Very Limited-Scope Slowdown of PC

BlackDragonHun

Geek Trainee
Okay, so... I got a nice, new computer this Christmas, and it's all been running great until about now. Here're the specs on it to start:

3.20 GHz Intel Pentium 4 with Hyperthreading
16 KB primary memory cache
2048 KB secondary memory cache

300.06 GB Usable Hard Drive Capacity
144.64 GB Hard Drive Free Space

_NEC DVD_RW ND-3500AG [CD-ROM drive]
AXV CD/DVD-ROM SCSI CdRom Device [CD-ROM drive]
HL-DT-ST CD-RW GCE-8526B [CD-ROM drive] <-- Virtual drive created by Alcohol 120%

ST3300631AS [Hard drive] (300.07 GB) -- drive 0

4x 512 MB DDR2 RAM

NVIDIA GeForce 6800 GS 256 MB

Board: Intel Corporation D945PVS AAC98862-205
Serial Number: BTVS53600636
Bus Clock: 200 MHz
BIOS: Intel Corp. SN94510J.86A.0044.2005.0711.1450 07/11/2005

I'm running Windows XP Professional, Service Pack 2, fully up-to-date.

Here's a little bit of background on the programs that get run on the computer on a daily basis:
KidsWatch Time Control: Installed by my father to try to restrict the length of time used on the computer; causes automatic logouts after certain times or certain lengths of time logged in each week. Has issues with changing the system clock and not allowing it to be changed back. Due to the altered system date, I am unable to complete Windows Genuine Advantage verification.
DiskKeeper Disk Defragmenter: Set to defragment the hard drive every night; and it seems to be doing its job, from what I've seen. Program says it'll run every 2 hours from 10 PM to 4 AM every night. Job reports say it's been running, but I'm almost always logged out during those times due to KidsWatch, so I'm not exactly sure how it is.
Spyware Doctor: Used to protect against spyware because my program of choice, Ad-Aware, has been blocked by my father through KidsWatch.
AVG Anti-Virus Free Edition: Self-explanatory
Windows Defender: Also self-explanatory

Okay, anyway, to the problem:

I just got out of a spell where the computer was plagued by the VirtuMonde adware family. Not fun, but I got rid of it. After the infection was over, I began seeing some very limited-scope slowdown. After an automatic logout by KidsWatch, or a manual logout by myself, trying to click on my username to enter my password on the Windows login screen takes about 45 seconds to highlight my name, and another fifteen to display the password I'm typing. Loading my personal setting takes several minutes, whereas before this it would take not more than ten seconds to run the entire process. A login after a reboot will yield a full-speed login screen, but still an extended loadtime.

Second issue, and the only other place I've found slowdowns: When I am trying to run a bittorrent-based program, the software will freeze and slowdown exceptionally; it is impossible to monitor the file transfers.

Twice since then has Windows said it needs to increase the size of my virtual page file, though I can't figure out why.

I have no memory leaking; I'll watch Task Manager and the biggest memory hog is Firefox, who is right now using 84,696 K, but nothing's using any CPU time. The highest CPU usage I usually get is while running World of Warcraft, which will use about 40-45% of the CPU, and probably 380,000K memory at any given time. But it performs like so: I get upwards of 60- to 80-frames-per-second while playing. No slowdowns.

I've looked over my running processes half a dozen times, and I can't see anything there that shouldn't be there. I've got virus and spyware scans set to run when I can.

My friend suggested it may possibly be a hard-drive issue, but I ran chkdsk and it didn't find anything wrong, and my disk defragmenter shows it running at near-optimal performance.

Any ideas? I know this is an enormous wall of text, but I tried to get all relevant information I could think of out there so you could look at it.

Thanks

--BlackDragonHunt

EDIT: Updated the World of Warcraft running info: I had it written down from memory, and I got some numbers a bit mixed up; this is from it running right now.
 
Everything seems okay on startup, except there's one thing I can't locate, or can't find any info on:
CMIRMR~1 c:\WINDOWS\CMIRMR~1.EXE

I can't find the listed executable file in my Windows folder, nor can I find any information on it on Sysinfo, or a regular Google search.

--BlackDragonHunt
 
There is some information regarding this here.
However I would strongly advise that you download Hijack This available here, follow the instructions and post the resulting log to, if this forum deals with HJT, here, or a suitable arena that is capable of dealing with the log.
 
Alright; I got HijackThis, and I ran a scan. A cursory glance on my own has me thinking everything looks okay, but I'm not entirely sure on everything. Before I go wandering elsewhere and throwing my log there, I'd like to ask if there's anyone here who's knowledgable about these things and would like me to post it here.

--BlackDragonHunt
 
That would be the best Dragon, and should not this excellent forum be able to deal with said log, then you can obviously show it to the cats at Merijn.
 
Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 1:07:55 PM, on 8/18/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Intel\IDU\awServ.exe
C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
C:\WINDOWS\System32\GEARSec.exe
C:\Program Files\LogMeIn\RaMaint.exe
C:\Program Files\LogMeIn\LogMeIn.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Symantec\Norton Ghost\Agent\PQV2iSvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Spyware Doctor\svcntaux.exe
C:\Program Files\Spyware Doctor\swdsvc.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Spyware Doctor\SDTrayApp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Eraser\eraser.exe
C:\Program Files\Gaim\gaim.exe
C:\Program Files\Computer Business Solutions\Time Control\TCTray.exe
C:\Program Files\Google\Gmail Notifier\gnotify.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\LimeWire\LimeWire.exe
C:\Program Files\Intel\IDU\iptray.exe
C:\Documents and Settings\Jeremy Davidson\My Documents\Programs\HiJackThis_v2.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll (file missing)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - (no file)
O4 - HKLM\..\Run: [CmiRemoveDir] C:\WINDOWS\CMIRMR~1.EXE
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [drkly16j] rundll32.exe drkly16j.dll,ServiceCheck
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SDTray] C:\Program Files\Spyware Doctor\SDTrayApp.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Eraser] C:\Program Files\Eraser\eraser.exe -hide
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: Gmail Notifier.lnk = C:\Program Files\Google\Gmail Notifier\gnotify.exe
O4 - Global Startup: Gaim.lnk = C:\Program Files\Gaim\gaim.exe
O4 - Global Startup: Time Control System Tray.lnk = C:\Program Files\Computer Business Solutions\Time Control\TCTray.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\program files\spyware doctor\filterlsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\spyware doctor\filterlsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\spyware doctor\filterlsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\spyware doctor\filterlsp.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{CA196AFA-83D0-4015-ADAA-EE02C3665480}: NameServer = 204.118.40.49,204.118.40.5
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O20 - AppInit_DLLs: WIKI.DLL
O20 - Winlogon Notify: KWNTA - C:\WINDOWS\SYSTEM32\ICKGW32I.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: Admin Works Agent X8 (AWService) - OSA Technologies Inc., An Avocent Company - C:\Program Files\Intel\IDU\awServ.exe
O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
O23 - Service: GEARSecurity - GEAR Software - C:\WINDOWS\System32\GEARSec.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\RaMaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\LogMeIn.exe
O23 - Service: Network LookOut Agent (NetworkLookOutAgent) - Unknown owner - C:\WINDOWS\system32\nladm\NLAgentProSvc.exe (file missing)
O23 - Service: Norton Ghost - Symantec Corporation - C:\Program Files\Symantec\Norton Ghost\Agent\PQV2iSvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - Unknown owner - C:\Program Files\Spyware Doctor\svcntaux.exe
O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe

--
End of file - 7914 bytes

There's my log, if anyone can do anything with it, I'd love to get some help with this. :D

Thanks again,

--BlackDragonHunt
 
I can't comment on the rest of the log but you have LimeWire in there which is a killer, I would not be surprised if your troubles aren't down to that.
You have 2 or 3 missing files also but I'll leave it to the experts.
 
If you all think LimeWire might be an issue, I'll gladly get rid of it. More a convenience than anything. I keep it pretty well monitored, though.

--BlackDragonHunt
 
I very much doubt that LimeWire will even have an Uninstall aspect but you can try.
Even if you can there will still be aspects of it buried deep in the Registry.
 
Back
Top