lately when i have been using my computer, it has been sluggish, i have scanned for spyware etc.. with spysweeper and have virus scanned with avast. but to no avail. i was hoping someone may be able to shed some light, the main reason why my computer is slow i guess is because after it has been on for a short while, it runs out of RAM, i have a memory freeing program running which is keeping my computer from locking up, but i dont know why it is running out of memory all the time, it used to work fine and i have installed lots of software since it had started this so i cannot pinpoint which one it was. well anyway, any help is appreciated. [bold]HijackThis log:[/bold] ------------------------------------------------------------- Logfile of HijackThis v1.99.1 Scan saved at 8:26:17 PM, on 2/13/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\Program Files\Comodo\Firewall\cmdagent.exe C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe C:\Program Files\Unlocker\UnlockerAssistant.exe C:\Program Files\KH Blocker\khb.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe C:\Program Files\Comodo\Firewall\CPF.exe C:\Program Files\DAEMON Tools\daemon.exe C:\Program Files\PeerGuardian2\pg2.exe C:\Program Files\Dexpot\dexpot.exe C:\Program Files\SpeedFan\speedfan.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Alwil Software\Avast4\setup\avast.setup C:\Program Files\Trillian\trillian.exe C:\Program Files\ShareazaPlus\Shareaza.exe C:\WINDOWS\Integrator.exe C:\Program Files\Webroot\Spy Sweeper\SSU.EXE C:\Documents and Settings\Phantom69\My Documents\Programs\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = THA PHANTOM BROWSER O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [NvMediaCenter] "RUNDLL32.EXE" C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [KH Blocker] "C:\Program Files\KH Blocker\khb.exe" O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray O4 - HKLM\..\Run: [COMODO Firewall Pro] "C:\Program Files\Comodo\Firewall\CPF.exe" /background O4 - HKLM\..\Run: [RAM Idle Professional] "C:\Program Files\RAM Idle LE\RAM_XP.exe" O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033 O4 - HKCU\..\Run: [PeerGuardian] "C:\Program Files\PeerGuardian2\pg2.exe" O4 - HKCU\..\Run: [Dexpot 1.3] "C:\Program Files\Dexpot\dexpot.exe" O4 - Startup: AntiCrash.lnk = C:\Program Files\Dachshund Software\AntiCrash\AntiCrash.exe O4 - Startup: Hare.lnk = C:\Program Files\Dachshund Software\Hare\Hare.exe O4 - Startup: SpeedFan.lnk = C:\Program Files\SpeedFan\speedfan.exe O4 - Startup: Zoom.lnk = C:\Program Files\Dachshund Software\Zoom\Zoom.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O17 - HKLM\System\CCS\Services\Tcpip\..\{C105825E-7D57-4FFF-AFDD-8CCB1772ED3F}: NameServer = 203.49.70.20 139.134.2.190 O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: Comodo Application Agent (CmdAgent) - COMODO - C:\Program Files\Comodo\Firewall\cmdagent.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe ----------------------------------------------------------------- [bold]Running Processes:[/bold] Process PID CPU Description Company Name Verified Signer Threads System Idle Process 0 90.77 1 Interrupts n/a Hardware Interrupts 0 DPCs n/a 3.08 Deferred Procedure Calls 0 System 4 126 smss.exe 588 Windows NT Session Manager Microsoft Corporation 3 csrss.exe 656 Client Server Runtime Process Microsoft Corporation 11 winlogon.exe 680 Windows NT Logon Application Microsoft Corporation 18 services.exe 724 1.54 Services and Controller app Microsoft Corporation 16 svchost.exe 892 Generic Host Process for Win32 Services Microsoft Corporation 17 svchost.exe 956 Generic Host Process for Win32 Services Microsoft Corporation 10 svchost.exe 992 Generic Host Process for Win32 Services Microsoft Corporation 61 svchost.exe 1036 Generic Host Process for Win32 Services Microsoft Corporation 6 svchost.exe 1080 Generic Host Process for Win32 Services Microsoft Corporation 16 spoolsv.exe 1208 Spooler SubSystem App Microsoft Corporation 11 aswUpdSv.exe 1548 3 ashServ.exe 1560 avast! antivirus service 25 avast.setup 3524 avast! antivirus Update 1 cmdagent.exe 1612 Comodo Agent Service COMODO 8 wdfmgr.exe 1764 Windows User Mode Driver Manager Microsoft Corporation 4 SpySweeper.exe 1808 Spy Sweeper Engine Webroot Software, Inc. 34 ssu.exe 3592 1 ashMaiSv.exe 1388 avast! e-Mail Scanner Service ALWIL Software 8 ashWebSv.exe 1100 avast! Web Scanner ALWIL Software 18 alg.exe 2364 Application Layer Gateway Service Microsoft Corporation 3 lsass.exe 736 LSA Shell (Export Version) Microsoft Corporation 18 procexp.exe 4032 1.54 Sysinternals Process Explorer Sysinternals 8 explorer.exe 1440 1.54 Windows Explorer Microsoft Corporation 12 UnlockerAssistant.exe 1864 1 khb.exe 1896 1 ashDisp.exe 1916 avast! service GUI component 7 SpySweeperUI.exe 1932 Spy Sweeper Client Executable Webroot Software, Inc. 9 cpf.exe 1976 1.54 COMODO Firewall Pro COMODO 9 daemon.exe 1988 Virtual DAEMON Manager DT Soft Ltd. 2 pg2.exe 1996 PeerGuardian 2 Methlabs 2 Dexpot.exe 2012 Das Utility für virtuelle Desktops Dexpot GbR 1 speedfan.exe 2044 Almico Software (www.almico.com) 4 firefox.exe 3204 Firefox Mozilla Corporation 14 trillian.exe 3632 Trillian Cerulean Studios 15 Shareaza.exe 416 ShareazaPlus Faster File Sharing ShareazaPlus 8 Integrator.exe 3448 Dachshund Software 1 ----------------------------------------------------- again, any help is appreciated thanks. BTW, do you possibly think it could be from Comodo, because that is the only sort of MAJOR software if you get what i mean that i have installed lately. anyway, thanks in advance for any help.
ssu.exe 3592 1 = possible Myzor Worm?... *Download and install Kaspersky Anti-Virus. *Run a scan and post back with results.
http://www.processlibrary.com/directory/files/ssu/ apparantly its spysweeper updater, but il check the directory that the process originates from and see whether thats what it is, thanks for first reply.