Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!

hay guys i really need some help

SlovencSlovenc Member Posts: 290

well this is not really a hardware issue per see but my system keeps minimizing on me like every 10-15 minutes it started about a motnh a go i tried to fix it but nothing helped so im asking YOU the people at mmorpg can u help me ?

 

Comments

  • Loke666Loke666 Member EpicPosts: 21,441

    Uhm, what OS do you have? XP? Vista? W/? Linux?

    What exactly is minimizing? Browsers, explorer, games?

    Anyways: This could be a virus. Go and scan your computer on housecall.trendmicro.com/

    It never hurts.

    Can't help you more until you have provided the rest of the information :)

  • SlovencSlovenc Member Posts: 290

    first thanks for the reply :) im running xp service pack 3 and dont think its a virus cause i scaned it already with nod and spybot xD will try to scan it with your site and it minimizes games and if im like watching a movie on mozzila it just turns to the toolbar

  • noquarternoquarter Member Posts: 1,170

    Really sounds like some spyware. The automated programs don't always find everything. I'd suggest grabbing HijackThis which lets you sort through by hand (Spybot has a lot of this functionality in the advanced tools section but..) - anyway if you have decent knowledge of what should be running on a PC you should recognize things out of the ordinary; if you don't, post your log here and we can look through it for you real quick.


    I suppose there is a possibility that you keep hitting Windows key + D or Windows key + M every 15 minutes too.

  • SlovencSlovenc Member Posts: 290

    how can i get to the log ? u mean the log from the hijacker ?

  • SlovencSlovenc Member Posts: 290

    Logfile of Trend Micro HijackThis v2.0.2

    Scan saved at 22:36:03, on 9.9.2009

    Platform: Windows XP SP3 (WinNT 5.01.2600)

    MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)

    Boot mode: Normal

    Running processes:

    C:WINDOWSSystem32smss.exe

    C:WINDOWSsystem32winlogon.exe

    C:WINDOWSsystem32services.exe

    C:WINDOWSsystem32lsass.exe

    C:WINDOWSsystem32
    vsvc32.exe

    C:WINDOWSsystem32svchost.exe

    C:WINDOWSSystem32svchost.exe

    C:WINDOWSsystem32spoolsv.exe

    C:WINDOWSExplorer.EXE

    C:My FilesWinampwinampa.exe

    C:Program FilesJavajre1.6.0_07injusched.exe

    C:Program FilesCanonMyPrinterBJMyPrt.exe

    C:WINDOWSsystem32RUNDLL32.EXE

    C:WINDOWSRTHDCPL.EXE

    C:Program FilesWindows LiveMessengermsnmsgr.exe

    C:Program FilesPhilipsGoGear Mix Device Managermain.exe

    C:Program FilesCommon FilesAppleMobile Device SupportinAppleMobileDeviceService.exe

    C:Program FilesCanonIJPLMIJPLMSVC.EXE

    C:Program FilesPanda SecurityPanda Cloud AntivirusPSANHost.exe

    C:Program FilesCommon FilesNeroNero BackItUp 4NBService.exe

    C:My FilesNVIDIA Corporation
    Tune
    TuneService.exe

    C:WINDOWSsystem32PnkBstrA.exe

    C:WINDOWSsystem32PnkBstrB.exe

    C:WINDOWSsystem32svchost.exe

    C:My FilesNVIDIA CorporationSystem UpdateUpdateCenterService.exe

    C:WINDOWSsystem32ctfmon.exe

    C:My FilesMozilla Firefoxfirefox.exe

    C:WINDOWSsystem32svchost.exe

    C:WINDOWSSystem32svchost.exe

    C:WINDOWSSystem32svchost.exe

    C:WINDOWSsystem32wscntfy.exe

    C:WINDOWSsystem32wuauclt.exe

    C:Program FilesWindows LiveContactswlcomm.exe

    C:Program FilesOutlook Expressmsimn.exe

    C:Program FilesMessengermsmsgs.exe

    C:Program FilesTrend MicroHijackThisHijackThis.exe

    R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.ask.com/?o=101677&l=dis

    R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=101668&gct=&gc=1&q=

    R1 - HKLMSoftwareMicrosoftInternet ExplorerSearch,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=101668&gct=&gc=1&q=

    R1 - HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = http://toolbar.ask.com/toolbarv/askRedirect?o=101668&gct=&gc=1&q=%s

    R3 - URLSearchHook: DefaultSearchHook Class - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - C:Program FilesAskSearchinDefaultSearch.dll

    O1 - Hosts: 66.98.148.65 auto.search.msn.com

    O1 - Hosts: 66.98.148.65 auto.search.msn.es

    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:My FilesAdobeAcrobat 7.0ActiveXAcroIEHelper.dll

    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:Program FilesJavajre1.6.0_07inssv.dll

    O2 - BHO: Windows Live - Pomoc pri vpisu - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:Program FilesCommon FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll

    O2 - BHO: Megaupload Toolbar - {A057A204-BACC-4D26-C39E-35F1D2A32EC8} - (no file)

    O4 - HKLM..Run: [winampagent] "C:My FilesWinampwinampa.exe"

    O4 - HKLM..Run: [sunjavaupdatesched] "C:Program FilesJavajre1.6.0_07injusched.exe"

    O4 - HKLM..Run: [psunmain] "C:Program FilesPanda SecurityPanda Cloud AntivirusPSUNMain.exe" /Traybar

    O4 - HKLM..Run: [canonsolutionmenu] C:Program FilesCanonSolutionMenuCNSLMAIN.exe /logon

    O4 - HKLM..Run: [canonmyprinter] C:Program FilesCanonMyPrinterBJMyPrt.exe /logon

    O4 - HKLM..Run: [Internet Connection Wizard Setup Tool] C:Program FilesInternet ExplorerConnection Wizardicwsetup.exe

    O4 - HKLM..Run: [nwiz] C:Program FilesNVIDIA Corporation
    View
    wiz.exe /install

    O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup

    O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit

    O4 - HKLM..Run: [RTHDCPL] RTHDCPL.EXE

    O4 - HKCU..Run: [msnmsgr] "C:Program FilesWindows LiveMessengermsnmsgr.exe" /background

    O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe

    O4 - HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'SYSTEM')

    O4 - HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'Default user')

    O4 - Startup: ikowin32.exe

    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:My FilesAdobeAcrobat 7.0Reader
    eader_sl.exe

    O4 - Global Startup: icwsetup.exe

    O4 - Global Startup: Microsoft Office.lnk = C:My FilesMicrosoft OfficeOffice10OSA.EXE

    O4 - Global Startup: Philips Device Manager.lnk = C:Program FilesPhilipsGoGear Mix Device Managermain.exe

    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:MYFILE~1MICROS~1Office10EXCEL.EXE/3000

    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe

    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe

    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe

    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program FilesMessengermsmsgs.exe

    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

    O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1245756354859

    O16 - DPF: {BDEE1959-AB6B-4745-A29B-F492861102CC} -

    O17 - HKLMSystemCCSServicesTcpip..{F4293BA6-276A-4563-AF1C-815A4D55EE74}: NameServer = 193.189.160.13 193.189.160.23

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:PROGRA~1COMMON~1SkypeSKYPE4~1.DLL

    O23 - Service: Apple Mobile Device - Apple Inc. - C:Program FilesCommon FilesAppleMobile Device SupportinAppleMobileDeviceService.exe

    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:Program FilesCommon FilesInstallShieldDriver1050Intel 32IDriverT.exe

    O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:Program FilesCanonIJPLMIJPLMSVC.EXE

    O23 - Service: NanoServiceMain - Panda Security, S.L. - C:Program FilesPanda SecurityPanda Cloud AntivirusPSANHost.exe

    O23 - Service: Nero BackItUp Scheduler 4.0 (nero backitup scheduler 4.0) - Nero AG - C:Program FilesCommon FilesNeroNero BackItUp 4NBService.exe

    O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:WINDOWSsystem32GameMon.des.exe (file missing)

    O23 - Service: Performance Service (nTuneService) - NVIDIA - C:My FilesNVIDIA Corporation
    Tune
    TuneService.exe

    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:WINDOWSsystem32
    vsvc32.exe

    O23 - Service: PnkBstrA - Unknown owner - C:WINDOWSsystem32PnkBstrA.exe

    O23 - Service: PnkBstrB - Unknown owner - C:WINDOWSsystem32PnkBstrB.exe

    O23 - Service: ServiceLayer - Nokia. - C:Program FilesPC Connectivity SolutionServiceLayer.exe

    O23 - Service: Update Center Service (UpdateCenterService) - NVIDIA - C:My FilesNVIDIA CorporationSystem UpdateUpdateCenterService.exe

    --

    End of file - 7255 bytes

     

  • peteski123peteski123 Member UncommonPosts: 447

    Check your "msconfig" in the run command and look under "Startup" and turn off anything you dont need then reboot, often little progs run in background that can bugger up ya pc

  • noquarternoquarter Member Posts: 1,170

    O4 - Startup: ikowin32.exe

    Kill that process (use alt-ctrl-del and click processes tab), delete it from the start list with HijackThis, find the file and delete it off your drive, if it shows back up there's a command someplace in HijackThis that deletes the file on the next reboot. If it keeps showing up then try Malwarebytes anti-malware to remove it as there's some things it's specialized to remove.

  • SlovencSlovenc Member Posts: 290

    i deleted the file with hijackthis now well just see how its gonna be ... il post in 20 minutes tnks for da help :)

  • SlovencSlovenc Member Posts: 290

    ok that didnt work :(

    the malware thing worked i had a couple of trojans in the registry tnks dude !

  • noquarternoquarter Member Posts: 1,170

    cool so no more random minimizing?

  • SlovencSlovenc Member Posts: 290

    nope :D im back to being happy go lucky xD

Sign In or Register to comment.