Author Topic: Computer Running Abnormally..  (Read 866 times)

Offline Z Ownage One Z

  • Newbie
  • *
  • Posts: 10
  • Karma: +0/-0
    • View Profile
Computer Running Abnormally..
« on: December 30, 2012, 03:41:11 PM »
Up until about a week ago, my computer was fine.

 

Now, I just bought a Gtx 550 Ti graphics card for my computer. All drivers are installed properly... But Firefox is now incredibly slow as well as gameplay on CS: GO and Diablo III, if anyone can help me or provide me with info to enhance my gameplay performance, please do. Thank you

 

ComboFix 12-12-30.01 - Zach 12/30/2012  15:30:02.1.2 - x86

Microsoft Windows 7 Professional   6.1.7600.0.1252.1.1033.18.2815.1220 [GMT -5:00]

Running from: c:\\users\\Zach\\Desktop\\ComboFix.exe

SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

 * Created a new restore point

.

.

(((((((((((((((((((((((((   Files Created from 2012-11-28 to 2012-12-30  )))))))))))))))))))))))))))))))

.

.

2012-12-30 20:36 . 2012-12-30 20:36 -------- d-----w- c:\\users\\UpdatusUser\\AppData\\Local\\temp

2012-12-30 20:36 . 2012-12-30 20:36 -------- d-----w- c:\\users\\Default\\AppData\\Local\\temp

2012-12-30 20:20 . 2012-12-30 20:20 -------- d-----w- c:\\programdata\\Kaspersky Lab

2012-12-30 20:20 . 2012-12-30 20:20 -------- d-----w- c:\\program files\\Kaspersky Lab

2012-12-30 02:56 . 2012-12-30 02:56 -------- d-----w- c:\\users\\Zach\\AppData\\Local\\Programs

2012-12-30 02:29 . 2012-12-03 15:39 9373032 ----a-w- c:\\windows\\system32\\drivers\\nvlddmkm.sys

2012-12-30 02:29 . 2012-12-03 15:39 7819016 ----a-w- c:\\windows\\system32\\nvcuda.dll

2012-12-30 02:29 . 2012-12-03 15:39 2606440 ----a-w- c:\\windows\\system32\\nvcuvid.dll

2012-12-30 02:29 . 2012-12-03 15:39 20335976 ----a-w- c:\\windows\\system32\\nvoglv32.dll

2012-12-30 02:29 . 2012-12-03 15:39 201136 ----a-w- c:\\windows\\system32\\nvinit.dll

2012-12-30 02:29 . 2012-12-03 15:39 1874280 ----a-w- c:\\windows\\system32\\nvcuvenc.dll

2012-12-30 02:29 . 2012-12-03 15:39 17559912 ----a-w- c:\\windows\\system32\\nvcompiler.dll

2012-12-30 02:29 . 2012-07-03 15:25 28008 ----a-w- c:\\windows\\system32\\nvhdap32.dll

2012-12-30 02:29 . 2012-07-03 15:25 149352 ----a-w- c:\\windows\\system32\\drivers\\nvhda32v.sys

2012-12-30 02:21 . 2012-07-03 07:37 884072 ----a-w- c:\\windows\\system32\\nvhdagenco3220103.dll

2012-12-30 02:20 . 2012-12-03 15:39 12603960 ----a-w- c:\\windows\\system32\\nvwgf2um.dll

2012-12-30 02:20 . 2012-12-03 15:39 15122280 ----a-w- c:\\windows\\system32\\nvd3dum.dll

2012-12-30 02:20 . 2012-05-15 10:26 301376 ----a-w- c:\\windows\\system32\\nvdecodemft.dll

2012-12-30 02:18 . 2012-12-01 04:37 3663213 ----a-w- c:\\windows\\system32\\nvcoproc.bin

2012-12-27 21:36 . 2012-12-27 21:36 -------- d-----w- c:\\program files\\Ask.com

2012-12-27 21:36 . 2012-12-27 21:36 -------- d-----w- c:\\users\\Zach\\AppData\\Local\\APN

2012-12-27 21:36 . 2012-12-27 21:36 -------- d-----w- C:\\Firefox

2012-12-27 21:36 . 2012-12-27 21:36 -------- d-----w- c:\\program files\\AGEIA Technologies

2012-12-27 21:34 . 2012-12-03 15:39 841272 ----a-w- c:\\windows\\system32\\nvumdshim.dll

2012-12-27 21:34 . 2012-12-03 15:39 6149904 ----a-w- c:\\windows\\system32\\nvopencl.dll

2012-12-27 20:09 . 2012-12-27 20:09 -------- d-----w- c:\\programdata\\Ask

2012-12-27 20:09 . 2012-11-28 15:35 93640 ----a-w- c:\\windows\\system32\\WindowsAccessBridge.dll

2012-12-21 14:34 . 2012-12-16 14:25 295424 ----a-w- c:\\windows\\system32\\atmfd.dll

2012-12-21 14:34 . 2012-12-16 14:25 34304 ----a-w- c:\\windows\\system32\\atmlib.dll

2012-12-17 08:02 . 2012-12-17 08:02 56200 ----a-w- c:\\programdata\\Microsoft\\Windows Defender\\Definition Updates\\{8C32403D-439E-4436-962C-BEB8B1E5C256}\\offreg.dll

2012-12-01 03:43 . 2012-12-01 03:43 438632 ----a-w- c:\\windows\\system32\\nvStreaming.exe

.

.

.

((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2012-12-14 21:49 . 2012-08-11 21:31 21104 ----a-w- c:\\windows\\system32\\drivers\\mbam.sys

2012-12-03 15:39 . 2012-10-11 02:14 889192 ----a-w- c:\\windows\\system32\\nvdispgenco32.dll

2012-12-03 15:39 . 2012-10-11 02:14 2496976 ----a-w- c:\\windows\\system32\\nvapi.dll

2012-12-03 15:39 . 2012-05-17 00:09 1011048 ----a-w- c:\\windows\\system32\\nvdispco32.dll

2012-12-01 04:38 . 2012-05-17 00:10 2869608 ----a-w- c:\\windows\\system32\\nvsvc.dll

2012-12-01 04:38 . 2012-05-17 00:10 3984744 ----a-w- c:\\windows\\system32\\nvcpl.dll

2012-12-01 04:37 . 2012-05-17 00:10 645480 ----a-w- c:\\windows\\system32\\nvvsvc.exe

2012-12-01 04:37 . 2012-05-17 00:10 62312 ----a-w- c:\\windows\\system32\\nvshext.dll

2012-12-01 04:37 . 2012-05-17 00:10 108392 ----a-w- c:\\windows\\system32\\nvmctray.dll

2012-10-02 19:29 . 2012-11-19 17:35 2557288 ----a-w- c:\\windows\\system32\\nvsvcr.dll

.

.

(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown 

REGEDIT4

.

[HKEY_CURRENT_USER\\Software\\Microsoft\\Internet Explorer\\URLSearchHooks]

\"{00000000-6E41-4FD3-8538-502F5495E5FC}\"= \"c:\\program files\\Ask.com\\GenericAskToolbar.dll\" [2012-12-11 1520840]

.

[HKEY_CLASSES_ROOT\\clsid\\{00000000-6e41-4fd3-8538-502f5495e5fc}]

.

[HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run]

\"Steam\"=\"c:\\program files\\Steam\\steam.exe\" [2012-12-04 1354736]

\"Skype\"=\"c:\\program files\\Skype\\Phone\\Skype.exe\" [2012-02-29 17148552]

\"KSS\"=\"c:\\program files\\Kaspersky Lab\\Kaspersky Security Scan 2.0\\kss.exe\" [2012-04-26 202296]

.

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run]

\"P17RunE\"=\"P17RunE.dll\" [2008-03-28 14848]

\"APSDaemon\"=\"c:\\program files\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe\" [2012-05-31 59280]

\"iTunesHelper\"=\"c:\\program files\\iTunes\\iTunesHelper.exe\" [2012-06-07 421776]

\"SunJavaUpdateSched\"=\"c:\\program files\\Common Files\\Java\\Java Update\\jusched.exe\" [2012-07-03 252848]

\"ApnUpdater\"=\"c:\\program files\\Ask.com\\Updater\\Updater.exe\" [2012-12-11 1573576]

.

c:\\programdata\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\

McAfee Security Scan Plus.lnk - c:\\program files\\McAfee Security Scan\\2.1.121\\SSScheduler.exe [2010-9-3 255536]

.

[HKEY_LOCAL_MACHINE\\software\\microsoft\\windows\\currentversion\\policies\\system]

\"ConsentPromptBehaviorAdmin\"= 5 (0x5)

\"ConsentPromptBehaviorUser\"= 3 (0x3)

\"EnableUIADesktopToggle\"= 0 (0x0)

.

[HKEY_LOCAL_MACHINE\\software\\microsoft\\security center\\Monitoring\\KasperskyAntiVirus]

\"DisableMonitoring\"=dword:00000001

.

R2 SkypeUpdate;Skype Updater;c:\\program files\\Skype\\Updater\\Updater.exe

R3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\\program files\\Common Files\\Creative Labs Shared\\Service\\CTAELicensing.exe

R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\\program files\\McAfee Security Scan\\2.1.121\\McCHSvc.exe

R3 WatAdminSvc;Windows Activation Technologies Service;c:\\windows\\system32\\Wat\\WatAdminSvc.exe

S2 BstHdAndroidSvc;BlueStacks Android Service;c:\\program files\\BlueStacks\\HD-Service.exe BstHdAndroidSvc Android

S2 BstHdDrv;BlueStacks Hypervisor;c:\\program files\\BlueStacks\\HD-Hypervisor-x86.sys

S2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service;c:\\program files\\BlueStacks\\HD-LogRotatorService.exe

S2 KSS;Kaspersky Security Scan Service;c:\\program files\\Kaspersky Lab\\Kaspersky Security Scan 2.0\\kss.exe

S2 MBAMScheduler;MBAMScheduler;c:\\program files\\Malwarebytes\' Anti-Malware\\mbamscheduler.exe

S2 MBAMService;MBAMService;c:\\program files\\Malwarebytes\' Anti-Malware\\mbamservice.exe

S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\\program files\\NVIDIA Corporation\\3D Vision\\nvSCPAPISvr.exe

S3 MBAMProtector;MBAMProtector;c:\\windows\\system32\\drivers\\mbam.sys

.

.

Contents of the \'Scheduled Tasks\' folder

.

2012-12-30 c:\\windows\\Tasks\\GoogleUpdateTaskUserS-1-5-21-2268958497-314316791-3464114325-1000Core.job

- c:\\users\\Zach\\AppData\\Local\\Google\\Update\\GoogleUpdate.exe [2011-08-23 05:20]

.

2012-12-30 c:\\windows\\Tasks\\GoogleUpdateTaskUserS-1-5-21-2268958497-314316791-3464114325-1000UA.job

- c:\\users\\Zach\\AppData\\Local\\Google\\Update\\GoogleUpdate.exe [2011-08-23 05:20]

.

.

------- Supplementary Scan -------

.

uInternet Settings,ProxyOverride = *.local

TCP: DhcpNameServer = 192.168.1.1 71.250.0.12

.

.

--------------------- LOCKED REGISTRY KEYS ---------------------

.

[HKEY_LOCAL_MACHINE\\SYSTEM\\ControlSet001\\Control\\PCW\\Security]

@Denied: (Full) (Everyone)

.

Completion time: 2012-12-30  15:38:16

ComboFix-quarantined-files.txt  2012-12-30 20:38

.

Pre-Run: 170,931,212,288 bytes free

Post-Run: 171,563,372,544 bytes free

.

- - End Of File - - 4868248C2F700A7DE6AB8399C5EE3F65

 

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
Computer Running Abnormally..
« Reply #1 on: December 31, 2012, 03:12:41 AM »
I wouldn\'t run ComboFix unless it\'s really needed...
Nothing popping out at me, but maybe some unpreferred software, can I see some logs please, it won\' take too long to run all these
 
Can you do the following please:
#1...Download OTL.exe by OldTimer to your Desktop.
  • Close all windows and right click on OTL.exe and choose to \"Run as Administrator\"
  • Click Run Scan and let the program run uninterrupted.
  • It will produce two logs for you, one will pop up - OTL.txt, the other will be saved on your Desktop - Extras.txt. Post both logs in this thread.
#2...Download Security Check by screen317 from here
or here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.
#3...download AdwCleaner by Xplode onto your Desktop. 
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Search.
  • A logfile will automatically open after the scan has finished.
  • Please post the content of that logfile with your next response.
  • You can find the logfile at C:\\AdwCleaner[R1].txt as well.
« Last Edit: December 31, 2012, 03:15:34 AM by guestolo »

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here