Page 3 of 3 FirstFirst 123
Results 21 to 29 of 29
  1. #21
    Member
    Join Date
    Oct 2010
    Posts
    189
    Points
    3

    Default

    Quote Originally Posted by zep516 View Post
    .....Open Hijackthis this, this time do a system scan only.Place a check mark in the following entries:
    Click fix checked Close Hijackthis Reboot Post a new Hijackthis log

    When I clicked on "fix" it said that an "unexpected error" occurred and would I allow data on it to be sent to Hijackthis". I clicked "Yes" and it finished whatever it was doing and I rebooted my computer so I hope everything went through OK.



    Logfile of Trend Micro HijackThis v2.0.5
    Scan saved at 4:35:26 PM, on 12/20/2014
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    FIREFOX: 34.0.5 (x86 en-US)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\HP\KBD\KBD.EXE
    C:\WINDOWS\ALCXMNTR.EXE
    C:\WINDOWS\AGRSMMSG.exe
    c:\windows\system\hpsysdrv.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Documents and Settings\Compaq_Owner\Desktop\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = AOL - News, Sports, Weather, Entertainment, Local & Lifestyle
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = AOL - News, Sports, Weather, Entertainment, Local & Lifestyle
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = AOL - News, Sports, Weather, Entertainment, Local & Lifestyle
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
    O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll (file missing)
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
    O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
    O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra 'Tools' menuitem: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm (HKCU)
    O9 - Extra 'Tools' menuitem: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm (HKCU)
    O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice_tmp.exe

    --
    End of file - 6045 bytes

  2. #22
    Member Spyware Fighter zep516's Avatar
    Join Date
    Dec 2005
    Location
    Pittsburgh, Pa
    Posts
    7,178
    Points
    1308

    Default

    It didn't work. if it did these entries would be gone:
    O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
    O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
    O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    Try it again, it's probably hijackthis and it's possible you may have to reinstall it. Make sure all browser windows are closed when you do it again.

    Thanks
    Joe

  3. The Following User Says Thank You to zep516 For This Useful Post:


  4. #23
    Member
    Join Date
    Oct 2010
    Posts
    189
    Points
    3

    Default

    Quote Originally Posted by zep516 View Post
    It didn't work. Try it again, it's probably hijackthis and it's possible you may have to reinstall it. Make sure all browser windows are closed when you do it again.

    Scan saved at 6:57:05 PM, on 12/20/2014
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    FIREFOX: 34.0.5 (x86 en-US)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Documents and Settings\Compaq_Owner\Desktop\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = AOL - News, Sports, Weather, Entertainment, Local & Lifestyle
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = AOL - News, Sports, Weather, Entertainment, Local & Lifestyle
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = AOL - News, Sports, Weather, Entertainment, Local & Lifestyle
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.redirect.hp.com/svs/rdr?TY...rio&pf=desktop
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra 'Tools' menuitem: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm (HKCU)
    O9 - Extra 'Tools' menuitem: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm (HKCU)
    O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice_tmp.exe

    --
    End of file - 4676 bytes

  5. #24
    Member Spyware Fighter zep516's Avatar
    Join Date
    Dec 2005
    Location
    Pittsburgh, Pa
    Posts
    7,178
    Points
    1308

    Default

    That worked


    Please download MiniToolBox http://download.bleepingcomputer.com...iniToolBox.exe and run it.

    Checkmark following boxes:

    • Flush DNS
    • Report IE Proxy Settings
    • Reset IE Proxy Settings
    • Report FF Proxy Settings
    • Reset FF Proxy Settings
    • content of Hosts
    • List IP configuration
    • List Winsock Entries
    • List last 10 Event Viewer log
    • List Installed Programs
    • List Users, Partitions and Memory size
    • List Restore Points


    Click Go and post the result.

  6. The Following User Says Thank You to zep516 For This Useful Post:


  7. #25
    Member
    Join Date
    Oct 2010
    Posts
    189
    Points
    3

    Default

    Quote Originally Posted by zep516 View Post
    Please download MiniToolBox http://download.bleepingcomputer.com...iniToolBox.exe and run it.
    Click Go and post the result.


    MiniToolBox by Farbar Version: 30-11-2014
    Ran by Compaq_Owner (administrator) on 20-12-2014 at 19:22:33
    Running from "C:\Documents and Settings\Compaq_Owner\My Documents\Downloads"
    Microsoft Windows XP Home Edition Service Pack 2 (X86)
    Boot Mode: Normal
    ***************************************************************************

    ========================= Flush DNS: ===================================


    Windows IP Configuration



    Successfully flushed the DNS Resolver Cache.


    ========================= IE Proxy Settings: ==============================

    Proxy is not enabled.
    No Proxy Server is set.

    "Reset IE Proxy Settings": IE Proxy Settings were reset.

    ========================= FF Proxy Settings: ==============================


    "Reset FF Proxy Settings": Firefox Proxy settings were reset.

    ========================= Hosts content: =================================

    127.0.0.1 localhost

    ========================= IP Configuration: ================================

    SiS 900-Based PCI Fast Ethernet Adapter = Local Area Connection (Connected)
    1394 Net Adapter = 1394 Connection (Connected)


    # ----------------------------------
    # Interface IP Configuration
    # ----------------------------------
    pushd interface ip


    # Interface IP Configuration for "Local Area Connection"

    set address name="Local Area Connection" source=dhcp
    set dns name="Local Area Connection" source=dhcp register=PRIMARY
    set wins name="Local Area Connection" source=dhcp


    popd
    # End of interface IP configuration




    Windows IP Configuration



    Host Name . . . . . . . . . . . . : your-f78bf48ce2

    Primary Dns Suffix . . . . . . . :

    Node Type . . . . . . . . . . . . : Broadcast

    IP Routing Enabled. . . . . . . . : No

    WINS Proxy Enabled. . . . . . . . : No

    DNS Suffix Search List. . . . . . : gateway.pace.com



    Ethernet adapter Local Area Connection:



    Connection-specific DNS Suffix . : gateway.pace.com

    Description . . . . . . . . . . . : SiS 900-Based PCI Fast Ethernet Adapter

    Physical Address. . . . . . . . . : 00-13-D4-03-7F-E0

    Dhcp Enabled. . . . . . . . . . . : Yes

    Autoconfiguration Enabled . . . . : Yes

    IP Address. . . . . . . . . . . . : 172.16.1.63

    Subnet Mask . . . . . . . . . . . : 255.255.255.0

    Default Gateway . . . . . . . . . : 172.16.1.254

    DHCP Server . . . . . . . . . . . : 172.16.1.254

    DNS Servers . . . . . . . . . . . : 172.16.1.254

    Lease Obtained. . . . . . . . . . : Saturday, December 20, 2014 5:21:38 PM

    Lease Expires . . . . . . . . . . : Sunday, December 21, 2014 5:21:38 PM

    Server: homeportal
    Address: 172.16.1.254

    Name: google.com
    Addresses: 142.165.12.217, 142.165.12.214, 142.165.12.212, 142.165.12.213
    142.165.12.220, 142.165.12.215, 142.165.12.216, 142.165.12.221, 142.165.12.210
    142.165.12.219, 142.165.12.211, 142.165.12.218



    Pinging google.com [142.165.12.217] with 32 bytes of data:



    Reply from 142.165.12.217: bytes=32 time=9ms TTL=60

    Reply from 142.165.12.217: bytes=32 time=11ms TTL=60



    Ping statistics for 142.165.12.217:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

    Approximate round trip times in milli-seconds:

    Minimum = 9ms, Maximum = 11ms, Average = 10ms

    Server: homeportal
    Address: 172.16.1.254

    Name: yahoo.com
    Addresses: 98.138.253.109, 206.190.36.45, 98.139.183.24



    Pinging yahoo.com [98.139.183.24] with 32 bytes of data:



    Reply from 98.139.183.24: bytes=32 time=98ms TTL=51

    Reply from 98.139.183.24: bytes=32 time=96ms TTL=51



    Ping statistics for 98.139.183.24:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

    Approximate round trip times in milli-seconds:

    Minimum = 96ms, Maximum = 98ms, Average = 97ms



    Pinging 127.0.0.1 with 32 bytes of data:



    Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

    Reply from 127.0.0.1: bytes=32 time<1ms TTL=128



    Ping statistics for 127.0.0.1:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

    Approximate round trip times in milli-seconds:

    Minimum = 0ms, Maximum = 0ms, Average = 0ms

    ===========================================================================
    Interface List
    0x1 ........................... MS TCP Loopback interface
    0x2 ...00 13 d4 03 7f e0 ...... SiS 900-Based PCI Fast Ethernet Adapter - Packet Scheduler Miniport
    ===========================================================================
    ===========================================================================
    Active Routes:
    Network Destination Netmask Gateway Interface Metric
    0.0.0.0 0.0.0.0 172.16.1.254 172.16.1.63 20
    127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
    172.16.1.0 255.255.255.0 172.16.1.63 172.16.1.63 20
    172.16.1.63 255.255.255.255 127.0.0.1 127.0.0.1 20
    172.16.255.255 255.255.255.255 172.16.1.63 172.16.1.63 20
    224.0.0.0 240.0.0.0 172.16.1.63 172.16.1.63 20
    255.255.255.255 255.255.255.255 172.16.1.63 172.16.1.63 1
    Default Gateway: 172.16.1.254
    ===========================================================================
    Persistent Routes:
    None
    ========================= Winsock entries =====================================

    Catalog5 01 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog5 02 C:\WINDOWS\system32\winrnr.dll [16896] (Microsoft Corporation)
    Catalog5 03 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 01 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 02 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 03 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 04 C:\WINDOWS\system32\rsvpsp.dll [90112] (Microsoft Corporation)
    Catalog9 05 C:\WINDOWS\system32\rsvpsp.dll [90112] (Microsoft Corporation)
    Catalog9 06 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 07 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 08 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 09 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 10 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 11 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 12 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)
    Catalog9 13 C:\WINDOWS\system32\mswsock.dll [245248] (Microsoft Corporation)

    ========================= Event log errors: ===============================

    Application errors:
    ==================
    Error: (12/20/2014 02:21:17 PM) (Source: Application Hang) (User: )
    Description: Hanging application chrome.exe, version 39.0.2171.71, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

    Error: (12/18/2014 09:02:13 PM) (Source: Application Error) (User: )
    Description: Faulting application chrome.exe, version 39.0.2171.71, faulting module chrome.dll, version 39.0.2171.71, fault address 0x0002fdb9.
    Processing media-specific event for [chrome.exe!ws!]

    Error: (12/18/2014 08:16:17 PM) (Source: Application Error) (User: )
    Description: Faulting application chrome.exe, version 39.0.2171.71, faulting module chrome.dll, version 39.0.2171.71, fault address 0x0002fdb9.
    Processing media-specific event for [chrome.exe!ws!]

    Error: (12/18/2014 08:03:32 PM) (Source: Application Error) (User: )
    Description: Faulting application chrome.exe, version 39.0.2171.71, faulting module chrome.dll, version 39.0.2171.71, fault address 0x0002fdb9.
    Processing media-specific event for [chrome.exe!ws!]


    System errors:
    =============
    Error: (12/20/2014 01:17:43 PM) (Source: Service Control Manager) (User: )
    Description: The Print Spooler service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.

    Error: (12/20/2014 01:17:43 PM) (Source: Service Control Manager) (User: )
    Description: The Java Quick Starter service terminated unexpectedly. It has done this 1 time(s).

    Error: (12/20/2014 01:17:43 PM) (Source: Service Control Manager) (User: )
    Description: The Machine Debug Manager service terminated unexpectedly. It has done this 1 time(s).

    Error: (12/20/2014 01:17:43 PM) (Source: Service Control Manager) (User: )
    Description: The Windows User Mode Driver Framework service terminated unexpectedly. It has done this 1 time(s).

    Error: (12/20/2014 01:17:42 PM) (Source: Service Control Manager) (User: )
    Description: The iPod Service service terminated unexpectedly. It has done this 1 time(s).

    Error: (12/17/2014 08:08:56 PM) (Source: System Error) (User: )
    Description: Error code c0000218, parameter1 e184b880, parameter2 00000000, parameter3 00000000, parameter4 00000000.


    Microsoft Office Sessions:
    =========================
    Error: (12/20/2014 02:21:17 PM) (Source: Application Hang)(User: )
    Description: chrome.exe39.0.2171.71hungapp0.0.0.000000000

    Error: (12/18/2014 09:02:13 PM) (Source: Application Error)(User: )
    Description: chrome.exe39.0.2171.71chrome.dll39.0.2171.710002fdb9

    Error: (12/18/2014 08:16:17 PM) (Source: Application Error)(User: )
    Description: chrome.exe39.0.2171.71chrome.dll39.0.2171.710002fdb9

    Error: (12/18/2014 08:03:32 PM) (Source: Application Error)(User: )
    Description: chrome.exe39.0.2171.71chrome.dll39.0.2171.710002fdb9



    =========================== Installed Programs ============================
    Adobe Acrobat - Reader 6.0.2 Update (HKLM\...\{AC76BA86-0000-0000-0000-6028747ADE01}) (Version: 6.0.2 - Adobe Systems)
    Adobe Reader 6.0.1 (HKLM\...\{AC76BA86-7AD7-1033-7B44-A00000000001}) (Version: 006.000.001 - Adobe Systems Incorporated)
    Agere Systems PCI Soft Modem (HKLM\...\Agere Systems Soft Modem) (Version: - )
    Blackhawk Striker 2 from Compaq (remove only) (HKLM\...\BFAF1EEC-E987-415B-BCB8-80CDB0BC6CDF) (Version: - )
    Blasterball 2 from Compaq (remove only) (HKLM\...\75528D5F-DD82-402E-BA7C-045B7DC6A712) (Version: - )
    Blasterball 2 Holidays from Compaq (remove only) (HKLM\...\D06AB82F-D68E-405A-9886-AB8804291B6D) (Version: - )
    Blasterball 2 Remix from Compaq (remove only) (HKLM\...\9D7E7CDA-051E-4B0D-8CEE-58F41F449CF9) (Version: - )
    Bounce Symphony from Compaq (remove only) (HKLM\...\29FF6D07-4A15-41F1-9D5E-E0F3A58012C6) (Version: - )
    Crystal Maze from Compaq (remove only) (HKLM\...\C43D84CD-EBFC-48D3-A330-7868C8AD415A) (Version: - )
    Easy Internet Sign-up (HKLM\...\InstallShield_{8105684D-8CA6-440D-8F58-7E5FD67A499D}) (Version: FE UI-3.2.0.1491 - Hewlett-Packard)
    Easy Internet Sign-up (Version: FE UI-3.2.0.1491 - Hewlett-Packard) Hidden
    Final Drive Nitro from Compaq (remove only) (HKLM\...\657A0149-EEC7-4FB2-AB4F-CB7AA027748E) (Version: - )
    Help and Support Additions (HKLM\...\Help and Support Additions) (Version: 3.0.5 - Hewlett Packard)
    HP Boot Optimizer (HKLM\...\{3BA95526-6AE0-4B87-A62D-17187EF565FC}) (Version: 1.0.2 - Hewlett-Packard)
    HP Help and Support 4.0 (HKLM\...\{A93C4E94-1005-489D-BEAA-B873C1AA6CFC}) (Version: 4.00.0025 - HPQ)
    HpSdpAppCoreApp (Version: 3.00.0000 - Hewlett-Packard) Hidden
    InterVideo WinDVD Player (HKLM\...\{3912A629-0020-0005-3757-2FBA74D4DF0A}) (Version: - )
    InterVideo WinDVD Player (HKLM\...\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}) (Version: 5.0-B11.767 - InterVideo Inc.)
    iTunes (HKLM\...\InstallShield_{BE20E2F5-1903-4AAE-B1AF-2046E586C925}) (Version: 4.7.0.42 - Apple Computer, Inc.)
    iTunes (Version: 4.7.0.42 - Apple Computer, Inc.) Hidden
    J2SE Runtime Environment 5.0 (HKLM\...\{3248F0A8-6813-11D6-A77B-00B0D0150000}) (Version: 1.5.0 - Sun Microsystems, Inc.)
    Java Auto Updater (Version: 2.0.7.2 - Sun Microsystems, Inc.) Hidden
    Java(TM) 6 Update 45 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216045FF}) (Version: 6.0.450 - Oracle)
    KBD (HKLM\...\KBD) (Version: - )
    Lexibox Deluxe from Compaq (remove only) (HKLM\...\F05A08BF-E600-4FBD-A53A-3D47296B1275) (Version: - )
    Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - )
    Microsoft .NET Framework 1.1 (Version: 1.1.4322 - Microsoft) Hidden
    Microsoft Office Standard Edition 2003 (HKLM\...\{91120409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation)
    Microsoft Plus! Dancer LE (HKLM\...\{1A103D70-5C9B-4E1A-B306-5106C68F9914}) (Version: 1.1.0.3522 - Microsoft Corporation)
    Microsoft Plus! Digital Media Edition Installer (HKLM\...\{6E45BA47-383C-4C1E-8ED0-0D4845C293D7}) (Version: 1.1.0.3500 - Microsoft Corporation)
    Microsoft Plus! Photo Story 2 LE (HKLM\...\{0EB5D9B7-8E6C-4A9E-B74F-16B7EE89A67B}) (Version: 1.1.0.3463 - Microsoft Corporation)
    Microsoft Works (HKLM\...\{416D80BA-6F6D-4672-B7CF-F54DA2F80B44}) (Version: 08.04.0623 - Microsoft Corporation)
    Mozilla Firefox 34.0.5 (x86 en-US) (HKLM\...\Mozilla Firefox 34.0.5 (x86 en-US)) (Version: 34.0.5 - Mozilla)
    Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla)
    Overball from Compaq (remove only) (HKLM\...\FA7F5211-C629-4711-BD82-7DFFB08CB518) (Version: - )
    Phoenix Assault from Compaq (remove only) (HKLM\...\CCCDE323-C76D-44DA-BB5B-B8ABE767756E) (Version: - )
    Polar Bowler from Compaq (remove only) (HKLM\...\05E21449-3BA3-42BF-BBDA-95205F4EA40A) (Version: - )
    Polar Golfer from Compaq (remove only) (HKLM\...\3330A279-CC39-4A17-AE19-DA464B26AD9A) (Version: - )
    PS2 (HKLM\...\PS2) (Version: - )
    Python 2.2 pywin32 extensions (build 203) (HKLM\...\pywin32-py2.2) (Version: - )
    Python 2.2.3 (HKLM\...\Python 2.2.3) (Version: 2.2.3 - PythonLabs at Zope Corporation)
    QuickTime (HKLM\...\QuickTime) (Version: - )
    RealPlayer (HKLM\...\RealPlayer 6.0) (Version: - )
    Remove Adobe Photoshop Album 2.0 Starter Edition installer (HKLM\...\Adobe_PhotoShop_Album) (Version: - )
    Remove Microsoft Money 2005 installer (HKLM\...\Money) (Version: - )
    Remove Quicken New User Edition installer (HKLM\...\Quicken_NUE) (Version: - )
    Remove WeatherBug installer (HKLM\...\WeatherBug) (Version: - )
    Shooting Stars Pool from Compaq (remove only) (HKLM\...\045C89A0-CA37-443C-8826-F750227DE69C) (Version: - )
    SiS VGA Utilities (HKLM\...\SiS VGA Driver) (Version: - )
    Slyder from Compaq (remove only) (HKLM\...\8BA6F58B-7A91-461F-95F8-E34F8BD8AA4E) (Version: - )
    Sonic Express Labeler (HKLM\...\{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}) (Version: 2.0.0 - Sonic Solutions)
    Sonic MyDVD Plus (HKLM\...\{21657574-BD54-48A2-9450-EB03B2C7FC29}) (Version: 6.1.0 - Sonic Solutions)
    Sonic RecordNow Audio (HKLM\...\{AB708C9B-97C8-4AC9-899B-DBF226AC9382}) (Version: 2.0.0 - Sonic Solutions)
    Sonic RecordNow Copy (HKLM\...\{B12665F4-4E93-4AB4-B7FC-37053B524629}) (Version: 2.0.0 - Sonic Solutions)
    Sonic RecordNow Data (HKLM\...\{075473F5-846A-448B-BCB3-104AA1760205}) (Version: 2.0.0 - Sonic Solutions)
    Sonic Update Manager (HKLM\...\{30465B6C-B53F-49A1-9EBA-A3F187AD502E}) (Version: 3.0.0 - Sonic Solutions)
    Super Granny from Compaq (remove only) (HKLM\...\DE87FA96-7840-420C-86F9-33F3B7B3CED1) (Version: - )
    Tradewinds from Compaq (remove only) (HKLM\...\66195170-D19D-46C5-8FB7-8A4630071ADC) (Version: - )
    WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
    Windows Media Format Runtime (HKLM\...\Windows Media Format Runtime) (Version: - )
    Windows Media Player 10 (HKLM\...\Windows Media Player) (Version: - )
    Windows XP Hotfix - KB867282 (HKLM\...\KB867282) (Version: 20050127.090417 - Microsoft Corporation)
    Windows XP Hotfix - KB873339 (HKLM\...\KB873339) (Version: 20041117.092459 - Microsoft Corporation)
    Windows XP Hotfix - KB883667 (HKLM\...\KB883667) (Version: 20040812.104354 - Microsoft Corporation)
    Windows XP Hotfix - KB885250 (HKLM\...\KB885250) (Version: 20050118.202711 - Microsoft Corporation)
    Windows XP Hotfix - KB885835 (HKLM\...\KB885835) (Version: 20041027.181713 - Microsoft Corporation)
    Windows XP Hotfix - KB885836 (HKLM\...\KB885836) (Version: 20041028.173203 - Microsoft Corporation)
    Windows XP Hotfix - KB887472 (HKLM\...\KB887472) (Version: 20041014.162858 - Microsoft Corporation)
    Windows XP Hotfix - KB887742 (HKLM\...\KB887742) (Version: 20041103.095002 - Microsoft Corporation)
    Windows XP Hotfix - KB888113 (HKLM\...\KB888113) (Version: 20041116.131036 - Microsoft Corporation)
    Windows XP Hotfix - KB888239 (HKLM\...\KB888239) (Version: 20041124.162528 - Microsoft Corporation)
    Windows XP Hotfix - KB890175 (HKLM\...\KB890175) (Version: 20041201.233338 - Microsoft Corporation)
    Windows XP Hotfix - KB891781 (HKLM\...\KB891781) (Version: 20050110.165439 - Microsoft Corporation)

    ========================= Memory info: ===================================

    Percentage of memory in use: 81%
    Total physical RAM: 383.48 MB
    Available physical RAM: 69.92 MB
    Total Pagefile: 920.59 MB
    Available Pagefile: 616.25 MB
    Total Virtual: 2047.88 MB
    Available Virtual: 1978.63 MB

    ========================= Partitions: =====================================

    1 Drive c: (PRESARIO) (Fixed) (Total:143.05 GB) (Free:119.8 GB) NTFS
    2 Drive d: (PRESARIO_RP) (Fixed) (Total:5.99 GB) (Free:0.72 GB) FAT32

    ========================= Users: ========================================

    User accounts for \\YOUR-F78BF48CE2

    Administrator ASPNET Compaq_Owner
    Guest HelpAssistant SUPPORT_388945a0
    SUPPORT_fddfa904

    ========================= Restore Points ==================================

    17-12-2014 05:22:19 Configured PC-Doctor for Windows
    17-12-2014 05:24:23 Removed Compaq Organize
    17-12-2014 15:50:35 Installed Java(TM) 6 Update 45
    18-12-2014 15:53:39 System Checkpoint
    19-12-2014 16:17:02 System Checkpoint
    20-12-2014 16:53:23 System Checkpoint

    **** End of log ****
    Last edited by rjay81; 12-20-2014 at 10:25 PM.

  8. #26
    Member Spyware Fighter zep516's Avatar
    Join Date
    Dec 2005
    Location
    Pittsburgh, Pa
    Posts
    7,178
    Points
    1308

    Default

    Hello,

    Uninstall these programs. Very out dated.

    • Adobe Acrobat - Reader 6.0.2 Update
    • Adobe Reader
    • J2SE Runtime Environment 5.0
    • Java Auto Updater
    • Java(TM) 6 Update 45
    • Remove WeatherBug installer


    What is the model # of your PRESARIO ?

    Total physical RAM: 383.48 MB <----That's part of or all of the freezing problem, not enough Memory {RAM} I'm sure the computer is very slow because of that.

    I don't see an Anti Virus installed. I would suggest ----> Microsoft Security Essentials - Microsoft Windows. You said you had Avira, But I don't see it running.

    That's about all we can do to trim things down.

    Joe

  9. The Following User Says Thank You to zep516 For This Useful Post:


  10. #27
    Member
    Join Date
    Oct 2010
    Posts
    189
    Points
    3

    Default

    Quote Originally Posted by zep516 View Post
    Uninstall these programs. Very out dated.
    • Adobe Acrobat - Reader 6.0.2 Update
    • Adobe Reader
    • J2SE Runtime Environment 5.0
    • Java Auto Updater
    • Java(TM) 6 Update 45
    • Remove WeatherBug installer
    Done.


    Quote Originally Posted by zep516 View Post
    What is the model # of your PRESARIO ?
    Total physical RAM: 383.48 MB <----That's part of or all of the freezing problem, not enough Memory {RAM} I'm sure the computer is very slow because of that.
    SR1520NX. It's just for a home computer. Not used all that much but wouldn't mind some increased speed. What do you think of these? Presario SR1520NX Memory Upgrade - Compaq SR1520NX Presario Computer Memory


    Quote Originally Posted by zep516 View Post
    I don't see an Anti Virus installed. I would suggest ----> Microsoft Security Essentials - Microsoft Windows. You said you had Avira, But I don't see it running.

    The link you gave says it's no longer provided for Windows XP. I've removed and reinstalled Avira every time I went through system restore(multiple times) trying to solve the freezing problem. Not really satisfied with Avira but I guess I'll stay with it
    for now. .


    Quote Originally Posted by zep516 View Post
    That's about all we can do to trim things down.Joe

    Thank you. Everything is A LOT quieter and even faster. It tends to slow down a little more than I like when multiple(three) pages are open but still, it's so much improved. Thanks again. You've been an incredible help.
    Last edited by rjay81; 12-21-2014 at 12:29 AM.

  11. #28
    Member Spyware Fighter zep516's Avatar
    Join Date
    Dec 2005
    Location
    Pittsburgh, Pa
    Posts
    7,178
    Points
    1308

    Default

    Download DelFix by Xplode and save it to your desktop.
    • Run the tool by right click on the icon and Run as administrator option.
    • Make sure that these ones are checked:
      • Remove disinfection tools
      • Purge system restore
      • Reset system settings
    • Push Run.
    • The program will run for a few seconds and display a notepad report.
      Paste it for my review.


    I'll get back to you on the ram


    Edit:
    I'd take out the 512mb stick of ram and purchase 2 sticks of 1GB and put them in, this should make the computer fly compared to what its doing now. The links you provided are fine.

    Maximum allowed 2 GB (2 x 1GB) requires the replacement of the installed 512 MB DIMM


    http://h10025.www1.hp.com/ewfrf/wc/d...s&dlc=en&lc=en

    Joe
    Last edited by zep516; 12-21-2014 at 11:55 AM.

  12. #29
    Member
    Join Date
    Oct 2010
    Posts
    189
    Points
    3

    Default

    Quote Originally Posted by zep516 View Post
    Download DelFix by Xplode and save it to your desktop.

    Thank you. Here is the log:


    # DelFix v10.8 - Logfile created 21/12/2014 at 17:55:27
    # Updated 29/07/2014 by Xplode
    # Username : Compaq_Owner - YOUR-F78BF48CE2
    # Operating System : Microsoft Windows XP Service Pack 2 (32 bits)

    ~ Removing disinfection tools ...

    Deleted : C:\FRST
    Deleted : C:\AdwCleaner
    Deleted : C:\Documents and Settings\Compaq_Owner\Desktop\FRST-OlderVersion
    Deleted : C:\Documents and Settings\Compaq_Owner\Desktop\Addition.txt
    Deleted : C:\Documents and Settings\Compaq_Owner\Desktop\adwcleaner_4.105.exe
    Deleted : C:\Documents and Settings\Compaq_Owner\Desktop\Fixlog.txt
    Deleted : C:\Documents and Settings\Compaq_Owner\Desktop\FRST.exe
    Deleted : C:\Documents and Settings\Compaq_Owner\Desktop\FRST.txt
    Deleted : C:\Documents and Settings\Compaq_Owner\Desktop\JRT.exe
    Deleted : C:\Documents and Settings\Compaq_Owner\Desktop\JRT.txt
    Deleted : C:\Documents and Settings\Compaq_Owner\Desktop\hijackthis 2
    Deleted : C:\Documents and Settings\Compaq_Owner\Desktop\HijackThis.exe
    Deleted : C:\Documents and Settings\Compaq_Owner\Desktop\hijackthis.log
    Deleted : C:\Documents and Settings\Compaq_Owner\My Documents\Downloads\Addition.txt
    Deleted : C:\Documents and Settings\Compaq_Owner\My Documents\Downloads\FRST.exe
    Deleted : C:\Documents and Settings\Compaq_Owner\My Documents\Downloads\HijackThis (1).exe
    Deleted : C:\Documents and Settings\Compaq_Owner\My Documents\Downloads\HijackThis (2).exe
    Deleted : C:\Documents and Settings\Compaq_Owner\My Documents\Downloads\MiniToolBox (1).exe
    Deleted : C:\Documents and Settings\Compaq_Owner\My Documents\Downloads\MiniToolBox.exe
    Deleted : C:\Documents and Settings\Compaq_Owner\My Documents\Downloads\Result.txt
    Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis

    ~ Cleaning system restore ...

    Deleted : RP #1 [Configured PC-Doctor for Windows | 12/17/2014 05:22:19]
    Deleted : RP #2 [Removed Compaq Organize | 12/17/2014 05:24:23]
    Deleted : RP #3 [Installed Java(TM) 6 Update 45 | 12/17/2014 15:50:35]
    Deleted : RP #4 [System Checkpoint | 12/18/2014 15:53:39]
    Deleted : RP #5 [System Checkpoint | 12/19/2014 16:17:02]
    Deleted : RP #6 [System Checkpoint | 12/20/2014 16:53:23]
    Deleted : RP #7 [Removed Adobe Reader 6.0.1 | 12/21/2014 04:35:35]
    Deleted : RP #8 [Removed Adobe Acrobat - Reader 6.0.2 Update | 12/21/2014 04:37:17]
    Deleted : RP #9 [Removed J2SE Runtime Environment 5.0 | 12/21/2014 04:37:58]
    Deleted : RP #10 [Removed Java(TM) 6 Update 45 | 12/21/2014 04:39:01]

    New restore point created !

    ~ Resetting system settings ... OK

    ########## - EOF - ##########

Page 3 of 3 FirstFirst 123