Results 1 to 9 of 9
  1. #1
    Member
    Join Date
    Feb 2007
    Location
    The Netherlands
    Posts
    41
    Points
    3

    Default computer wont start

    Hi
    Too often when I shut down the computer it will not boot thereafter. According to the log book there was an active program at the conclusion but it does not say which one. To ensure that it during the closing goes wrong I made a system restore point, created just before closing.
    When I use this restore it starts OK. . So, it happens during the shutdown, who has a good tip

    John

  2. #2
    Administrator Help2Go Administrator Canuck's Avatar
    Join Date
    May 2003
    Location
    Edmonton, Alberta, Canada
    Posts
    9,817
    Points
    2034

    Default

    Check to see what is in Start Up, it could be a program that's monitoring the PC. Start > Run > type in msconfig > OK > Start up tab. If you have a lot of programs checked off, run Highjackthis and attach the log to this thread.


  3. #3
    Member
    Join Date
    Feb 2007
    Location
    The Netherlands
    Posts
    41
    Points
    3

    Default

    I Noticed that some are listed as run while I did untag them in Msconfig start and services.
    Here is the Hijack
    I;ll keep my fingers crossed.

    Logfile of HijackThis v1.99.1
    Scan saved at 19:08:45, on 19-4-2010
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Panda Security\Panda Antivirus for Netbooks\TPSrv.exe
    C:\PROGRAM FILES\PANDA SECURITY\PANDA ANTIVIRUS FOR NETBOOKS\WebProxy.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Panda Security\Panda Antivirus for Netbooks\PsCtrls.exe
    C:\Program Files\Google\Update\1.2.183.23\GoogleCrashHandler.exe
    C:\Program Files\Panda Security\Panda Antivirus for Netbooks\PavFnSvr.exe
    C:\Program Files\Common Files\Panda Security\PavShld\pavprsrv.exe
    C:\Program Files\Panda Security\Panda Antivirus for Netbooks\Firewall\PSHOST.EXE
    C:\Program Files\Panda Security\Panda Antivirus for Netbooks\PsImSvc.exe
    C:\Program Files\Panda Security\Panda Antivirus for Netbooks\PskSvc.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\Program Files\Panda Security\Panda Antivirus for Netbooks\APVXDWIN.EXE
    C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
    C:\Program Files\Caere\OmniPagePro90\opware32.exe
    C:\Program Files\NetTraffic\NetTraffic.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\WINDOWS\system32\ntvdm.exe
    C:\Program Files\Panda Security\Panda Antivirus for Netbooks\pavsrv51.exe
    D:\Program Files\SnagIt 8\SnagIt32.exe
    C:\Program Files\Panda Security\Panda Antivirus for Netbooks\AVENGINE.EXE
    C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    D:\Program Files\SnagIt 8\TSCHelp.exe
    D:\Program Files\SnagIt 8\SnagPriv.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\PROGRA~1\WinZip\winzip32.exe
    C:\DOCUME~1\johndirk\LOCALS~1\Temp\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://toolbar.ask.com/toolbarv/askR...5&gct=&gc=1&q=
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://toolbar.ask.com/toolbarv/askR...gct=&gc=1&q=%s
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
    R3 - URLSearchHook: (no name) - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - (no file)
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
    O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files\Panda Security\Panda Antivirus for Netbooks\APVXDWIN.EXE" /s
    O4 - HKLM\..\Run: [SCANINICIO] "C:\Program Files\Panda Security\Panda Antivirus for Netbooks\Inicio.exe"
    O4 - HKLM\..\Run: [UpdatePDRShortCut] "C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\8.0"
    O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
    O4 - HKLM\..\Run: [Snelkoppeling naar eigenschappenvenster voor High Definition Audio] HDAudPropShortcut.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [OmniPage] C:\Program Files\Caere\OmniPagePro90\opware32.exe
    O4 - HKLM\..\Run: [NetTraffic] C:\Program Files\NetTraffic\NetTraffic.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - Startup: SnagIt 8.lnk = D:\Program Files\SnagIt 8\SnagIt32.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O4 - Global Startup: Microsoft Works Agenda.lnk = ?
    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
    O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
    O11 - Options group: [INTERNATIONAL] International
    O15 - Trusted Zone: *.musicmatch.com
    O15 - Trusted Zone: Van der Elst
    O15 - Trusted Zone: *.musicmatch.com (HKLM)
    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
    O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
    O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
    O20 - Winlogon Notify: avldr - C:\WINDOWS\SYSTEM32\avldr.dll
    O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: Google Updateservice (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe" /svc (file missing)
    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
    O23 - Service: Panda Software Controller - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Antivirus for Netbooks\PsCtrls.exe
    O23 - Service: Panda Function Service (PAVFNSVR) - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Antivirus for Netbooks\PavFnSvr.exe
    O23 - Service: Panda Process Protection Service (PavPrSrv) - Panda Security, S.L. - C:\Program Files\Common Files\Panda Security\PavShld\pavprsrv.exe
    O23 - Service: Panda On-Access Anti-Malware Service (PAVSRV) - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Antivirus for Netbooks\pavsrv51.exe
    O23 - Service: Panda Host Service (PSHost) - Panda Security International - C:\Program Files\Panda Security\Panda Antivirus for Netbooks\Firewall\PSHOST.EXE
    O23 - Service: Panda IManager Service (PSIMSVC) - Panda Security S.L. - C:\Program Files\Panda Security\Panda Antivirus for Netbooks\PsImSvc.exe
    O23 - Service: Panda PSK service (PskSvcRetail) - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Antivirus for Netbooks\PskSvc.exe
    O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
    O23 - Service: Panda TPSrv (TPSrv) - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Antivirus for Netbooks\TPSrv.exe
    O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe

  4. #4
    Moderator Forum Moderator arraknid's Avatar
    Join Date
    Dec 2006
    Location
    France
    Posts
    6,151
    Points
    1293
    Blog Entries
    4

    Default

    The following entries should be removed using HJT..

    R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://toolbar.ask.com/toolbarv/askR...5&gct=&gc=1&q=
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://toolbar.ask.com/toolbarv/askR...gct=&gc=1&q=%s


    Also uninstall the software, as described here.

    In addition, try clicking on Start, Run and copy/pasting the following into the text box and hitting OK...

    eventvwr.msc

    In the left pane, click on Application and see if there's a flagged error for the time you shut down. If yes, double click the entry and see if the error relates to a particular program. Do the same for System. If the ASK toolbar is a problem, it may show up under the Internet Explorer header.
    Last edited by arraknid; 04-19-2010 at 03:04 PM.

  5. #5
    Moderator Forum Moderator arraknid's Avatar
    Join Date
    Dec 2006
    Location
    France
    Posts
    6,151
    Points
    1293
    Blog Entries
    4

    Default

    The consensus of opinion here is that your problem lies with an updater. In between the time you are able to start up and when you shut down, something is being downloaded into your machine which causes the next startup to fail.

    The most probable cause is Windows Update which is downloading and installing updates in the background. Other updaters will tell you what they are doing, so if you see no evidence of that, take a look at Windows Update.

    Your first move should be start up using your System Restore point, then immediately turn off WU for a day or so to see if it helps startup. If things go back to normal, reactivate WU, but this time set it to Notify me but don't automatically download or install them. That way you can control each update and install them one at a time, doing a restart after each one.

    You could also set a System Restore point after each successful startup. You may find the patch that's causing the problem, or not. Very often, trying to install lots of patches at the same time will cause problems. If there is one patch that is preventing the restart, be sure to tell WU to ignore the update in future. If it is faulty, a new one will be issued. That said, there are no known problems with recent releases.

    Let us know how it goes.

  6. #6
    Member
    Join Date
    Feb 2007
    Location
    The Netherlands
    Posts
    41
    Points
    3

    Default

    All the things you mentioned I did already mostly because to keep control. I noticed though, that something is going on as after the sleep function restart and I click Gmail it takes longer to get active. In the mean time I found Iinformation that this ,I mean no booting, is known by microsoft and they refer to this link
    Download details: User Profile Hive Cleanup Service
    I let you know what the results are
    So far It rebooted twice without trouble but, that has happened before.
    Thanks for the help.

    John
    Last edited by cerritos; 04-20-2010 at 06:12 AM.

  7. #7
    Member
    Join Date
    Feb 2007
    Location
    The Netherlands
    Posts
    41
    Points
    3

    Default

    I was cheering to soon. It worked OK for a few days.
    I did make a System Restore point, then immediately turned it off. Press restart and get a black screen after about 20 sec. Start in Save mode and with the restore point I just made and no problem. Again showing that it uccurs during shutoff
    When I ckecked the log Some foutmeldings are gone But. this one remains
    The description for Event ID (0) in Source (gupdate) not found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer to display. You may use the / AUXSOURCE = use to retrieve this description; see Help and Support for details. The following information is part of the event: Service stopped.
    Itried to reinstall google update but it just went to show what i was using and what i still could download. Nowhere I could find an uninstall tooh

    john
    Last edited by cerritos; 04-28-2010 at 04:09 PM. Reason: extra info

  8. #8
    Moderator Forum Moderator arraknid's Avatar
    Join Date
    Dec 2006
    Location
    France
    Posts
    6,151
    Points
    1293
    Blog Entries
    4

    Default

    Google updater isn't required on any machine, so uninstalling it is going to save valuable bandwidth.

    See if this helps.

  9. #9
    Member
    Join Date
    Feb 2007
    Location
    The Netherlands
    Posts
    41
    Points
    3

    Default

    I finally found the trouble
    First log message was “active program at the conclusion”
    So, I closed every program that might be interfering
    I did shut down my panda virus scanner and fire wall too.
    Then I looked at task manager but that showed 99% processor use just before the screen changed
    Then I decided to shut off everything active and when I came to the panda section It would not shutdown but got the message that it could not shutdown because a peripheral. was not working properly.
    It seems that panda was still running even though I shut it down.

    As everything worked fine I repaired panda and then it would not even start after a system recovery.
    Via safe mode I undeleted it and then everything worked perfect no problem starting. I reinstalled Panda and no problem.
    Till…I clicked activate Firewall and there was my problem back.
    I have been running it now with the zonealarm instead of the Panda firewall and and no problem. I have now restarted it many times O.K.
    Last edited by cerritos; 05-01-2010 at 03:12 AM.