1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

almost everything not responding . . .help!!

Discussion in 'Hardware' started by Sheree1313, Jul 22, 2006.

Thread Status:
Not open for further replies.
Advertisement
  1. Sheree1313

    Sheree1313 Thread Starter

    Joined:
    Jul 26, 2003
    Messages:
    143
    tgcmd.exe not responding, explorer.exe not responding, mci comman handling not responding, nview cdproc not responding, nvidia twin view window not responding, and sys fader not responding. I'm scared.
     
  2. kiwiguy

    kiwiguy

    Joined:
    Aug 17, 2003
    Messages:
    17,584
    To start off, you have done a reboot?

    Do you run an up to date antivirus program?
     
  3. Sheree1313

    Sheree1313 Thread Starter

    Joined:
    Jul 26, 2003
    Messages:
    143
    yes, i reboot to just get to use the computer at all

    I use avast and its up to date, also spybot , atf cleaner, clean up!, windows defender, spyware blaster, cw shredder
     
  4. valis

    valis Moderator

    Joined:
    Sep 24, 2004
    Messages:
    76,135
    why cw shredder? Have you had a coolweb infection?

    Please do this:

    ·Click here to download HJTsetup.exe
    · Save HJTsetup.exe to your desktop.
    · Doubleclick on the HJTsetup.exe icon on your desktop.
    · By default it will install to C:\Program Files\Hijack This.
    · Continue to click Next in the setup dialogue boxes until you get to the Select Addition Tasks dialogue.
    · Put a check by Create a desktop icon then click Next again.
    · Continue to follow the rest of the prompts from there.
    · At the final dialogue box click Finish and it will launch Hijack This.
    · Click on the Do a system scan and save a logfile button. It will scan and the log should open in notepad.
    · Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
    · Come back here to this thread and Paste the log in your next reply.
    · DO NOT have Hijack This fix anything yet. Most of what it finds will be harmless or even required.
     
  5. Sheree1313

    Sheree1313 Thread Starter

    Joined:
    Jul 26, 2003
    Messages:
    143
    Logfile of HijackThis v1.99.1
    Scan saved at 11:09:24 PM, on 7/22/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Defender\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\cisvc.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2C1.EXE
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\WINDOWS\system32\HPZipm12.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Program Files\ewido anti-spyware 4.0\ewido.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Support.com\bin\tgcmd.exe
    C:\Program Files\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.bellsouth.net/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.emachines.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.bellsouth.net/
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O4 - HKLM\..\Run: [EPSON Stylus C64 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2C1.EXE /P23 "EPSON Stylus C64 Series" /O6 "USB001" /M "Stylus C64"
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\Support.com\BellSouth\hcenter.exe" /starthidden /tgcmdwrapper
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
    O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
    O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
    O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.c...ls/en/x86/client/wuweb_site.cab?1093437711939
    O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/virusinfo/webscan.cab
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
    O16 - DPF: {B942A249-D1E7-4C11-98AE-FCB76B08747F} (RealArcadeRdxIE Class) - http://games-dl.real.com/gameconsole/Bundler/CAB/RealArcadeRdxIE.cab
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
    O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
     
  6. Sheree1313

    Sheree1313 Thread Starter

    Joined:
    Jul 26, 2003
    Messages:
    143
    I'm old and I can't remember for sure but I think cool web search was on here at one time in 2005
     
  7. valis

    valis Moderator

    Joined:
    Sep 24, 2004
    Messages:
    76,135
    nothing jumps out at me from that log, but I would still let an expert parse it to be sure. Where do you see signs of these apps not responding?

    Check your event log for errors: start > run > eventvwr.msc, that will open up an explorer like window with apps, security, and system on the left pane; click on system, check for any red exes or exclamatoin points (i'm old too, can't remember which) and if possible, copy and paste as much info as you can regarding them. Then do the same for apps. If there are a ton, as there very well could be, just grab the ones closest to when you tried to start the apps and noticed the problem.

    v
     
  8. Sheree1313

    Sheree1313 Thread Starter

    Joined:
    Jul 26, 2003
    Messages:
    143
    Event Type: Warning
    Event Source: WinDefend
    Event Category: None
    Event ID: 3004
    Date: 7/22/2006
    Time: 10:29:09 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Windows Defender Real-Time Protection agent has detected spyware or other potentially unwanted software.
    For more information please see the following:
    http://www.microsoft.com
    Scan ID: {D452D2EF-1899-4772-A93F-3DAEDDDC927E}
    User: JIMCOMPUTER\JIJO
    Name: Unknown
    ID:
    Severity ID:
    Category ID:
    Path Found: file:C:\WINDOWS\tasks\WebReg psc 1400 series.job;file:C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exe;taskscheduler:C:\WINDOWS\tasks\WebReg psc 1400 series.job
    Alert Type: Unknown
    Detection Type:


    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


    Event Type: Error
    Event Source: Service Control Manager
    Event Category: None
    Event ID: 7011
    Date: 7/22/2006
    Time: 6:22:17 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Timeout (30000 milliseconds) waiting for a transaction response from the NVSvc service.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

    Event Type: Error
    Event Source: Service Control Manager
    Event Category: None
    Event ID: 7000
    Date: 7/22/2006
    Time: 6:22:13 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    The IMAPI CD-Burning COM Service service failed to start due to the following error:
    The service did not respond to the start or control request in a timely fashion.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


    Event Type: Error
    Event Source: Service Control Manager
    Event Category: None
    Event ID: 7009
    Date: 7/22/2006
    Time: 6:22:13 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Timeout (30000 milliseconds) waiting for the IMAPI CD-Burning COM Service service to connect.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


    Event Type: Warning
    Event Source: W32Time
    Event Category: None
    Event ID: 36
    Date: 7/22/2006
    Time: 12:56:25 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    The time service has not been able to synchronize the system time for 49152 seconds because none of the time providers has been able to provide a usable time stamp. The system clock is unsynchronized.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


    Event Type: Error
    Event Source: Application Error
    Event Category: None
    Event ID: 1001
    Date: 7/22/2006
    Time: 10:08:02 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Fault bucket 296999485.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
    Data:
    0000: 42 75 63 6b 65 74 3a 20 Bucket:
    0008: 32 39 36 39 39 39 34 38 29699948
    0010: 35 0d 0a 5..
    Event Type: Error
    Event Source: Application Error
    Event Category: None
    Event ID: 1000
    Date: 7/22/2006
    Time: 10:07:50 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Faulting application firefox.exe, version 1.8.20060.50817, faulting module nss3.dll, version 3.10.2.0, fault address 0x0002f7ff.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
    Data:
    0000: 41 70 70 6c 69 63 61 74 Applicat
    0008: 69 6f 6e 20 46 61 69 6c ion Fail
    0010: 75 72 65 20 20 66 69 72 ure fir
    0018: 65 66 6f 78 2e 65 78 65 efox.exe
    0020: 20 31 2e 38 2e 32 30 30 1.8.200
    0028: 36 30 2e 35 30 38 31 37 60.50817
    0030: 20 69 6e 20 6e 73 73 33 in nss3
    0038: 2e 64 6c 6c 20 33 2e 31 .dll 3.1
    0040: 30 2e 32 2e 30 20 61 74 0.2.0 at
    0048: 20 6f 66 66 73 65 74 20 offset
    0050: 30 30 30 32 66 37 66 66 0002f7ff
    0058: 0d 0a ..


    Event Type: Error
    Event Source: Application Hang
    Event Category: (101)
    Event ID: 1002
    Date: 7/22/2006
    Time: 9:39:05 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Hanging application explorer.exe, version 6.0.2900.2180, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
    Data:
    0000: 41 70 70 6c 69 63 61 74 Applicat
    0008: 69 6f 6e 20 48 61 6e 67 ion Hang
    0010: 20 20 65 78 70 6c 6f 72 explor
    0018: 65 72 2e 65 78 65 20 36 er.exe 6
    0020: 2e 30 2e 32 39 30 30 2e .0.2900.
    0028: 32 31 38 30 20 69 6e 20 2180 in
    0030: 68 75 6e 67 61 70 70 20 hungapp
    0038: 30 2e 30 2e 30 2e 30 20 0.0.0.0
    0040: 61 74 20 6f 66 66 73 65 at offse
    0048: 74 20 30 30 30 30 30 30 t 000000
    0050: 30 30 00


    Event Type: Error
    Event Source: nview_info
    Event Category: None
    Event ID: 1
    Date: 7/22/2006
    Time: 6:26:06 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    The description for Event ID ( 1 ) in Source ( nview_info ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: NVIEW : rundll32: Shared heap almost exhausted (less than 2K left)...
    .


    Event Type: Error
    Event Source: nview_info
    Event Category: None
    Event ID: 1
    Date: 7/22/2006
    Time: 6:26:06 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    The description for Event ID ( 1 ) in Source ( nview_info ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: NVIEW : rundll32: Shared heap almost exhausted (less than 2K left)...
    .


    Event Type: Error
    Event Source: nview_info
    Event Category: None
    Event ID: 1
    Date: 7/22/2006
    Time: 6:26:06 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    The description for Event ID ( 1 ) in Source ( nview_info ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: NVIEW : rundll32: Shared heap almost exhausted (less than 2K left)...
    .


    Event Type: Warning
    Event Source: Userenv
    Event Category: None
    Event ID: 1517
    Date: 7/22/2006
    Time: 6:18:26 PM
    User: NT AUTHORITY\SYSTEM
    Computer: JIMCOMPUTER
    Description:
    Windows saved user JIMCOMPUTER\JIJO registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use.

    This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


    Event Type: Warning
    Event Source: Userenv
    Event Category: None
    Event ID: 1524
    Date: 7/22/2006
    Time: 6:18:22 PM
    User: JIMCOMPUTER\JIJO
    Computer: JIMCOMPUTER
    Description:
    Windows cannot unload your classes registry file - it is still in use by other applications or services. The file will be unloaded when it is no longer in use.



    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


    Event Type: Error
    Event Source: Application Hang
    Event Category: (101)
    Event ID: 1002
    Date: 7/22/2006
    Time: 12:12:10 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Hanging application explorer.exe, version 6.0.2900.2180, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
    Data:
    0000: 41 70 70 6c 69 63 61 74 Applicat
    0008: 69 6f 6e 20 48 61 6e 67 ion Hang
    0010: 20 20 65 78 70 6c 6f 72 explor
    0018: 65 72 2e 65 78 65 20 36 er.exe 6
    0020: 2e 30 2e 32 39 30 30 2e .0.2900.
    0028: 32 31 38 30 20 69 6e 20 2180 in
    0030: 68 75 6e 67 61 70 70 20 hungapp
    0038: 30 2e 30 2e 30 2e 30 20 0.0.0.0
    0040: 61 74 20 6f 66 66 73 65 at offse
    0048: 74 20 30 30 30 30 30 30 t 000000
    0050: 30 30 00

    Event Type: Warning
    Event Source: Userenv
    Event Category: None
    Event ID: 1517
    Date: 7/21/2006
    Time: 10:31:07 AM
    User: NT AUTHORITY\SYSTEM
    Computer: JIMCOMPUTER
    Description:
    Windows saved user JIMCOMPUTER\JIJO registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use.

    This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

    Event Type: Error
    Event Source: Application Hang
    Event Category: (101)
    Event ID: 1002
    Date: 7/20/2006
    Time: 12:06:54 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Hanging application explorer.exe, version 6.0.2900.2180, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
    Data:
    0000: 41 70 70 6c 69 63 61 74 Applicat
    0008: 69 6f 6e 20 48 61 6e 67 ion Hang
    0010: 20 20 65 78 70 6c 6f 72 explor
    0018: 65 72 2e 65 78 65 20 36 er.exe 6
    0020: 2e 30 2e 32 39 30 30 2e .0.2900.
    0028: 32 31 38 30 20 69 6e 20 2180 in
    0030: 68 75 6e 67 61 70 70 20 hungapp
    0038: 30 2e 30 2e 30 2e 30 20 0.0.0.0
    0040: 61 74 20 6f 66 66 73 65 at offse
    0048: 74 20 30 30 30 30 30 30 t 000000
    0050: 30 30 00


    Event Type: Error
    Event Source: Application Error
    Event Category: None
    Event ID: 1001
    Date: 7/18/2006
    Time: 10:23:26 AM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Fault bucket 180945637.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
    Data:
    0000: 42 75 63 6b 65 74 3a 20 Bucket:
    0008: 31 38 30 39 34 35 36 33 18094563
    0010: 37 0d 0a 7..

    Event Type: Error
    Event Source: Application Error
    Event Category: None
    Event ID: 1000
    Date: 7/18/2006
    Time: 10:23:14 AM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Faulting application iexplore.exe, version 6.0.2900.2180, faulting module unknown, version 0.0.0.0, fault address 0x04c1f5b0.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
    Data:
    0000: 41 70 70 6c 69 63 61 74 Applicat
    0008: 69 6f 6e 20 46 61 69 6c ion Fail
    0010: 75 72 65 20 20 69 65 78 ure iex
    0018: 70 6c 6f 72 65 2e 65 78 plore.ex
    0020: 65 20 36 2e 30 2e 32 39 e 6.0.29
    0028: 30 30 2e 32 31 38 30 20 00.2180
    0030: 69 6e 20 75 6e 6b 6e 6f in unkno
    0038: 77 6e 20 30 2e 30 2e 30 wn 0.0.0
    0040: 2e 30 20 61 74 20 6f 66 .0 at of
    0048: 66 73 65 74 20 30 34 63 fset 04c
    0050: 31 66 35 62 30 0d 0a 1f5b0..


    Event Type: Warning
    Event Source: ASP.NET 1.1.4322.0
    Event Category: Setup
    Event ID: 1020
    Date: 7/16/2006
    Time: 3:00:40 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Updates to the IIS metabase were aborted because IIS is either not installed or is disabled on this machine. To configure ASP.NET to run in IIS, please install or enable IIS and re-register ASP.NET using aspnet_regiis.exe /i.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


    Event Type: Error
    Event Source: Application Hang
    Event Category: None
    Event ID: 1001
    Date: 7/15/2006
    Time: 3:23:09 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Fault bucket 126833367.

    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
    Data:
    0000: 42 75 63 6b 65 74 3a 20 Bucket:
    0008: 31 32 36 38 33 33 33 36 12683336
    0010: 37 0d 0a 7..


    Event Type: Error
    Event Source: crypt32
    Event Category: None
    Event ID: 11
    Date: 4/20/2006
    Time: 9:56:53 AM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.


    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


    Event Type: Error
    Event Source: crypt32
    Event Category: None
    Event ID: 11
    Date: 4/20/2006
    Time: 9:56:53 AM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.


    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

    Event Type: Error
    Event Source: F-Secure Anti-Virus
    Event Category: None
    Event ID: 103
    Date: 3/2/2006
    Time: 3:49:55 PM
    User: N/A
    Computer: JIMCOMPUTER
    Description:
    The description for Event ID ( 103 ) in Source ( F-Secure Anti-Virus ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: 1 2006-03-02 14:09:10-04:00 jimcomputer SYSTEM F-Secure Anti-Virus
    Scanning of C:\PROGRAM FILES\F-SECURE INTERNET SECURITY\FSGUI\FSSW.EXE was aborted due to exceeded scanning time limit. The file may be in use or reading it was too slow (e.g. network connection was under stress).
    .
    I will check back to see if yall come up with anything tomorrow. Have to go to sleep, all the words are running together. Again thank you so much. Will one of your experts parse this? I don't even know what that means. And there were a ton of application errors and application hangs.
     
  9. valis

    valis Moderator

    Joined:
    Sep 24, 2004
    Messages:
    76,135
    understand. About there myself. Just out of curiousity, what time does your computer show? Be sure to check the year also; just double click on the clock in teh lower right hand corner.

    Also may want to scan with ewido; again, I didn't see anything untoward in the log, but I am not an hjt expert; the spyware that ms found appears to be related to the printers. Regardless, ewido could help. As follows:

    Download the trial version of Ewido Anti-spyware from HERE and save that file to your desktop. When the trial period expires it becomes freeware with reduced functions but still worth keeping.


    * Once you have downloaded Ewido Anti-spyware, locate the icon on the desktop and double-click it to launch the set up program.
    * Once the setup is complete you will need run Ewido and update the definition files.
    * On the main screen select the icon "Update" then select the "Update now" link.
    * Next select the "Start Update" button, the update will start and a progress bar will show the updates being installed.
    * Once the update has completed select the "Scanner" icon at the top of the screen, then select the "Settings" tab.
    * Once in the Settings screen click on "Recommended actions" and then select "Quarantine"
    * Under "Reports"
    * Select "Automatically generate report after every scan"
    * Un-Select "Only if threats were found"
    * Launch Ewido Anti-spyware by double-clicking the icon on your desktop.
    * Select the "Scanner" icon at the top and then the "Scan" tab then click on "Complete System Scan".
    * Ewido will now begin the scanning process. Be patient this may take a little time.
    Once the scan is complete do the following:
    * If you have any infections you will prompted, then select "Apply all actions"
    * Next select the "Reports" icon at the top.
    * Select the "Save report as" button in the lower left hand of the screen and save it to a text file on your system (make sure to remember where you saved that file, this is important).
    * Close Ewido and reboot your system back into Normal Mode.

    Also post a new hjt log.
     
  10. Sheree1313

    Sheree1313 Thread Starter

    Joined:
    Jul 26, 2003
    Messages:
    143
    ok, the clock has correct time day and year, however, I was also leaning in that direction, too. Is there another clock that may not be set with this clock, somehow? time.windows.com is where it is synchronized with. It was correct as of night before last. It said update now? I did, just in case. It says the next synchronization will be 07/30/06 at 12:22pm. I will do the ewido thing in a minute. Do you want me to run Ewido in safe mode? By the way this morning, again, nothing when I try to use computer. I checked Ctr Alt Del and SysFader was not responding and CPU was 100%. I reboot and can use computer.
     
  11. Sheree1313

    Sheree1313 Thread Starter

    Joined:
    Jul 26, 2003
    Messages:
    143
    ok, check this out,i opened device manager and there was a yellow exclammation point by nvidia WDM Video Capture(universal), this device cannot start sound,video and game controllers. AND a red x on WAN Miniport(ATW) is disabled. So i did the troubleshoot on the nvidia and uninstalled it and then tried to reinstall it and got a warning that it has not passed windows logo testing to verify its compatibility with windows xp and that continuing installation may impair or destabilize the correct operation of your system either immediately or in the future.
     
  12. valis

    valis Moderator

    Joined:
    Sep 24, 2004
    Messages:
    76,135
    don't worry about that warning about the nvidia driver. Windows is just telling you that it's not 'windows authorized'. No biggie.

    Did ewido find anything? You don't need to run it in safe mode, just paste the log here.

    wan miniport is part of AOL. If you used them in the past and don't now, that would be why it's disabled.

    Let me know what ewido finds.
     
  13. Sheree1313

    Sheree1313 Thread Starter

    Joined:
    Jul 26, 2003
    Messages:
    143
    I reinstalled anyway since no biggie and it still gives same error message. I'm doing ewido now and will post when its finished. thank you.
     
  14. Sheree1313

    Sheree1313 Thread Starter

    Joined:
    Jul 26, 2003
    Messages:
    143
    So far it says Adware LZIO, only one infected
     
  15. Triple6

    Triple6 Moderator

    Joined:
    Dec 26, 2002
    Messages:
    52,888
    First Name:
    Rob
  16. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/485514

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice