TheTechGuide Forum
General Category => Tech Clinic => Topic started by: nimba on January 20, 2005, 05:16:52 PM
-
hi guys,
im new here, and here is what lead me to this forum.
When I start my computer, explorer takes a very long time to start, and the internet doesnt work. I start in safe more w/networking, same problem, and internet doesnt work. When i start in safe mode no networking, it starts normal ((obviously no internet)) . Here is my hijackthis log. (in safemode with network, which experiences that same problems as regular start up)
Logfile of HijackThis v1.99.0
Scan saved at 12:57:11 PM, on 1/20/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
G:\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.ca/ (http://\"http://google.ca/\")
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [Ink Monitor] C:\Program Files\EPSON\Ink Monitor\InkMonitor.exe
O4 - HKLM\..\Run: [CamMonitor] C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [F-StopW] C:\Program Files\FSI\F-Prot\F-StopW.EXE
O4 - HKLM\..\Run: [FRISK FP-Scheduler] C:\Program Files\FSI\F-Prot\F-Sched.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\WINDOWS\system32\spool\drivers\w32x86\3\E_SRCV02.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: EPSON Printer Status Agent2 - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
O23 - Service: NVIDIA Display Driver Service - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
Can anyone help me?
Thanks alot
-
Can you start the computer in Normal mode and run another Hijackthis log please
In safe mode it only shows minimal running processes
Post the new log back here
-
ok gonna do that now
-
Here is the newq log, it took me 20 minutes just to be able to access my drives to save it. Explorer kept hanging and i never actually fully started windows (start button and all), i ran everything from the task manager options.
Logfile of HijackThis v1.99.0
Scan saved at 1:38:22 PM, on 1/20/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\taskmgr.exe
G:\hijackthis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.ca/ (http://\"http://google.ca/\")
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [Ink Monitor] C:\Program Files\EPSON\Ink Monitor\InkMonitor.exe
O4 - HKLM\..\Run: [CamMonitor] C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [F-StopW] C:\Program Files\FSI\F-Prot\F-StopW.EXE
O4 - HKLM\..\Run: [FRISK FP-Scheduler] C:\Program Files\FSI\F-Prot\F-Sched.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\WINDOWS\system32\spool\drivers\w32x86\3\E_SRCV02.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: EPSON Printer Status Agent2 - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
O23 - Service: NVIDIA Display Driver Service - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
-
What was the last thing you remember installing before this happened?
The log looks ok
EDIT>>>Is this the only user account on the machine?
Also>>You don't appear to be, but just in case
Are you controlling anything with any Startup manager to disable anything from running on startup
-
not sure, i dont really use this one, someone else does, i think its the multimedia card reader though
-
Did you see my Edit above?
-
/smile.gif\' class=\'bbc_emoticon\' alt=\':)\' /> yes its the administrator account
no im not controlling anything with a startup manager
-
Well, I don't see anything wrong with the log, but you may want to try something
for troubleshooting purposes
Go to START>>RUN>>type in msconfig
and hit OK
Under the Startup tab is everything enabled?
If everything is enabled maybe you should try disabling all>>Including AV
and restarting the computer and see if the startup improves
If everything isn't enabled, enable everything and then run another scan with Hijackthis and post a fresh log
For the Internet connection>>do this only if everything is enabled in msconfig
Download Winsock Fix and copy it over to the other computer, try not to run it from a floppy or CD
http://www.spychecker.com/program/winsockxpfix.html (http://\"http://www.spychecker.com/program/winsockxpfix.html\")
Restart your computer after it's run
May I also ask, just a regular maintenance, are the temp folders contents regularly deleted and has a disk defrag
been run on the machine recently?
-
i tried all that, but nothing.
when i say it starts slow, i mean.... it passes the windows loading screen, and shows just my background for about 20 minutes. The disks are defraged regularly and all temps are empty
-
Well, I'm not sure what's going on.
Are all drivers up to date, including the video drivers?
To check if it's a video driver problem
Go to start>>run>>type in msconfig
Under the boot.ini tab put a check in
/BASEVIDEO
Apply and close out allowing to Restart the computer
Everything will look bigger on restart
Does it start up faster?
Try also cleaning out the Prefetch folder
C:\Windows\Prefetch <--delete the Whole contents
You could try and follow BlackVipers services chart
Try disabling what you don't need on startup (Safe)
I would leave System Restore disable however
http://www.blackviper.com/WinXP/servicecfg.htm (http://\"http://www.blackviper.com/WinXP/servicecfg.htm\")
Let me know if you find any difference
Also check out the Event Viewer
in the Control Panel>>Open Administrative Tools>>Event Viewer
Highlight Applications>>any Errors
Double click on the Errors to see what they are associated with
Also Highlight System and look for Errors
That should help identify the slow startups, still have to figure out the loss of Internet connection