Go Back   PCMech Forums > Windows Support > Windows Legacy Support (XP and earlier)

Need Some Help? Type Your Keywords Here:

Reply
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
Old 05-01-2008, 04:10 PM   #1
Member (8 bit)
 
Join Date: Jan 2005
Posts: 227
windows locking up

I am looking at a Dell Dimension 2400 that XP is locking up after it sits for a while. I just installed a new 1g stick of ram(It was locking up before the ram which was 256mb). The computer must not have had anti-virus since the 6 month McAfee ran out. I have ran Adaware, CCleaner, Diskeeper, AVG, NOD, SpySubtract, AVG Anti-Spyware, and found almost 5000 issues(Trojan Horses, Viruses, Malware, and Adware). All of these programs are showing no more issues but NOD. NOD is showing alot of password protected files and other issues like Windows\~\machinekeys. The computer runs great until you let it sit(1 or 2 hours). I will try to post the NOD list once it has run again. Any ideas would be great and please dont say reinstall windows. Thanks for any replies.
bearcreek is offline   Reply With Quote
Old 05-01-2008, 05:18 PM   #2
Member (9 bit)
 
Join Date: Jan 2005
Posts: 330
A HJT log might be a good idea.
law99 is offline   Reply With Quote
Old 05-01-2008, 05:19 PM   #3
Member (12 bit)
 
Kov-Ice's Avatar
 
Join Date: Dec 2001
Location: St. Louis, Missouri
Posts: 3,294
Send a message via ICQ to Kov-Ice Send a message via MSN to Kov-Ice
Have you run the AV scan in Safe Mode to remove the remaining issues?
__________________
Kov

Are You Foldin'?
Join PCMech's Folding@Home Team and Help Save Lives! Click Here!
Kov-Ice is offline   Reply With Quote
Old 05-01-2008, 05:19 PM   #4
glc
Forum Administrator
Staff
Premium Member
 
glc's Avatar
 
Join Date: May 2000
Location: Joplin MO
Posts: 37,791
I know you don't want to hear it, but if I had this machine in my shop, I'd have Windows already reinstalled. If I see 5000 issues, it's a lost cause.
glc is offline   Reply With Quote
Old 05-01-2008, 06:31 PM   #5
Member (8 bit)
 
Join Date: Jan 2005
Posts: 227
Here is the hijackthis log:


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:28:59 PM, on 5/1/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
C:\WINDOWS\system32\LxrJD31s.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\hpcoretech\comp\hptskmgr.exe
C:\Documents and Settings\wilma\Desktop\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://wapp.verizon.net/bookmarks/bm...e&bm=yh_search
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/cust...search/ie.html
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINDOWS\p_981116.exe /Q:A
O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O4 - Global Startup: Kodak software updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbar...tml?p=ZKfox000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} - http://us.chat1.yimg.com/us.yimg.com...45/yacscom.cab
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1005.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/140511be...p/RdxIE601.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Lexar JD31 (LxrJD31s) - Unknown owner - C:\WINDOWS\SYSTEM32\LxrJD31s.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe

--
End of file - 6658 bytes





I will post the NOD log once it has completed.




Yes, glc I should have reinstalled, but I wanted to try to see if it could be brought back. Thanks for all the fast replies.
bearcreek is offline   Reply With Quote
Old 05-01-2008, 07:14 PM   #6
Member (9 bit)
 
Join Date: Jan 2005
Posts: 330
Only have one actively running AV. (AVG & NOD?)
HJT should of been posted in System Security forum, maybe an advisor will find it here.
law99 is offline   Reply With Quote
Old 05-01-2008, 07:16 PM   #7
Member (8 bit)
 
Join Date: Jan 2005
Posts: 227
Both are installed for cleaning purposes.
bearcreek is offline   Reply With Quote
Old 05-02-2008, 12:45 AM   #8
glc
Forum Administrator
Staff
Premium Member
 
glc's Avatar
 
Join Date: May 2000
Location: Joplin MO
Posts: 37,791
System is clean, but with too many startup processes.

I had a nasty problem with the Google Toolbar and the updater a couple weeks ago with IE6, try uninstalling it.

Turn off either NOD32's or AVG's active protection.

Last edited by glc; 05-02-2008 at 12:49 AM.
glc is offline   Reply With Quote
Old 05-02-2008, 05:44 AM   #9
Member (8 bit)
 
Join Date: Jan 2005
Posts: 227
Come to mention it, I have a habit of checking the task manager while a system is booting up and have notice that Kodak Update has been running. When I stop this process it seems to run a little better. How do you remove some of the startups. I may be wrong, but I believe that when you use the msconfig\startup method, I dont think it completely kills the program. I would love to know how to stop Kodak. Thanks for the reply.
bearcreek is offline   Reply With Quote
Old 05-02-2008, 06:45 AM   #10
Member (12 bit)
 
Kov-Ice's Avatar
 
Join Date: Dec 2001
Location: St. Louis, Missouri
Posts: 3,294
Send a message via ICQ to Kov-Ice Send a message via MSN to Kov-Ice
Right, just uncheck the programs or services you don't wish to load.
Kov-Ice is offline   Reply With Quote
Old 05-02-2008, 11:17 AM   #11
glc
Forum Administrator
Staff
Premium Member
 
glc's Avatar
 
Join Date: May 2000
Location: Joplin MO
Posts: 37,791
Okay - you have all the following running in startup that will hog the system and is probably not necessary:

Kodak Easy Share and Kodak updater
HP Digital Imaging Monitor and HP Update
Adobe Photo Downloader
Bonjour
Google Updater

You need to find out from your customer exactly what they need and adjust that stuff accordingly. Easy Share is a huge pig, if that's what they use to offload and manage their pics, it does not have to be running in startup, it can be opened manually when needed. The only time I'm aware of when HP DIM needs to be running is if they have a HP scanner or all-in-one.
glc is offline   Reply With Quote
Reply

Bookmarks

Still Need Help? Type Your Keywords Here:


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
32 or 64 bit xp????? john ranger Windows Legacy Support (XP and earlier) 11 07-13-2003 06:22 PM
Win 95 start-up Edday Windows Legacy Support (XP and earlier) 12 07-01-2003 02:58 AM
About Windows Updates ladyjeweler Software Discussion & Support 4 05-18-2003 10:26 PM
Windows and Mouse Locking Up Harley Windows Legacy Support (XP and earlier) 1 04-30-2001 08:52 PM


All times are GMT -5. The time now is 11:05 AM.
Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.
SEO by vBSEO 3.6.0 PL2