ComputerForum.com ComputerForum.com  
Go Back   Computer Forum > Computer Software > Operating Systems

Reply
 
LinkBack Thread Tools Display Modes
Old 05-22-2008, 05:34 PM   #1 (permalink)
Diamond Member
 
Dropkickmurphys's Avatar
 
Join Date: May 2005
Location: Worthing, UK (Uni at Kent)
Age: 19
Posts: 1,885
Default Windows XP Strange Problem

hey there,

i have a problem with my Windows XP Pro SP2 installation on my pc. Most of the time it is fine, but sometimes it acts strange.

i usually have programs such as MSN, Xfire, Teamspeak, iTunes running. i like to use Safari / Firefox 2 / Firefox 3 beta browsers.

sometimes when i run these (inc only 1 browser), my pc will start freezing for about 1 or 2 seconds every now and again, as if it is being overloaded, i run the task manager and the CPU usage is fine, i have 2gb of ram, which according to my G15 is running normal, so i am unable to locate the problem here. has anyone got any ideas?

thanks

Dave.
__________________
Intel Core2 Quad Q6600 2.4Ghz (OC @ 2.9GHz)
Gigabyte P35C-DS3R motherboard
2GB 6400 DDR240 RAM
512Mb Geforce 8600GT OC'd (Hoping for a 9800GT soon)
500GB Seagate 7,500RPM HDD
Lite-on 20x DVD+RW
OCZ GameXStream 600W PSU
CoolerMaster Black Centurian 534 Case
Samsung 19" 1440x900 SyncMaster 940BW monitor / Samsung 19" 1440x900 TV
Dual Booting: Windows XP Proffessional SP2 / Windows Vista Business SP1
Dropkickmurphys is offline   Reply With Quote


Old 05-23-2008, 03:41 PM   #2 (permalink)
3uL
New Member
 
Join Date: May 2008
Posts: 15
Default

Usually this problem occurs because of virus.. You better scan your computer with antivirus like kaspersky..
3uL is offline   Reply With Quote
Old 05-23-2008, 03:47 PM   #3 (permalink)
Diamond Member
 
GameMaster's Avatar
 
Join Date: Dec 2007
Location: Croatia
Age: 16
Posts: 3,936
Default

Absolutely. Besides, using Safari will only get you a virus!

If you're willing to, we can check for viruses.

Click here to download HJTsetup.exe
  • Save HJTsetup.exe to your desktop.
  • Double click on the HJTsetup.exe icon on your desktop.
  • By default it will install to C:\Program Files\Hijack This.
  • Continue to click Next in the setup dialogue boxes until you get to the Select Additional Tasks dialogue.
  • Put a check by Create a desktop icon then click Next again.
  • Continue to follow the rest of the prompts from there.
  • At the final dialogue box click Finish and it will launch Hijack This.
  • Click on the Do a system scan and save a log file button. It will scan and then ask you to save the log.
  • Click Save to save the log file and then the log will open in notepad.
  • Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
  • Come back here to this thread and Paste the log in your next reply.
  • DO NOT have Hijack This fix anything yet. Most of what it finds will be harmless or even required.
__________________
dznutz:
Quote:
a firewall is like a gate. it keeps the bad people out and the dog in but it's not fool proof. but lets say you download and run an infected program. that will be like letting in a "friend." if it's infected you run that program you can get malware. that's like a friend raping your family and stealing your money.
GameMaster is offline   Reply With Quote
Old 05-24-2008, 01:29 AM   #4 (permalink)
Diamond Member
 
Dropkickmurphys's Avatar
 
Join Date: May 2005
Location: Worthing, UK (Uni at Kent)
Age: 19
Posts: 1,885
Default

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 01:31:18, on 24/05/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\XpertVision\TBPanel.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe
C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe
C:\Program Files\UltraMon\UltraMon.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDClock.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDPop3.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDMedia.exe
C:\Program Files\Schmads Inc\G15_TeamSpeak\G15_TeamSpeak.exe
C:\Documents and Settings\Dave\Desktop\G15NetSpeed\G15NetSpeed.exe
C:\Program Files\My Lockbox\flockbox.exe
C:\Program Files\UltraMon\UltraMonTaskbar.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Kontiki\KHost.exe
C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Kontiki\KService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\iTunes\iTunes.exe
C:\Program Files\Xfire\xfire.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceHelper.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\distnoted.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Safari\Safari.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *.local
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [Gainward] C:\Program Files\XpertVision\TBPanel.exe /A
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [Launch LCDMon] "C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe"
O4 - HKLM\..\Run: [Launch LGDCore] "C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDE
O4 - HKLM\..\Run: [UltraMon] "C:\Program Files\UltraMon\UltraMon.exe" /auto
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [flockbox] C:\Program Files\My Lockbox\flockbox.exe /a
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

--
End of file - 7153 bytes

this is weird lol... i did do a scan with AVG Free 8.0 but it came up with nothing.
__________________
Intel Core2 Quad Q6600 2.4Ghz (OC @ 2.9GHz)
Gigabyte P35C-DS3R motherboard
2GB 6400 DDR240 RAM
512Mb Geforce 8600GT OC'd (Hoping for a 9800GT soon)
500GB Seagate 7,500RPM HDD
Lite-on 20x DVD+RW
OCZ GameXStream 600W PSU
CoolerMaster Black Centurian 534 Case
Samsung 19" 1440x900 SyncMaster 940BW monitor / Samsung 19" 1440x900 TV
Dual Booting: Windows XP Proffessional SP2 / Windows Vista Business SP1
Dropkickmurphys is offline   Reply With Quote
Old 05-24-2008, 10:10 AM   #5 (permalink)
Diamond Member
 
GameMaster's Avatar
 
Join Date: Dec 2007
Location: Croatia
Age: 16
Posts: 3,936
Default

Hmm the logs is mostly clean, no traces of a spyware that would be your problem.
Let's fix these two items and then continue with your main problem.

Before the fixing, please disable Spybot's Tea timer. It stops the entries being fixed.
Don't forget to re-enable it after this!
When you disabled it, reboot your computer and continue:
Open your HijackThis again and choose Do a system scan only.
Check these entries:

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

Now click Fix checked. Reboot your PC and re-enable your Tea timer protection.
__________________
dznutz:
Quote:
a firewall is like a gate. it keeps the bad people out and the dog in but it's not fool proof. but lets say you download and run an infected program. that will be like letting in a "friend." if it's infected you run that program you can get malware. that's like a friend raping your family and stealing your money.
GameMaster is offline   Reply With Quote


Old 05-24-2008, 10:19 AM   #6 (permalink)
Diamond Member
 
Dropkickmurphys's Avatar
 
Join Date: May 2005
Location: Worthing, UK (Uni at Kent)
Age: 19
Posts: 1,885
Default

Done that, need to do anything else?
__________________
Intel Core2 Quad Q6600 2.4Ghz (OC @ 2.9GHz)
Gigabyte P35C-DS3R motherboard
2GB 6400 DDR240 RAM
512Mb Geforce 8600GT OC'd (Hoping for a 9800GT soon)
500GB Seagate 7,500RPM HDD
Lite-on 20x DVD+RW
OCZ GameXStream 600W PSU
CoolerMaster Black Centurian 534 Case
Samsung 19" 1440x900 SyncMaster 940BW monitor / Samsung 19" 1440x900 TV
Dual Booting: Windows XP Proffessional SP2 / Windows Vista Business SP1
Dropkickmurphys is offline   Reply With Quote
Old 05-24-2008, 11:08 AM   #7 (permalink)
Bronze Member
 
xsreality's Avatar
 
Join Date: May 2008
Location: Nagpur, India
Age: 21
Posts: 38
Default

Check for the voltages through a software like SiSoft Sandra... Also open your cabinet and clean the RAM chips. If nothing helps format and reinstall the operating system.
PS - Stop using Safari. Mozilla Firefox 3 which will be with us in a month is the best browser around.
__________________
XSRealities.com - The Zen PC and You
xsreality is offline   Reply With Quote
Old 05-24-2008, 11:10 AM   #8 (permalink)
Diamond Member
 
Dropkickmurphys's Avatar
 
Join Date: May 2005
Location: Worthing, UK (Uni at Kent)
Age: 19
Posts: 1,885
Default

im only using Safari because im trying it out, and i like the look of it lol....

i usually use Firefox, like i said in my post

i currently have Firefox 2, 3 beta and safari installed, that i use.

thing is, this only happens sometimes, and it can be fixed by a restart or by logging out then back in....
__________________
Intel Core2 Quad Q6600 2.4Ghz (OC @ 2.9GHz)
Gigabyte P35C-DS3R motherboard
2GB 6400 DDR240 RAM
512Mb Geforce 8600GT OC'd (Hoping for a 9800GT soon)
500GB Seagate 7,500RPM HDD
Lite-on 20x DVD+RW
OCZ GameXStream 600W PSU
CoolerMaster Black Centurian 534 Case
Samsung 19" 1440x900 SyncMaster 940BW monitor / Samsung 19" 1440x900 TV
Dual Booting: Windows XP Proffessional SP2 / Windows Vista Business SP1
Dropkickmurphys is offline   Reply With Quote
Old 05-24-2008, 11:23 AM   #9 (permalink)
Bronze Member
 
xsreality's Avatar
 
Join Date: May 2008
Location: Nagpur, India
Age: 21
Posts: 38
Default

Since it happens randomly, virus may not be the cause. Is it a fresh (newly installed OS) system or has it been a long time since you installed both the OS? It can happen overtime as well due to incorrect uninstallation and infrequent defragmentation.
__________________
XSRealities.com - The Zen PC and You
xsreality is offline   Reply With Quote
Old 05-24-2008, 01:53 PM   #10 (permalink)
Diamond Member
 
GameMaster's Avatar
 
Join Date: Dec 2007
Location: Croatia
Age: 16
Posts: 3,936
Default

Yeah probably...but I have no ideas, I'm afraid my specialty is only malware removal...
__________________
dznutz:
Quote:
a firewall is like a gate. it keeps the bad people out and the dog in but it's not fool proof. but lets say you download and run an infected program. that will be like letting in a "friend." if it's infected you run that program you can get malware. that's like a friend raping your family and stealing your money.
GameMaster is offline   Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Similar Threads
Thread Thread Starter Forum Replies Last Post
Presentation English, not sure if it is good Marten Off Topic Chat 25 01-09-2008 08:42 PM
Friends HJT Log, Details inside mpic92 Computer Security 9 10-11-2006 03:07 AM
Any Concern? da5176 Computer Security 6 10-07-2006 06:54 PM
Critical Updates!!! PaulAnthony2233 Computer Security 11 04-05-2006 04:16 AM
hijackthis log| HELP dorkins Computer Security 11 11-07-2005 01:07 AM

All times are GMT +1. The time now is 11:09 AM.


Powered by: vBulletin Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 ©2008, Crawlability, Inc.
Copyright © 2002-2008 Computer Forum and Web Design Forum