Welcome Guest ( Log In | Click here to Register a free account now! )
Welcome to Bleeping Computer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.| Important Announcement: In recognition of reaching a milestone of 1,000,000 posts on the site, we are hosting the BC 1 Million Post contest. More information about this contest can be found at the following link: Bleeping Computer 1,000,000 Post Contest - BleepingComputer Management |
Read this topic before posting a log.
DO NOT post a ComboFix log unless requested to.
Only members of the HijackThis Team or Moderators are allowed to help people with logs. Anyone else should refrain from posting to another user's log.
When posting a log please put the type of infection you have in the topic title. IE: Winfixer, Virtumonde, WinTools, WebSearch, Home Search Assistant, etc.
Do not bump your topic. We try to resolve logs on a first come/first served basis. By bumping your log you will be pushed back in line due to the new date of your bump.
![]() ![]() |
Aug 1 2008, 04:27 PM
Post
#31
|
|
|
Member ![]() ![]() Group: Members Posts: 43 Joined: 20-June 08 Member No.: 217,480 |
|
|
|
|
Aug 3 2008, 05:16 PM
Post
#32
|
|
|
Member ![]() ![]() Group: Members Posts: 43 Joined: 20-June 08 Member No.: 217,480 |
Alright, it said all the usual stuff,
A problem has been detected and windows has shut down...blah blah blah Under Technical Information it said: *** STOP: 0x00000024 (0x001902FE, 0xED162E98,0xED162B94,0x80573C67) If you need the "blah blah" stuff I excluded, let me know. |
|
|
|
Aug 3 2008, 09:20 PM
Post
#33
|
|
|
Member ![]() ![]() Group: Members Posts: 43 Joined: 20-June 08 Member No.: 217,480 |
Another one tonight, this one said all the usual stuff, plus at the top
PAGE_FAULT_IN_NONPAGED_AREA The stuff at the bottom was: ***STOP: 0x00000050 (0x95FAFD81, 0x00000001, 0x8057B56E, 0x00000000) |
|
|
|
Aug 3 2008, 09:28 PM
Post
#34
|
|
|
Member ![]() ![]() Group: Members Posts: 43 Joined: 20-June 08 Member No.: 217,480 |
And another...
Nothing special at the top STOP: 0x0000008E (0xC0000005, 0x8057B6D7, 0xF2DE3C50, 0x00000000) And a second one, both occured while in Itunes, going into the itunes store. STOP: 0x0000008E (0xC0000005, 0x8057B6D7, 0xEBC857C0, 0x00000000) This post has been edited by niustat83: Aug 3 2008, 10:03 PM |
|
|
|
Aug 4 2008, 07:33 PM
Post
#35
|
|
|
Member ![]() ![]() Group: Members Posts: 43 Joined: 20-June 08 Member No.: 217,480 |
Had another crash...same place in Itunes, but after updating it to the newest version:
STOP: 0x0000008E (0xC0000005, 0xEB4BF9F2, 0xEBEE7B04, 0x00000000) Then there was a second line below: *** eamon.sys - 0xEB4BF9F2 at EB4BC000 Datestamp 484eaeee |
|
|
|
Aug 5 2008, 05:28 PM
Post
#36
|
|
![]() Member ![]() ![]() Group: HJT Team Posts: 57 Joined: 29-March 05 Member No.: 15,731 |
All right, we would like to get another log from you if that is ok.
Go to Start>Run and type: msconfig Open msconfig> boot.ini tab> check /bootlog Hit "apply" and close Reboot when prompted. Next, use windows explorer to delete: C:\windows\ntbtlog.txt Reboot Now go back and look for C:\windows\ntbtlog.txt again and post the new ntbtlog.txt back here for us to look at. |
|
|
|
Aug 5 2008, 09:33 PM
Post
#37
|
|
|
Member ![]() ![]() Group: Members Posts: 43 Joined: 20-June 08 Member No.: 217,480 |
Alright here's the new windows boot log. So what exactly am I posting here? So far I've been kinda blindly following directions, but I'm interested in knowing some of the details. Can you PM or post some extra information if you have time? Thanks!
Service Pack 2 8 5 2008 21:26:58.375 Loaded driver \WINDOWS\system32\ntkrnlpa.exe Loaded driver \WINDOWS\system32\hal.dll Loaded driver \WINDOWS\system32\KDCOM.DLL Loaded driver \WINDOWS\system32\BOOTVID.dll Loaded driver ACPI.sys Loaded driver \WINDOWS\system32\DRIVERS\WMILIB.SYS Loaded driver pci.sys Loaded driver isapnp.sys Loaded driver pciide.sys Loaded driver \WINDOWS\system32\DRIVERS\PCIIDEX.SYS Loaded driver MountMgr.sys Loaded driver ftdisk.sys Loaded driver PartMgr.sys Loaded driver VolSnap.sys Loaded driver atapi.sys Loaded driver iastor.sys Loaded driver disk.sys Loaded driver \WINDOWS\system32\DRIVERS\CLASSPNP.SYS Loaded driver fltMgr.sys Loaded driver sr.sys Loaded driver drvmcdb.sys Loaded driver PxHelp20.sys Loaded driver KSecDD.sys Loaded driver Ntfs.sys Loaded driver NDIS.sys Loaded driver Mup.sys Loaded driver \SystemRoot\system32\DRIVERS\intelppm.sys Loaded driver \SystemRoot\system32\DRIVERS\nv4_mini.sys Loaded driver \SystemRoot\system32\DRIVERS\usbuhci.sys Loaded driver \SystemRoot\system32\DRIVERS\usbehci.sys Loaded driver \SystemRoot\system32\DRIVERS\ctoss2k.sys Loaded driver \SystemRoot\system32\DRIVERS\ctsfm2k.sys Loaded driver \SystemRoot\system32\drivers\P17.sys Loaded driver \SystemRoot\system32\DRIVERS\IntelC53.sys Loaded driver \SystemRoot\system32\DRIVERS\IntelC51.sys Loaded driver \SystemRoot\system32\DRIVERS\IntelC52.sys Loaded driver \SystemRoot\system32\DRIVERS\mohfilt.sys Loaded driver \SystemRoot\System32\Drivers\Modem.SYS Loaded driver \SystemRoot\system32\DRIVERS\e100b325.sys Loaded driver \SystemRoot\system32\DRIVERS\imapi.sys Loaded driver \SystemRoot\system32\drivers\sscdbhk5.sys Loaded driver \SystemRoot\system32\DRIVERS\cdrom.sys Loaded driver \SystemRoot\system32\DRIVERS\redbook.sys Loaded driver \SystemRoot\SYSTEM32\DRIVERS\GEARAspiWDM.sys Loaded driver \SystemRoot\system32\DRIVERS\audstub.sys Loaded driver \SystemRoot\system32\DRIVERS\rasl2tp.sys Loaded driver \SystemRoot\system32\DRIVERS\ndistapi.sys Loaded driver \SystemRoot\system32\DRIVERS\ndiswan.sys Loaded driver \SystemRoot\system32\DRIVERS\raspppoe.sys Loaded driver \SystemRoot\system32\DRIVERS\raspptp.sys Loaded driver \SystemRoot\system32\DRIVERS\msgpc.sys Loaded driver \SystemRoot\system32\DRIVERS\psched.sys Loaded driver \SystemRoot\system32\DRIVERS\ptilink.sys Loaded driver \SystemRoot\system32\DRIVERS\raspti.sys Loaded driver \SystemRoot\system32\DRIVERS\termdd.sys Loaded driver \SystemRoot\system32\DRIVERS\kbdclass.sys Loaded driver \SystemRoot\system32\DRIVERS\mouclass.sys Loaded driver \SystemRoot\system32\DRIVERS\swenum.sys Loaded driver \SystemRoot\system32\DRIVERS\update.sys Loaded driver \SystemRoot\system32\DRIVERS\mssmbios.sys Loaded driver \SystemRoot\system32\DRIVERS\omci.sys Loaded driver \SystemRoot\system32\drivers\WmBEnum.sys Loaded driver \SystemRoot\system32\drivers\WmXlCore.sys Loaded driver \SystemRoot\System32\Drivers\NDProxy.SYS Did not load driver \SystemRoot\System32\Drivers\NDProxy.SYS Loaded driver \SystemRoot\system32\DRIVERS\usbhub.sys Loaded driver \SystemRoot\system32\drivers\MODEMCSA.sys Did not load driver \SystemRoot\System32\Drivers\lbrtfdc.SYS Did not load driver \SystemRoot\System32\Drivers\Sfloppy.SYS Loaded driver \SystemRoot\System32\Drivers\i2omgmt.SYS Did not load driver \SystemRoot\System32\Drivers\Changer.SYS Did not load driver \SystemRoot\System32\Drivers\Cdaudio.SYS Loaded driver \SystemRoot\System32\Drivers\Fs_Rec.SYS Loaded driver \SystemRoot\System32\Drivers\Null.SYS Loaded driver \SystemRoot\System32\Drivers\Beep.SYS Loaded driver \SystemRoot\system32\drivers\ssrtln.sys Did not load driver \SystemRoot\system32\DRIVERS\i8042prt.sys Did not load driver \SystemRoot\system32\DRIVERS\kbdhid.sys Loaded driver \SystemRoot\System32\drivers\vga.sys Loaded driver \SystemRoot\System32\Drivers\mnmdd.SYS Loaded driver \SystemRoot\System32\DRIVERS\RDPCDD.sys Loaded driver \SystemRoot\System32\Drivers\Msfs.SYS Loaded driver \SystemRoot\System32\Drivers\Npfs.SYS Loaded driver \SystemRoot\system32\DRIVERS\rasacd.sys Loaded driver \SystemRoot\system32\DRIVERS\ipsec.sys Loaded driver \SystemRoot\system32\DRIVERS\tcpip.sys Loaded driver \SystemRoot\system32\DRIVERS\ipnat.sys Loaded driver \SystemRoot\system32\DRIVERS\wanarp.sys Loaded driver \SystemRoot\system32\DRIVERS\netbt.sys Loaded driver \SystemRoot\system32\DRIVERS\epfwtdir.sys Loaded driver \SystemRoot\System32\drivers\afd.sys Loaded driver \SystemRoot\system32\DRIVERS\netbios.sys Did not load driver \SystemRoot\system32\DRIVERS\serial.sys Did not load driver \SystemRoot\System32\Drivers\PCIDump.SYS Loaded driver \SystemRoot\system32\DRIVERS\rdbss.sys Loaded driver \SystemRoot\system32\DRIVERS\mrxsmb.sys Loaded driver \SystemRoot\system32\DRIVERS\hidusb.sys Loaded driver \SystemRoot\system32\DRIVERS\usbprint.sys Loaded driver \SystemRoot\System32\Drivers\Fips.SYS Loaded driver \SystemRoot\system32\DRIVERS\kbdhid.sys Loaded driver \SystemRoot\system32\DRIVERS\easdrv.sys Loaded driver \SystemRoot\system32\drivers\WmFilter.sys Loaded driver \SystemRoot\system32\DRIVERS\usbccgp.sys Loaded driver \SystemRoot\system32\DRIVERS\mouhid.sys Loaded driver \SystemRoot\System32\Drivers\Cdfs.SYS Loaded driver \SystemRoot\system32\drivers\drvnddm.sys Loaded driver \SystemRoot\system32\dla\tfsndres.sys Loaded driver \SystemRoot\system32\dla\tfsnifs.sys Loaded driver \SystemRoot\system32\dla\tfsnopio.sys Loaded driver \SystemRoot\system32\dla\tfsnpool.sys Loaded driver \SystemRoot\system32\dla\tfsnboio.sys Loaded driver \SystemRoot\system32\dla\tfsncofs.sys Loaded driver \SystemRoot\system32\dla\tfsndrct.sys Loaded driver \SystemRoot\system32\dla\tfsnudf.sys Loaded driver \SystemRoot\system32\dla\tfsnudfa.sys Loaded driver \SystemRoot\system32\DRIVERS\nwlnkipx.sys Loaded driver \SystemRoot\system32\DRIVERS\nwlnknb.sys Loaded driver \SystemRoot\system32\DRIVERS\ndisuio.sys Loaded driver \SystemRoot\system32\DRIVERS\nwlnkspx.sys Did not load driver \SystemRoot\system32\DRIVERS\nwlnkspx.sys Did not load driver \SystemRoot\system32\DRIVERS\rdbss.sys Did not load driver \SystemRoot\system32\DRIVERS\mrxsmb.sys Loaded driver \SystemRoot\system32\DRIVERS\mrxdav.sys Loaded driver \SystemRoot\System32\Drivers\ASCTRM.SYS Loaded driver \??\C:\PROGRA~1\CheckIt\DIAGNO~1\BCMNTIO.sys Loaded driver \SystemRoot\system32\DRIVERS\eamon.sys Loaded driver \SystemRoot\system32\DRIVERS\srv.sys Loaded driver \??\C:\PROGRA~1\CheckIt\DIAGNO~1\MAPMEM.sys Loaded driver \??\C:\WINDOWS\system32\drivers\PfModNT.sys Loaded driver \??\C:\WINDOWS\system32\drivers\tmcomm.sys Did not load driver \SystemRoot\system32\DRIVERS\ipnat.sys Loaded driver \SystemRoot\system32\drivers\wdmaud.sys Loaded driver \SystemRoot\system32\drivers\sysaudio.sys Loaded driver \SystemRoot\system32\drivers\splitter.sys Loaded driver \SystemRoot\system32\drivers\aec.sys Loaded driver \SystemRoot\system32\drivers\swmidi.sys Loaded driver \SystemRoot\system32\drivers\DMusic.sys Loaded driver \SystemRoot\system32\drivers\kmixer.sys Loaded driver \SystemRoot\system32\drivers\drmkaud.sys Loaded driver \SystemRoot\System32\Drivers\HTTP.sys Loaded driver \SystemRoot\system32\drivers\kmixer.sys |
|
|
|
Aug 7 2008, 05:31 PM
Post
#38
|
|
![]() Member ![]() ![]() Group: HJT Team Posts: 57 Joined: 29-March 05 Member No.: 15,731 |
Well, the logs I have been asking for is to eliminate a hiding infection or rootkit.
That is pretty much done now. We find no infection which leads us to believe that it is a driver issue maybe. One thought is that it may be related to the sonic software driver. Let's see if we can test this by disabling the exe and see if the crashes stop. Go to Start -> Run Type "msconfig" (without quotes) in the Open box and click OK. This will launch the System Configuration Utility (SCU). In the SCU, choose the Startup tab. Look for the Startup Item tfswctrl.exe or tfswctrl and uncheck it. Click Apply and then Close. A dialog window will open. Choose Restart. After restarting, a new dialog window will pop up saying your system configuration has changed. Check the box at the end of the message to stop the message from reappearing. Click OK. Now do what you normally do on your computer and start and restart. Tell me if you are still having the crashing problem. |
|
|
|
Aug 8 2008, 10:07 AM
Post
#39
|
|
|
Member ![]() ![]() Group: Members Posts: 43 Joined: 20-June 08 Member No.: 217,480 |
I did that, it's still crashing.
The only other thing I can think to mention is that I did install a new mouse within the past few months. Could that be causing the crashes? It's a Razer Copperhead. |
|
|
|
Aug 10 2008, 08:39 AM
Post
#40
|
|
![]() Member ![]() ![]() Group: HJT Team Posts: 57 Joined: 29-March 05 Member No.: 15,731 |
Yes, it is possible that it is the mouse.
Do you recall if the crashing started after you installed the mouse? If so, then that is very likely. I will assume you used the cd that came with the mouse to install the drivers & software. You could try a couple of things. If you have your old mouse yet, try uninstalling the Razer mouse and then plug in your old mouse and see what happens. Does the crashing stop? If yes, then I to use your new mouse, I would suggest going to this link to download the newest version or the drivers and software for that mouse: http://www.razersupport.com/index.php?_m=d...ads&_a=view Download the driver and firmware for that mouse to your desktop. Unzip it if it is zipped. Plug in the mouse to the usb port, then you may have to use your keyboard to navigate to the file you downloaded on your desktop to enter it and run the program. See if that make a difference. If you find that using your old mouse makes no difference and you still have the crashes, then we will see what else may be causing the issue. |
|
|
|
Aug 10 2008, 10:45 AM
Post
#41
|
|
|
Member ![]() ![]() Group: Members Posts: 43 Joined: 20-June 08 Member No.: 217,480 |
Well I uninstalled it, but it is still crashing. How can I be sure that the uninstall got everything off my computer?
|
|
|
|
Aug 11 2008, 06:09 PM
Post
#42
|
|
![]() Member ![]() ![]() Group: HJT Team Posts: 57 Joined: 29-March 05 Member No.: 15,731 |
There could be some left over reg entries but if you uninstalled via Add/Remove programs, it should be ok if the other mouse you put in is working.
You did not mention, do you recall the crashing starting after you installed the new mouse? |
|
|
|
Aug 11 2008, 06:49 PM
Post
#43
|
|
![]() Member ![]() ![]() Group: HJT Team Posts: 57 Joined: 29-March 05 Member No.: 15,731 |
I want you to try to install that new mouse again but download the drivers & software for it from here:
http://www.razersupport.com/index.php?_m=d...ads&_a=view |
|
|
|
Aug 12 2008, 04:39 PM
Post
#44
|
|
|
Member ![]() ![]() Group: Members Posts: 43 Joined: 20-June 08 Member No.: 217,480 |
If I remember correctly (it was about 4 months ago), i think it started around the same time i got the mouse.
I tried installing the new mouse with the updated drivers...still crashing. |
|
|
|
Aug 12 2008, 05:26 PM
Post
#45
|
|
![]() Member ![]() ![]() Group: HJT Team Posts: 57 Joined: 29-March 05 Member No.: 15,731 |
I just have this feeling it is the mouse.
Because I am not huge on hardware and the drivers, I am going to refer you to another forum here that deals with hardware. They may be able to help you better than I on this whether it is the mouse or something else. Here is the link: http://www.bleepingcomputer.com/forums/forum7.html Start a new topic. No need to give them any logs. Just tell them what is happening and that the crashing started around the time you got the mouse. Give them any details like you did me as to what the errors are saying. Give all the information on the errors. It helps. |
|
|
|
![]() ![]() |
| Lo-Fi Version | Time is now: 20th November 2008 - 06:15 AM |