I need help......

Just a quick background because I think it might all be related some how…
Was running AVG for about 2 years, no issues. Few months ago, did an update, and when I’d go to some web pages, they would just keep looping. Found online someone with a similar problem, had to disable the link scanning option. Worked fine for a few months, did another update, and pages wouldn’t load again. Said the heck with it, uninstalled AVG, and last night I installed Avast and CCleaner.

Ran Avast, found no problems. Did the CCleaner. I usually put my computer in stand by mode when I’m done because it’s so slow to start and I’m not sure which programs aren’t necessarily needed to start up-I’m not a computer literate person by the way, but had shut off some start up programs with CCleaner so wanted to see how that worked.

Restarted my computer today, was real quick start up, but my internet wouldn’t connect. Checked dsl cables, rebooted the dsl, all that good stuff-nothing. I usually use Google Chrome, went to IE and did the diagnose connection-said it was fine. So…uninstalled Avast, and now it works.

So, it worked fine last night, had no issues surfing. Shut the computer down, restart and web sites won’t load. What could be causing this to happen? I saw on another post something about web shield, maybe that’s not compatible with my computer for some reason or other? Like the link scanner in the AVG?

Here’s a run down, not sure all what info is needed, if more is needed please walk me through step by step like I’m an idiot :slight_smile:

Windows XP Pro, 32 bit
Use Malware Bytes and Search and Destroy
Currently no antivirus software
Zone Alarm fire wall-free version, think it’s updated…

Thanks in advance!!!

I think ZoneAlarm and Avast doen’t really like each other. I don’t like zonealarm neither.

I’d recommend to uninstall ZA and try something else, like comodo (only the FW) or maybe PC tools firewall.

@ Christy

If you can note down your start up entries and post it here we will be more than willing to help you ;D

I was wondering if maybe it was the firewall…but why would it work then all of a sudden not work?

Chris, can you tell me how to pull up the start up info to post it?

use hijackthis, post a log, let’s see…
btw - i would drop za! (i dare 2 say that, cauz i liked it in the early days, but thats a loooong time ago)
asyn

Well that part was easy, already had it on my computer…So another vote to ditch the ZA huh? lol…That’s fine, I don’t have a problem with that. I’ll wait till someone looks the log over and lets me know if I have other issues as well to take care of. Thanks again everyone for your help so far!!!

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:58:55 PM, on 3/20/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Trend Micro\RUBotted\TMRUBottedTray.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Documents and Settings\Admin1\Local Settings\Application Data\Google\Update\1.2.183.23\GoogleCrashHandler.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CSHelper.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Trend Micro\RUBotted\TMRUBotted.exe
C:\Program Files\Common Files\Sony Shared\WMPlugIn\SonicStageMonitoring.exe
C:\Program Files\Sony\Sony TV Tuner Library\SMceMan.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Sony\Sony TV Tuner Library\RM_SV.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Documents and Settings\Admin1\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe
C:\Documents and Settings\Admin1\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Admin1\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Admin1\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Admin1\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.sony.com/vaiopeople
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: (no name) - EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
R3 - URLSearchHook: (no name) - CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)

2nd part, apparantly it was too many characters…

O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O4 - HKLM..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM..\Run: [High Definition Audio Property Page Shortcut] HDAudPropShortcut.exe
O4 - HKLM..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM..\Run: [VAIO Recovery] C:\WINDOWS\Sonysys\VAIO Recovery\PartSeal.exe
O4 - HKLM..\Run: [WorksFUD] C:\Program Files\Microsoft Works\wkfud.exe
O4 - HKLM..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
O4 - HKLM..\Run: [Windows Defender] “C:\Program Files\Windows Defender\MSASCui.exe” -hide
O4 - HKLM..\Run: [TMRUBottedTray] “C:\Program Files\Trend Micro\RUBotted\TMRUBottedTray.exe”
O4 - HKLM..\Run: [ZoneAlarm Client] “C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe”
O4 - HKLM..\Run: [SunJavaUpdateSched] “C:\Program Files\Common Files\Java\Java Update\jusched.exe”
O4 - HKCU..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_1_0
O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU..\Run: [MSMSGS] “C:\Program Files\Messenger\msmsgs.exe” /background
O4 - HKCU..\Run: [Google Update] “C:\Documents and Settings\Admin1\Local Settings\Application Data\Google\Update\GoogleUpdate.exe” /c
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra ‘Tools’ menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra ‘Tools’ menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.sony.com/vaiopeople
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} - http://housecall65.trendmicro.com/housecall/applet/html/native/x86/win32/activex/hcImpl.cab
O16 - DPF: {3107C2A8-9F0B-4404-A58B-21BD85268FBC} - http://www.pogo.com/cdl/launcher/PogoWebLauncherInstaller.CAB
O16 - DPF: {5CB1506E-1DEA-4E63-89A7-E40E52AEA1FD} - http://usfulfillment.puretracks.com/onager.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase8942.cab
O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} (HpProductDetection Class) - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1224912575346
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} - http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
O16 - DPF: {A922B6AB-3B87-11D3-B3C2-0008C7DA6CB9} - https://media.pineconeresearch.com/ActiveX/downloadcontrol.cab
O16 - DPF: {A9F8D9EC-3D0A-4A60-BD82-FBD64BAD370D} (DDRevision Class) - http://h20264.www2.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} - http://download-games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} - https://secure.logmein.com/activex/ractrl.cab?lmi=100
O20 - Winlogon Notify: cc528ecc382 - C:\WINDOWS\system32__c0059FF8.dat (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CopySafe Helper Service (CSHelper) - Unknown owner - C:\WINDOWS\system32\CSHelper.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Trend Micro RUBotted Service (RUBotted) - Trend Micro Inc. - C:\Program Files\Trend Micro\RUBotted\TMRUBotted.exe
O23 - Service: SonicStageMonitoring - Sony Corporation - C:\Program Files\Common Files\Sony Shared\WMPlugIn\SonicStageMonitoring.exe
O23 - Service: Sony TV Tuner Controller - Sony Corporation - C:\Program Files\Sony\Sony TV Tuner Library\halsv.exe
O23 - Service: Sony TV Tuner Manager - Sony Corporation - C:\Program Files\Sony\Sony TV Tuner Library\RM_SV.exe
O23 - Service: Sony TVTA Manager - Sony Corporation - C:\Program Files\Sony\Sony TV Tuner Library\SMceMan.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe
O23 - Service: VAIO Media Video Server (VAIOMediaPlatform-VideoServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe
O23 - Service: VAIO Media Video Server (HTTP) (VAIOMediaPlatform-VideoServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
O23 - Service: VAIO Media Video Server (UPnP) (VAIOMediaPlatform-VideoServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe


End of file - 13370 bytes

@ Christy

You can easily manage your start up by installing WinPatrol Free version.

You can even delay the start up

http://www.winpatrol.com/download.html

So that you can help yourself

After installing, run WinPatrol , click start up Programs,

or

Services

I find that Avast is still running even though you have stated that you are currently not running any Antivirus program

Also Trend Micro

Hi Christy

Your HijackThis log

  • fix the following four entries - check beside entry and fix with utility in lower left corner

R3 - URLSearchHook: (no name) - EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
R3 - URLSearchHook: (no name) - CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)

You have quite a few anti-malwares on board. Are most of them on demand?

You have yr Facebook helpers too - IERESET.INF: under control of vaiopeople

  • you would know all these add-ons better than me - I think they okay

And this entry - wait for a second opinion as HjT is not my speciality

  • could be bad, maybe rubbish, but since WinLogin is referenced I leave for second opinion

O20 - Winlogon Notify: cc528ecc382 - C:\WINDOWS\system32__c0059FF8.dat (file missing)

Whatever it was: the file is missing anyway. So you can fix that entry too. Mark it, then click “fix”.

Yes, now lets have a look at yr Startup settings, Christy

lets do this - open ccleaner - make sure window is maximised (largest)

  • from menu on left hand side - open Tools - and select Startup

Now go to right hand top corner of your keyboard and press PrintScreen/SysRq

  • then open Paint - goto edit in the top menu and choose ‘paste’ from the drop down menu
  • click and you should have an image of yr Startup
  • save as a jpg file and attach it to yr next post at the webforum
  • inform members that you are posting a screenshot of yr current Startup settings

we try that for now

:slight_smile:

Here is mine

mine needs a bit of a tidy up as well

@ mkis

Looks like you are not starting HostsServer that is part of HostsMan that provides the browser speedup proxy plus logging of the effectivness of the HOSTS file.

Are you using MSCONFIG as a start up manager?
It is a diagnostic tool and should not be used for this purpose.

See:
Why can’t I use msconfig to change my services?
http://www.blackviper.com/AskBV/XP25.htm

Startup Control Panel is much better:
http://www.mlin.net/StartupCPL.shtml

yes Yokenny I have been sloppy

no not good policy to use msconfig as a startup manager. Best place is services.msc.

Hostserver was turned off, so I turned it back on. happens. downloaded to same program file as Hostmans.

Is there a good cleanup utility for msconfig for techs to take out those double entries?

  • like the google update and oa

Oops double post for some reason. :-[

My first choice would be the application itself as usually the Preferences or Options menu has settings for autostart with Windows.

boot with Selective Startup (screenshot) - Modified BOOT.INI (Safe Mode option available)

I give up on look for Options and preferences though I’m certain there is a utility
I’ve used it before Im sure of it - in end I cleaned with ccleamer

mixer, crlmonitor (Keriver), SOUNDMAN, Nerocheck, PWRISOVM were unchecked

the tvtuner was set to run - so I unchecked (it always try that on - any chance it gets )

languages - all unchecked
imekrmig - input of alternate alphabet languages such as Arabic, Chinese and Korean.
imjpmig - Input Method Editor - used to simplify the input of Asian characters in Office

slovoed - if you start these yr desktop becomes interactive langauge - mouseover, voice, etc…
live translator - options are french - english - spanish

so that leaves the double entries - oaui and googleupdate

go to ccleaner Start - its a bit different but allows me to delete these two

Restart

ccleaner has done its job well - for general users these are better utilities than msconfig
I suppose you would recommend WinPatrol - I found a good one WinUtilities (screenshot)

msconfig is for techs is a good policy ruling - still good cos its instant like services.msc
in you do tech work the Tools section is good - and different Boot mode options are available

Edit - oops nerocheck (spell mistake) and btw 1gb ram

there’s also a hijackthis forum somewhere out there.
been there, but was in german, but shure theres an english forum, too.
they usually could tell better, whats needed or not…
who knows the link?
please post.
asyn


From the supplied HJT log above …

Overview of running tasks :

smss.exe
System process
Session Manager Subsystem

winlogon.exe
System process
Microsoft Windows Logon Process

services.exe
System process
Windows Service Controller

lsass.exe
System process
Local Security Authority Service

Ati2evxx.exe
Driver
ATI Display Adapter Assistant

svchost.exe
System process
Microsoft Service Host Process

MsMpEng.exe
Anti Add/Spyware software
Microsoft Windows Defender Antispyware

svchost.exe
System process
Microsoft Service Host Process

vsmon.exe
Firewall
ZoneLabs True Vector Internet Monitor

AvastSvc.exe
Virusscan
avast! Antivirus

Ati2evxx.exe
Driver
ATI Display Adapter Assistant

Explorer.EXE
System process
Microsoft Windows Explorer

spoolsv.exe
System process
Microsoft Printer Spooler Service

AGRSMMSG.exe
System process
IBM AMR modem driver

ehtray.exe
Backgroundtask
Microsoft Media Center Tray Icon

atiptaxx.exe
Application
ATI graphics card drivers

HPWuSchd.exe
Backgroundtask
HP software updates.

MSASCui.exe
Anti Add/Spyware software
Microsoft Windows Defender Antispyware

TMRUBottedTray.exe
Backgroundtask
TMRUBottedTray.exe

zlclient.exe
Firewall
ZoneLabs Firewall Client

jusched.exe
Backgroundtask
Sun Java Update Scheduler

ctfmon.exe
System process
Alternative User Input Services

TeaTimer.exe
Application
Spybot S&D Realtime Scanner

msmsgs.exe
Application
MSN Messenger

hpqtra08.exe
Backgroundtask
Hewlett Packard Imaging

GoogleCrashHandler.exe
Backgroundtask
Google Update

AppleMobileDeviceService.exe
Backgroundtask
Apple Mobile Device Service

mDNSResponder.exe
Backgroundtask
Bonjour for Windows Component

CSHelper.exe
Backgroundtask
CSHelper.exe

ehRecvr.exe
Backgroundtask
Media Center Receiver Service

ehSched.exe
Backgroundtask
Media Center Scheduler Service

jqs.exe
Backgroundtask
Java Quick Starter Service

TMRUBotted.exe
Backgroundtask
TMRUBotted.exe

SonicStageMonitoring.exe
Backgroundtask
Sony GigaPocket

SMceMan.exe
Driver
Sony GigaPocket TV Tuner

svchost.exe
System process
Microsoft Service Host Process

VCSW.exe
Backgroundtask
Sony VAIO UPnP Client Adapter

VzCdbSvc.exe
Backgroundtask
VAIO Entertainment

VzFw.exe
Backgroundtask
Sony GigaPocket

dllhost.exe
System process
Microsoft DCOM DLL Host Process

RM_SV.exe
Backgroundtask
Sony GigaPocket

ehmsas.exe
System process
Microsoft Media Center State Aggregator Service

hpqgalry.exe
Driver
HP Digital Imaging Component

chrome.exe
Application
Chrome Browser

wscntfy.exe
System process
Microsoft Windows Security Center

svchost.exe
System process
Microsoft Service Host Process

chrome.exe
Application
Chrome Browser

chrome.exe
Application
Chrome Browser

chrome.exe
Application
Chrome Browser

chrome.exe
Application
Chrome Browser

HijackThis.exe
Application
Merijn Hijackthis

(Way too many unneeded applications running, IMHO)