
HKLM\..\Run, TelevisionFanatic Search Scope Monitor = "C:
\PROGRA~1\TELEVI~2\bar\1.bin\64srchmn.exe" /m=2 /w /h
HKLM\..\Run, TelevisionFanatic Browser Plugin Loader = C:
\PROGRA~1\TELEVI~2\bar\1.bin\64brmon.exe
HKLM\..\Run, LoadMSvcmm = "C:\Program Files\Blockbuster
\BLOCKBUSTERMovielink\Movielink User.exe"
HKLM\..\Run, 24x7HELP = "C:\Program Files\24x7Help\App24x7Help.exe" /
STARTUP
HKLM\..\Run, PCPowerSpeed = "C:\Program Files\PCPowerSpeed
\PCPowerTray.exe" /startup
HKLM\..\Run, ApnUpdater = "C:\Program Files\Ask.com\Updater
\Updater.exe"
HKLM\..\Run, avgnt = "C:\Program Files\Avira\AntiVir Desktop
\avgnt.exe" /min
HKLM\..\Run, MaxMySpeed PC Optimizer = "C:\Program Files\CyberDefender
\PC Optimizer\CDPCO.exe" /autorun
HKCU\..\Run, MyCleanPC Registry Cleaner = "C:\Program Files
\CyberDefender\Registry Cleaner\CDregclean.exe"
HKCU\..\Run, DW7 = "C:\Program Files\The Weather Channel\The Weather
Channel App\TWCApp.exe"
HKCU\..\Run, RebateInformer = C:\PROGRA~1\REBATE~1\REBATE~1.EXE /
STARTUP
HKCU\..\Run, MusicManager = "C:\Documents and Settings\Royce Savory
\Local Settings\Application Data\Programs\Google\MusicManager
\MusicManager.exe"

Processes (27 whitelisted)
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\24x7Help\App24x7Svc.exe
C:\Program Files\CyberDefender\PC Optimizer\CDPCODefragSrv.exe
C:\Program Files\CyberDefender\SchedulerService\SchedulerService.exe
C:\PROGRA~1\BLOCKB~1\BLOCKB~1\MovielinkCore.exe
C:\Program Files\StartNow Toolbar\ToolbarUpdaterService.exe
C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\PROGRA~1\TELEVI~2\bar\1.bin\64brmon.exe
C:\Program Files\Blockbuster\BLOCKBUSTERMovielink\Movielink User.exe
C:\Program Files\24x7Help\App24x7Help.exe
C:\Program Files\PCPowerSpeed\PCPowerTray.exe
C:\Program Files\Ask.com\Updater\Updater.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\CyberDefender\Registry Cleaner\CDregclean.exe
C:\Program Files\The Weather Channel\The Weather Channel App
\TWCApp.exe
C:\PROGRA~1\REBATE~1\REBATE~1.EXE
C:\Documents and Settings\Royce Savory\Local Settings\Application Data
\Programs\Google\MusicManager\MusicManager.exe
C:\Program Files\24x7Help\App24x7Hook.exe
c:\PROGRA~1\Inbox\CMail.exe
C:\Program Files\FreeFixer\freefixer.exe
C:\PROGRA~1\Inbox\CToolbar.exe
C:\PROGRA~1\REBATE~1\REBATE~1.EXE

Application modules (82 whitelisted)
C:\Program Files\24x7Help\App24x7Hook.dll
C:\Program Files\Common Files\Microsoft Shared\INK\SKCHUI.DLL
C:\PROGRA~1\TELEVI~2\bar\1.bin\64brstub.dll
C:\Program Files\Avira\AntiVir Desktop\avsda.dll

Services (41 whitelisted)
24x7HelpSvc, 24x7HelpService, c:\program files\24x7help\app24x7svc.exe
AntiVirSchedulerService, Avira Scheduler, c:\program files\avira
\antivir desktop\sched.exe
AntiVirService, Avira Realtime Protection, c:\program files\avira
\antivir desktop\avguard.exe
AntiVirWebService, Avira Web Protection, c:\program files\avira
\antivir desktop\avwebgrd.exe
CDPCODiskOptimizer, CDPCODiskOptimizer, c:\program files\cyberdefender
\pc optimizer\cdpcodefragsrv.exe
CDScheduler, CyberDefender Scheduling Service, c:\program files
\cyberdefender\schedulerservice\schedulerservice.exe
hpqwmiex, hpqwmiex, c:\program files\hewlett-packard\shared
\hpqwmiex.exe
Movielink Core Service, Movielink Core Service, c:
\progra~1\blockb~1\blockb~1\movielinkcore.exe
TelevisionFanaticService, TelevisionFanaticService, c:
\progra~1\televi~2\bar\1.bin\64barsvc.exe
Updater Service for StartNow Toolbar, Updater Service for StartNow
Toolbar, c:\program files\startnow toolbar\toolbarupdaterservice.exe
YahooAUService, Yahoo! Updater, c:\program files\yahoo!\softwareupdate
\yahooauservice.exe

Svchost.exe Modules (181 whitelisted)
C:\Program Files\Avira\AntiVir Desktop\avsda.dll

Explorer.exe Modules (118 whitelisted)
C:\PROGRA~1\TELEVI~2\bar\1.bin\64brstub.dll
C:\Program Files\24x7Help\App24x7Hook.dll
C:\Program Files\TelevisionFanatic\bar\1.bin\64SrcAs.dll
C:\Program Files\Avira\AntiVir Desktop\avsda.dll
C:\PROGRA~1\INBOXT~1\Inbox.dll

Drivers (33 whitelisted)
avipbb, avipbb, C:\WINDOWS\system32\drivers\avipbb.sys
avkmgr, avkmgr, C:\WINDOWS\system32\drivers\avkmgr.sys

Recently created/modified files (24 whitelisted)
10 minutes, c:\Program Files\FreeFixer\Uninstall.exe
10 minutes, c:\Documents and Settings\Royce Savory\Local Settings
\Temporary Internet Files\Content.IE5\HS582W99\freefixersetup[1].exe
19 minutes, c:\WINDOWS\SoftwareDistribution\Download
\6ae6fee8c540cc59770fe64ea2f65461\update\w32ksign.dll
19 minutes, c:\WINDOWS\SoftwareDistribution\Download
\6ae6fee8c540cc59770fe64ea2f65461\SP3GDR\win32k.sys
19 minutes, c:\WINDOWS\SoftwareDistribution\Download
\6ae6fee8c540cc59770fe64ea2f65461\SP3QFE\win32k.sys
20 minutes, c:\WINDOWS\SoftwareDistribution\Download
\25ef6a614d1bfe5142de31da435bb975\SP3QFE\msador15.dll

Csrss.exe virtual memory files (30 whitelisted)
C:\Documents and Settings\Royce Savory\Local Settings\Application Data
\Programs\Google\MusicManager\log4cxx.dll
C:\PROGRA~1\REBATE~1\RebateI.dll
C:\Program Files\Avira\AntiVir Desktop\avsda.dll
C:\Program Files\CyberDefender\PC Optimizer\CDPCOCheckUpdate.exe
C:\Program Files\24x7Help\App24x7Hook.dll
C:\Documents and Settings\Royce Savory\Local Settings\Temporary
Internet Files\Content.IE5\HS582W99\freefixersetup[1].exe
C:\PROGRA~1\INBOXT~1\Inbox.dll
C:\Program Files\CyberDefender\PC Optimizer\CDPCODefragSrv.exe
C:\Program Files\PCPowerSpeed\PCPowerSpeed.exe
C:\PROGRA~1\REBATE~1\REBATE~1.EXE
C:\Program Files\Ask.com\UpdateTask.exe

The following errors occurred during the scan:
Problems opening folder 'c:\Qoobox\BackEnv' to enumerate files.
FindFirstFile failed. System error message: Access is denied. Error
code: 5.

End of FreeFixer log

Roger Karlsson

unread,
Aug 7, 2012, 2:33:57 AM8/7/12
to freefix...@googlegroups.com
Hello Royce,

I've gone through your log and could not find any malware on your machine.

To speed the up the computer you can go through all programs listed
under "Add/remove programs" in the Windows control panel and uninstall
programs that you no longer use.

Have a nice day!

/Roger
Reply all
Reply to author
Forward
0 new messages