Pat_61 Posted July 30, 2009 Share Posted July 30, 2009 On my laptop, it takes for ever to log in and get into the system or I never get logged on. Also, when I start up some of the processes that are suppose to show-up don't. I am pretty sure it is a virus, but I am not sure. Here are some other problems also... ----------------------------- I have a hard drive error or w/e here is what the code on the Blue screen was: "Stop: C000021a Hard Error Unknown Hard Error" That happen as I was doing a start-up Avast! Virus Scan. ------------------------------ I got another error while running avast! last night in safe mode, unless it finished and something caused it. "KERNEL_DATA_INPAGE_ERROR" Technical: "Stop: 0X0000007A (0XC03E0DB0, 0XC000000E, 0XF836CD9C, 0X1DFC8860) ftdisck.sys - Address F836CD9C, base at F8366000, Datestamp 3b7d8419" ------------------------------ Any help? Should I run HijackThis? Please and Thank You. Here are the scans I have run, if it helps: Avast Virus Scan CCleaner Ad-Aware Spyware Scan I Support TET!| If you want bunny PM Me.|Click For My DevArt^ Cowboy is the Best ^IT'S A TRAP SHINY JUST WANTS TO STALK YOU.Hell yeah I do. Whats your msn?That's how it all starts. Next he's going to ask you what flavor of candy you enjoy and whats your favorite color van. Link to comment Share on other sites More sharing options...
ElkNight Posted July 30, 2009 Share Posted July 30, 2009 You should probably post a Hijack this. What os? XP? A quick search for one of your problems http://answers.yahoo.com/question/index?qid=20070521081018AAKRjql Didnt look over it that hard though. Best of luck. 8,180WONGTONG IS THE BEST AND IS MORE SUPERIOR THAN ME#1 Wongtong stalker.Im looking for some No Limit soldiers! Link to comment Share on other sites More sharing options...
Pat_61 Posted July 30, 2009 Author Share Posted July 30, 2009 Yes, XP. I am going to run a HijackThis and post ASAP. I Support TET!| If you want bunny PM Me.|Click For My DevArt^ Cowboy is the Best ^IT'S A TRAP SHINY JUST WANTS TO STALK YOU.Hell yeah I do. Whats your msn?That's how it all starts. Next he's going to ask you what flavor of candy you enjoy and whats your favorite color van. Link to comment Share on other sites More sharing options...
Pat_61 Posted July 31, 2009 Author Share Posted July 31, 2009 Here it is... Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 8:10:25 PM, on 7/30/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0011) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss[Caution: Executable File] C:\WINDOWS\system32\winlogon[Caution: Executable File] C:\WINDOWS\system32\services[Caution: Executable File] C:\WINDOWS\system32\lsass[Caution: Executable File] C:\Program Files\Microsoft SQL Server\MSSQL$INVENTORCONTENT\Binn\sqlservr[Caution: Executable File] C:\Program Files\Intel\Wireless\Bin\ZcfgSvc[Caution: Executable File] C:\WINDOWS\Explorer[Caution: Executable File] C:\WINDOWS\system32\ctfmon[Caution: Executable File] C:\DOCUME~1\mcollins\LOCALS~1\Temp\j6ekt[Caution: Executable File] C:\WINDOWS\system32\taskmgr[Caution: Executable File] E:\HijackThis[Caution: Executable File] R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Yahoo! R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit[Caution: Executable File],C:\Documents and Settings\mcollins\bipgkq[Caution: Executable File] \s O2 - BHO: C:\WINDOWS\system32\ghaf8jkdfd.dll - {A36D2A01-00F3-42BD-F434-00BBC39C8953} - C:\WINDOWS\system32\ghaf8jkdfd.dll O3 - Toolbar: BellSouth Toolbar - {4E7BD74F-2B8D-469E-8CBD-FD60BB9AAE2E} - C:\PROGRA~1\BLSTOO~1\BLSTOO~1.DLL O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL O4 - HKLM\..\Run: [csrssx] C:\Documents and Settings\mcollins\csrssx[Caution: Executable File] O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp[Caution: Executable File] O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig[Caution: Executable File] /auto O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [wucfnri] C:\WINDOWS\system32\wucfnri[Caution: Executable File] \u O4 - HKLM\..\Run: [rgcgnqj0eeft] C:\WINDOWS\system32\qgcnnqj0eeft[Caution: Executable File] O4 - HKCU\..\Run: [ctfmon[Caution: Executable File]] C:\WINDOWS\system32\ctfmon[Caution: Executable File] O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer[Caution: Executable File] O4 - HKCU\..\Run: [Monopod] C:\DOCUME~1\mcollins\LOCALS~1\Temp\b[Caution: Executable File] O4 - HKCU\..\Run: [mswindows restore service] C:\DOCUME~1\mcollins\LOCALS~1\Temp\j6ekt[Caution: Executable File] O4 - HKLM\..\Policies\Explorer\Run: [1] \\staff-print.kennesaw.edu\PrintAccountManager\Popup[Caution: Executable File] O4 - HKLM\..\Policies\Explorer\Run: [none] C:\Program Files\Video ActiveX Object\pmsngr[Caution: Executable File] O4 - HKUS\S-1-5-21-2437839712-68032157-4027303742-79231\..\Run: [ctfmon[Caution: Executable File]] C:\WINDOWS\system32\ctfmon[Caution: Executable File] (User '?') O4 - HKUS\S-1-5-21-2437839712-68032157-4027303742-79231\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer[Caution: Executable File] (User '?') O4 - HKUS\S-1-5-21-2437839712-68032157-4027303742-79231\..\Run: [Monopod] C:\DOCUME~1\mcollins\LOCALS~1\Temp\b[Caution: Executable File] (User '?') O4 - HKUS\S-1-5-21-2437839712-68032157-4027303742-79231\..\Run: [mswindows restore service] C:\DOCUME~1\mcollins\LOCALS~1\Temp\j6ekt[Caution: Executable File] (User '?') O4 - S-1-5-21-2437839712-68032157-4027303742-79231 Startup: Seagate 2GE29VQ7 Product Registration.lnk = C:\Documents and Settings\mcollins\Application Data\Leadertech\PowerRegister\Seagate 2GE29VQ7 Product Registration[Caution: Executable File] (User '?') O4 - Startup: Seagate 2GE29VQ7 Product Registration.lnk = C:\Documents and Settings\mcollins\Application Data\Leadertech\PowerRegister\Seagate 2GE29VQ7 Product Registration[Caution: Executable File] O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL[Caution: Executable File]/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs[Caution: Executable File] (file missing) O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs[Caution: Executable File] (file missing) O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\2866091.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\2866091.dll O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://appldnld.m7z.net/qtinstall.info. ... taller[Caution: Executable File] O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 0758184655 O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://download.shockwave.com/pub/otoy/OTOYAX.cab O16 - DPF: {7D731A83-6C80-4EA4-9646-5E06A0513274} (Sandlot Loader Control) - http://www.shockwave.com/content/ballis ... nstall.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZI ... b56649.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b56907.cab O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://www.shockwave.com/content/heavyw ... er_v10.cab O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab57176.cab O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = win.kennesaw.edu O17 - HKLM\Software\..\Telephony: DomainName = win.kennesaw.edu O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = win.kennesaw.edu O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll O21 - SSODL: OuMQYriw - {F8F7B34C-525D-19E6-E51F-AC58C611DC78} - C:\WINDOWS\system32\mfrmsiv.dll O22 - SharedTaskScheduler: {874443fe-aa33-4ebf-a6ac-73208787e62d} - bestreak - (no file) O22 - SharedTaskScheduler: kjhsf87fhjdsfn93rjkndfdf - {A36D2A01-00F3-42BD-F434-00BBC39C8953} - C:\WINDOWS\system32\ghaf8jkdfd.dll O23 - Service: Alerter - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Application Management (AppMgmt) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv[Caution: Executable File] O23 - Service: Windows Audio (AudioSrv) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ[Caution: Executable File] O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv[Caution: Executable File] O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv[Caution: Executable File] O23 - Service: Background Intelligent Transfer Service (BITS) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Computer Browser (Browser) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr[Caution: Executable File] O23 - Service: Cryptographic Services (CryptSvc) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: DCOM Server Process Launcher (DcomLaunch) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: DHCP Client (Dhcp) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Logical Disk Manager (dmserver) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: DNS Client (Dnscache) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Error Reporting Service (ERSvc) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: COM+ Event System (EventSystem) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Fast User Switching Compatibility (FastUserSwitchingCompatibility) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Help and Support (helpsvc) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: HID Input Service (HidServ) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: HTTP SSL (HTTPFilter) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Server (LanmanServer) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: Workstation (lanmanworkstation) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService[Caution: Executable File] O23 - Service: TCP/IP NetBIOS Helper (LmHosts) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Network Connections (Netman) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Network Location Awareness (NLA) (Nla) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Removable Storage (NtmsSvc) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: Client Service for NetWare (NWCWorkstation) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: Remote Access Auto Connection Manager (RasAuto) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Remote Access Connection Manager (RasMan) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Remote Registry (RemoteRegistry) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: Remote Procedure Call (RPC) (RpcSs) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: Task Scheduler (Schedule) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Secondary Logon (seclogon) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: System Event Notification (SENS) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: Windows Firewall/Internet Connection Sharing (ICS) (SharedAccess) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Shell Hardware Detection (ShellHWDetection) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc[Caution: Executable File] O23 - Service: System Restore Service (srservice) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Windows Image Acquisition (WIA) (stisvc) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan[Caution: Executable File] O23 - Service: Telephony (TapiSrv) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Terminal Services (TermService) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Themes - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Distributed Link Tracking Client (TrkWks) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: User Privilege Service (usprserv) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Windows Time (W32Time) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: WebClient - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Windows Management Instrumentation (winmgmt) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: Portable Media Serial Number Service (WmdmPmSN) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Windows Management Instrumentation Driver Extensions (Wmi) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Automatic Updates (wuauserv) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: Windows Driver Foundation - User-mode Driver Framework (WudfSvc) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) O23 - Service: Wireless Zero Configuration (WZCSVC) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O23 - Service: Network Provisioning Service (xmlprov) - Unknown owner - C:\WINDOWS\System32\svchost[Caution: Executable File] (file missing) O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/mcollins/LOCALS~1/Temp/msohtml1/01/clip_image001.gif -- End of file - 13295 bytes Thanks. Anyone know how to start the missing processes? I know you do "Run...", but when I put "svchost[Caution: Executable File]" it didn't work. Edit: Opps Double post #-o I Support TET!| If you want bunny PM Me.|Click For My DevArt^ Cowboy is the Best ^IT'S A TRAP SHINY JUST WANTS TO STALK YOU.Hell yeah I do. Whats your msn?That's how it all starts. Next he's going to ask you what flavor of candy you enjoy and whats your favorite color van. Link to comment Share on other sites More sharing options...
Sbrideau Posted July 31, 2009 Share Posted July 31, 2009 Found your problem (along with other lines, but this one looks like it's the most urgent right now). This missing file O23 - Service: Windows Driver Foundation - User-mode Driver Framework (WudfSvc) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) shouldn't be missing. Maybe a repair with the win xp cd would work. Link to comment Share on other sites More sharing options...
Storm9117 Posted July 31, 2009 Share Posted July 31, 2009 What could help is a program called advanced systemcare. If they make it for XP, it will fix your registry as well as many other problems your computer might have. The free version works perfectly well. Link to comment Share on other sites More sharing options...
Pat_61 Posted July 31, 2009 Author Share Posted July 31, 2009 Found your problem (along with other lines, but this one looks like it's the most urgent right now). This missing file O23 - Service: Windows Driver Foundation - User-mode Driver Framework (WudfSvc) - Unknown owner - C:\WINDOWS\system32\svchost[Caution: Executable File] (file missing) shouldn't be missing. Maybe a repair with the win xp cd would work. Is there another way of fixing it without the CD? It would be a good dig to find it :lol: . What could help is a program called advanced systemcare. If they make it for XP, it will fix your registry as well as many other problems your computer might have. The free version works perfectly well. Have you used it? Do you think it will fix my problem? I Support TET!| If you want bunny PM Me.|Click For My DevArt^ Cowboy is the Best ^IT'S A TRAP SHINY JUST WANTS TO STALK YOU.Hell yeah I do. Whats your msn?That's how it all starts. Next he's going to ask you what flavor of candy you enjoy and whats your favorite color van. Link to comment Share on other sites More sharing options...
Storm9117 Posted August 8, 2009 Share Posted August 8, 2009 It is quite possible and yes it works for XP and it will very likely solve your problem Link to comment Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now