Welcome! Register for a free account (or login) > How does it work?
|
|


Sep 8 2009, 01:16 PM
Post
#1
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 30 Joined: 23-February 06 Member No.: 50,867 Operating System: XP |
Hi all, I am new to this forum & I am hoping you will be able to help me with a few problems I'm having with my PC.
This seems to be an intermittant problem but it happens more often than not. When I boot up the pc no matter who's login i use (mine or the wifes) when the desktop loads, the taskbar down the bottom is frozen. When i move the mouse over it there is just a hour glass. Also certain programs won't load up like I-tunes or the defrag yet when i go into processes the itunes exe is showing. Again this is intermittent. Internet explorer seems to work ok. I have Avira anti-virus & I am using Adaware, Spybot & spywareguard. My system details are: Windows XP sp:3 here is my hijack this log: Please help me & thank you in advance. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 20:32:51, on 07/09/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\wanmpsvc.exe C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe C:\WINDOWS\system32\LVCOMSX.EXE C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\QuickTime\QTTask.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\D5OLNFR9\SUPERAntiSpyware[1].exe C:\WINDOWS\system32\MSIEXEC.exe C:\WINDOWS\system32\msiexec.exe C:\WINDOWS\system32\MsiExec.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/ig?hl=en R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file) O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - (no file) O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll O3 - Toolbar: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - (no file) O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [SRUUninstall] "C:\WINDOWS\system32\msiexec.exe" /L*v C:\WINDOWS\TEMP\SND532unin.txt /x {6AF90EF6-F7F9-466C-99F4-1774826FBB40} /qn REBOOT=ReallySuppress (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [SRUUninstall] "C:\WINDOWS\system32\msiexec.exe" /L*v C:\WINDOWS\TEMP\SND532unin.txt /x {6AF90EF6-F7F9-466C-99F4-1774826FBB40} /qn REBOOT=ReallySuppress (User 'Default user') O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000 O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/...oUploader5.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/actives.....;/as2stubie.cab O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {3EA4FA88-E0BE-419A-A732-9B79B87A6ED0} (CTVUAxCtrl Object) - http://dl.tvunetworks.com/TVUAx.cab O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www.truprint.co.uk/TruprintActivia.cab O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} - http://aolcc.aolsvc.aol.co.uk/comput...up/qdiagcc.cab O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/acti..._v1-0-3-18.cab O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/...oUploader3.cab O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/...toUploader.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.co...?1093370625640 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1127476592035 O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.kodakgallery.com/download...1/axofupld.cab O16 - DPF: {6F750203-1362-4815-A476-88533DE61D0C} (Kodak Gallery Easy Upload Manager Class) - http://www.kodakgallery.co.uk/downlo...2/axofupld.cab O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/v...fo/webscan.cab O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicro.com/spyware-scan/as4web.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/Ms...Downloader.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ge...sh/swflash.cab O16 - DPF: {DAF94F73-2AA6-44D8-A562-A28831820D34} (Pixum EasyUploadX Control) - http://www.pixum.de/int/EasyUpload/ImgUploader.cab O16 - DPF: {E862C832-3A5F-4CEB-BFAA-167B22010A71} (InfosFinder2.InfosFinder) - http://support.packardbell.com/files...fosFinder2.CAB O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://plugin.driveragent.com/files/driveragent.cab O16 - DPF: {EDFCB7CB-942C-4822-AF14-F0B687409848} (Image Uploader Control) - http://www.mypix.com/uk/uk/importer/ImageUploader4.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file) O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\\aolserv.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: Kodak Camera Connection Software (KodakCCS) - Unknown owner - C:\WINDOWS\system32\drivers\KodakCCS.exe (file missing) O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe -- End of file - 11841 bytes |
|
|
|
![]() |
Sep 18 2009, 02:40 PM
Post
#2
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 30 Joined: 23-February 06 Member No.: 50,867 Operating System: XP |
That's exactly what I have copied & pasted. The Win32kDiag.txt that it saved on my desktop! that's all that was in it.
|
|
|
|
clownfish [Resolved] Please help me: Taskbar frozen & programs won't loa Sep 8 2009, 01:16 PM
LDTate DO NOT use any TOOLS such as Combofix, Vundofix, o... Sep 12 2009, 07:54 AM
clownfish Hi there & thank you for your reply. I have do... Sep 14 2009, 01:12 AM
LDTate You have something running that is causing that er... Sep 14 2009, 04:15 PM
clownfish Hi LDTate, Combofix has been running for over half... Sep 15 2009, 12:24 PM
LDTate I'm wondering if you have a hardware issue.
H... Sep 16 2009, 08:21 AM
clownfish QUOTE (LDTate @ Sep 16 2009, 03:21 PM) I... Sep 16 2009, 10:30 AM
LDTate My guess is it's one or more of your protectio... Sep 16 2009, 11:13 AM
clownfish hmmm. not sure about that.
I have Avira & Ad-... Sep 16 2009, 11:40 AM
LDTate QUOTE (clownfish @ Sep 16 2009, 12:40 PM)... Sep 16 2009, 02:23 PM
clownfish wasn't aware I had any of the others running o... Sep 16 2009, 02:29 PM
LDTate You might want to print this out
Click Start ... Sep 16 2009, 02:42 PM
clownfish I'm having some serious problems now... i have... Sep 16 2009, 04:38 PM
LDTate That's a temp file.
Have you shutdown and res... Sep 16 2009, 04:40 PM
clownfish Ok, I managed to get into My computer & that f... Sep 16 2009, 04:47 PM
LDTate I really think you're having hardware / softwa... Sep 16 2009, 04:50 PM
clownfish Hi, that worked.
Here is the text:
Running from: ... Sep 18 2009, 02:10 PM
LDTate It should have done more then that.
Can you post ... Sep 18 2009, 02:14 PM
LDTate Post a new HijackThis log please.
Also please des... Sep 18 2009, 02:45 PM
clownfish My Taskbar is ok at the moment, it seems to be int... Sep 18 2009, 02:58 PM
LDTate I think Ad-Watch is stopping everything we try to ... Sep 18 2009, 03:04 PM
clownfish Ok, I have removed Adaware & re-booted & n... Sep 18 2009, 03:15 PM
LDTate RE: [Resolved] Please help me: Taskbar frozen & programs won't loa Sep 18 2009, 03:33 PM
clownfish Itsbeen running for 30 mins & it still says pr... Sep 18 2009, 03:53 PM
LDTate give it a few more minutes. Sep 18 2009, 03:54 PM
LDTate If you decide to stop CF.
Reboot and look for the ... Sep 18 2009, 04:06 PM
clownfish Do you think it will be saved on the c:/ drive? Sep 18 2009, 04:12 PM
LDTate QUOTE (clownfish @ Sep 18 2009, 05:12 PM)... Sep 18 2009, 04:13 PM
clownfish Ok, I think I have found the txt document:
ComboFi... Sep 18 2009, 04:19 PM
LDTate Yes that's it but it isn't complete. There... Sep 18 2009, 04:26 PM
clownfish No the pc didnt come with one! it wasa genuine... Sep 18 2009, 04:27 PM
LDTate Click Start> Run> type CMD tap enter
At the... Sep 18 2009, 04:34 PM
clownfish chkdsk is now running. Sep 18 2009, 04:38 PM
LDTate Let it run. I hope it fixes any corrupt windows fi... Sep 18 2009, 04:45 PM
LDTate FYI,
I'm headed out for the night. Will check ... Sep 18 2009, 04:48 PM
clownfish okey dokey
I'm off to bed. I will just let it ... Sep 18 2009, 04:55 PM
clownfish Ok I have checked this morning & the pc loaded... Sep 19 2009, 01:26 AM
LDTate Lets see if IE 8 is causing the problems.
Remove ... Sep 19 2009, 05:40 AM
clownfish Removed IE8, re-booted & it has reverted back ... Sep 19 2009, 12:40 PM
LDTate Please download ad13's win32ksys to your deskt... Sep 20 2009, 09:51 AM
clownfish Done all that but i fear tha we have the same prob... Sep 21 2009, 02:21 AM
LDTate That's what it does when it didn't fing an... Sep 21 2009, 07:52 PM
clownfish I'm away on business for a couple of days, wil... Sep 22 2009, 11:07 AM
LDTate RE: [Resolved] Please help me: Taskbar frozen & programs won't loa Sep 22 2009, 04:14 PM
clownfish Hi, i'm back. I have run the scan & here i... Sep 25 2009, 02:46 AM
LDTate You can delete this file.
C:\Documents and Se... Sep 27 2009, 10:54 AM
clownfish Hi, i have removed that file. What exactly was it?... Sep 28 2009, 01:13 AM
clownfish Hi LD Tate
I managed to get Combofix working, here... Sep 28 2009, 09:06 AM
LDTate What anti-virus program are you using? Sep 28 2009, 03:15 PM
clownfish Avira Sep 29 2009, 12:59 AM
LDTate Copy/paste the text in the Codebox below into note... Sep 30 2009, 06:52 PM
clownfish Hi, all done: at the moment the taskbar is ok but ... Oct 1 2009, 10:00 AM
LDTate Everything looks good to me.
Good job
The fol... Oct 1 2009, 03:35 PM
clownfish That first part of that deleted Combofix! is t... Oct 5 2009, 01:31 AM
LDTate QUOTE (clownfish @ Oct 5 2009, 02:31 AM) ... Oct 5 2009, 03:18 PM
clownfish Thanks LDT. however I have just booted up the pc ... Oct 9 2009, 07:54 AM
LDTate QUOTE (clownfish @ Oct 9 2009, 08:54 AM) ... Oct 10 2009, 09:24 AM
LDTate Since this issue appears to be resolved ... this T... Oct 20 2009, 06:38 PM![]() ![]() |
Similar Topics
| Topic Title | Replies | Topic Starter | Views | Last Action | |||
|---|---|---|---|---|---|---|---|
![]() |
16 | stacks | 525 | Yesterday, 09:25 PM Last post by: CatByte |
|||
![]() |
13 | Demos30 | 526 | Yesterday, 09:24 AM Last post by: jpshortstuff |
|||
![]() |
22 | michael1071 | 459 | Yesterday, 06:07 AM Last post by: Tomk |
|||
![]() |
14 | subsub | 160 | 12th March 2010 - 02:07 PM Last post by: CatByte |
|||
|
Time is now: 14th March 2010 - 12:44 AM |