Very slow shutdown problem, HJT log incl.

This thread has been Locked and is not open to further replies. Please start a New Thread if you're having a similar issue. View our Welcome Guide to learn how to use this site.

ETAF Ranger

Thread Starter
Sep 25, 2003
Hi, and thx in advance to anyone who takes the time to read this. :)

I am having an issue with Windows XP, specifically the Shutdown process.

Typically you would hit the "START" button, then "Turn off computer", and then select from "Log Off" "Shut Down" or "Restart". However, when I get to the second step, and press "Turn off computer" in the Start menu, it takes approx 3 minutes for the next selection window to pop up, and in the mean time I can do nothing else, like the system is totally busy. And it then takes just as long for the actual Shutdown process to happen and for the machine to turn off. :mad:

This does not seem to happen if I shutdown immediately after startup, but if I run any applications, games, etc, it then becomes an issue.

As far as I can recall it started happening about 3 weeks ago.

I have done Adaware and Spybot checks, run various virus scanners, run RegSeeker, done hard drive cleanups and defrags, and basically I have done all the stuff I can think of to clean up my machine.

Below I have included a copy of a HJT log, and an Aida32 report for good measure.

Basic system summary:
Home built Sept '03.
P4 2.4ghz w/HT
2x 80gig HD's
2x 512MB DDR 3200 RAM
Win XP pro SP2
ATI Radeon 9600 128mb AGP vid card.
SB Live sound card.

Any help regarding this problem (or any general advice about my system) is much appreciated.

Oh, just for the reacord, the LAST thing I want to have to do is reinstall Windows, for various reasons.

ETAF_Ranger (y)
aka Waiting-for-shutdown-guy. :(


Logfile of HijackThis v1.99.1
Scan saved at 5:43:43 AM, on 11/07/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\Netropa\Touch Manager\TouchMgr.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Saitek\Software\Profiler.exe
C:\Program Files\Saitek\Software\SaiSmart.exe
C:\Program Files\Netropa\Touch Manager\MEDIACTR.EXE
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [Touch Manager] C:\Program Files\Netropa\Touch Manager\TouchMgr.exe
O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Profiler] C:\Program Files\Saitek\Software\Profiler.exe
O4 - HKLM\..\Run: [SaiSmart] C:\Program Files\Saitek\Software\SaiSmart.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: PowerReg Scheduler.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: ChatSpace Full Java Client -
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) -
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) -
O16 - DPF: {2253F320-AB68-4A07-917D-4F12D8884A06} (ChainCast VMR Client Proxy) -
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) -
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) -
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} -
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
O16 - DPF: {88D8E8B7-A33B-4417-A385-8373484D43ED} (InstallHelper Class) -
O16 - DPF: {8B486EF6-6B2A-4A1E-BB0D-236CB2DBB8D2} (There Voice Trainer) -
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) -
O16 - DPF: {9AA73F41-EC64-489E-9A73-9CD52E528BC4} (ZoneAxRcMgr Class) -
O16 - DPF: {AAF421E6-7914-430A-9981-72B31AFF3BF4} (There Launcher) -
O16 - DPF: {AE1C01E3-0283-11D3-9B3F-00C04F8EF466} (HeartbeatCtl Class) -
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) -
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) -
O16 - DPF: {CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA} (Java Runtime Environment 1.4.1_02) -
O16 - DPF: {DA758BB1-5F89-4465-975F-8D7179A4BCF3} (WheelofFortune Object) -
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exe


--------[ AIDA32 (c) 1995-2004 Tamas Miklos ]---------------------------------------------------------------------------

Version AIDA32 v3.93
Author [email protected]
Report Type Quick Report
Operating System Microsoft Windows XP Professional 5.1.2600 (WinXP Retail)
Date 2005-07-11
Time 04:07

--------[ Summary ]-----------------------------------------------------------------------------------------------------

Operating System Microsoft Windows XP Professional
OS Service Pack Service Pack 2
Internet Explorer 6.0.2900.2180
Computer Name
User Name
Logon Domain

CPU Type Intel Pentium 4HT, 2400 MHz (3 x 800)
Motherboard Name Asus P4S800 (5 PCI, 1 AGP, 3 DIMM, LAN)
Motherboard Chipset SiS 648FX
System Memory 1024 MB (DDR SDRAM)
BIOS Type Award Modular (07/09/03)
Communication Port Communications Port (COM1)
Communication Port ECP Printer Port (LPT1)

Video Adapter SAPPHIRE RADEON 9600 PRO ATLANTIS - Secondary (128 MB)
3D Accelerator ATI Radeon 9600 (RV350)
Monitor HP Pavilion MX90 (THLCV00388)

Audio Adapter Creative EMU10K1 SB Live! Audio Processor

Floppy Drive Floppy disk drive
Disk Drive Maxtor 6Y080L0 (80 GB, 7200 RPM, Ultra-ATA/133)
Disk Drive Maxtor 6Y080L0 (80 GB, 7200 RPM, Ultra-ATA/133)
Optical Drive Generic DVD-ROM SCSI CdRom Device
Optical Drive HL-DT-ST CD-RW GCE-8523B (52x/24x/52x CD-RW)
Optical Drive HL-DT-ST RW/DVD GCC-4521B

C: (FAT32) 27984 MB (15116 MB free)
D: (FAT32) 50135 MB (15432 MB free)
H: (FAT32) 78140 MB (31531 MB free)

Keyboard HID Keyboard Device
Keyboard Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
Mouse HID-compliant mouse
Mouse PS/2 Compatible Mouse

Primary IP Address
Primary MAC Address
Network Adapter SiS 900-Based PCI Fast Ethernet Adapter (


Printer hp deskjet 930c series
USB Device USB Printing Support
May 28, 2005
Nothing wrong with bumping a thread! However you may have a script running at shutdown or something near that. I haven't looked at your log, yet...

I'd like you to download some tools, such as Microsoft anti spyware, and a virus scanner. I don't see an AV in ur processes maybe i skipped it? Anyhow, after you do that, i'd like you to get on your computer and do what you usually do. Then, before you shutdown run hjt and post it once more. That way we can see if there is something running or not.

ETAF Ranger

Thread Starter
Sep 25, 2003
Was running AVG free version for Antivirus, uninstalled today, intended to install different one, never got to it. Also use Trend Micro Housecall scanner.

Will do as you suggest after work, so next post with reslults likely around 4 - 6 am easternI maybe should also mention that I have a quick link button on my toolbar that does a one touch shutdown, uses this command line
%windir%\System32\SHUTDOWN.exe -s -t 01

I dont think that would interfere with normal shutdowns, and have used that quick button for months with no problems.

Also, the shutdown delay also occurs when using the quick button, just skips the Start menu part of the delay.
May 28, 2005
Ok good, please to keep an AV up and firewall it helps.

You are correct, in assuming that the shut down icon wouldn't cause this, you may want to replace it. Use the same command line to do so. I have never heard of an icon making it a slow shutdown, or think of a logical reason why it would. However, you never know with windows.

Well, any one who would like to analyze your log may. However, if no one does i will find some time to do it, as soon as possible.
This thread has been Locked and is not open to further replies. Please start a New Thread if you're having a similar issue. View our Welcome Guide to learn how to use this site.

Users Who Are Viewing This Thread (Users: 0, Guests: 1)

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 807,865 other people just like you!

Latest posts

Staff online