comp freeze/crash probs

#1 walkon


Posted 26 June 2009 - 01:35 PM

hi, i have borrowed a friends old comp - it was a complete mess, 4 users and never a virus scan between them(sigh), i have got it so i can log on to the internet but am not so good with computers that i can completely fix it, the comp still freezes/crashes - i think? its the registry,malaware/virus problem so i ran hijack this and i think i have posted the results here - sorry for the lack of info, i am only a novice when it comes to computing. appreciate any help,ty. sorry - these attachments are from the dds scan - not hijackthis scan,my mistake. i have no idea what any of the scan reveals, as i said i am a novice with computing.-p.s- if i do not answer it is because the comp has frozen again, i have to turn main power off to reboot it. anyone?

DDS (Ver_09-06-26.01)

Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 08/05/2004 09:50:54
System Uptime: 26/06/2009 18:48:09 (1 hours ago)

Motherboard: | | KM266-8235
Processor: AMD Athlon™ | Socket A | 1249/100mhz

==== Disk Partitions =========================

C: is FIXED (NTFS) - 37 GiB total, 27.43 GiB free.
D: is FIXED (NTFS) - 34 GiB total, 21.169 GiB free.
E: is FIXED (FAT32) - 4 GiB total, 1.496 GiB free.

==== Disabled Device Manager Items =============

Class GUID:
Description: PCI Simple Communications Controller
Device ID: PCI\VEN_14F1&DEV_2F02&SUBSYS_000B1767&REV_01\3&61AAA01&0&50
Name: PCI Simple Communications Controller
PNP Device ID: PCI\VEN_14F1&DEV_2F02&SUBSYS_000B1767&REV_01\3&61AAA01&0&50

==== System Restore Points ===================

RP1: 31/05/2009 06:08:26 - System Checkpoint
RP2: 31/05/2009 06:56:15 - Configured Philips SNU5600 Wireless USB Adapter
RP3: 31/05/2009 08:34:25 - Removed Microsoft Office Live Add-in 1.3
RP4: 31/05/2009 08:34:54 - Removed Microsoft Silverlight
RP5: 01/06/2009 08:22:51 - Software Distribution Service 3.0
RP6: 03/06/2009 18:05:25 - System Checkpoint
RP7: 04/06/2009 08:53:23 - working ok?
RP8: 05/06/2009 15:23:57 - System Checkpoint
RP9: 06/06/2009 09:40:14 - seems to be ok
RP10: 07/06/2009 18:10:01 - System Checkpoint
RP11: 08/06/2009 21:42:07 - System Checkpoint
RP12: 09/06/2009 08:34:03 - Removed Java™ 6 Update 5
RP13: 09/06/2009 08:35:18 - Removed Java™ 6 Update 7
RP14: 09/06/2009 21:41:52 - Restore Operation
RP15: 10/06/2009 21:45:16 - System Checkpoint
RP16: 11/06/2009 18:50:30 - Software Distribution Service 3.0
RP17: 12/06/2009 20:11:03 - System Checkpoint
RP18: 13/06/2009 20:34:10 - Restore Operation
RP19: 15/06/2009 18:42:48 - System Checkpoint
RP20: 16/06/2009 07:36:11 - Software Distribution Service 3.0
RP21: 17/06/2009 06:09:35 - Software Distribution Service 3.0
RP22: 17/06/2009 09:33:47 - Installed AVG Free 8.5
RP23: 17/06/2009 23:20:33 - Restore Operation
RP24: 18/06/2009 07:56:53 - 07.56 - seems ok
RP25: 18/06/2009 08:40:18 - Installed AVG Free 8.5
RP26: 18/06/2009 09:46:37 - 09.46 avg scan
RP27: 18/06/2009 11:18:07 - scan good 11.17
RP28: 18/06/2009 12:12:44 - Software Distribution Service 3.0
RP29: 19/06/2009 09:24:18 - friday - all seems good
RP30: 20/06/2009 09:34:09 - Avg8 Update
RP31: 20/06/2009 09:35:47 - Avg8 Update
RP32: 21/06/2009 09:13:22 - Removed AVG 8.5
RP33: 21/06/2009 09:17:11 - Installed AVG 8.5
RP34: 21/06/2009 10:10:14 - csc scan 443
RP35: 22/06/2009 15:22:31 - System Checkpoint
RP36: 24/06/2009 08:59:58 - COMODO Registry Cleaner 24-06-09_08-59-51
RP37: 24/06/2009 20:44:07 - hijack this try?
RP38: 26/06/2009 19:02:50 - friday nite - feking about

==== Installed Programs ======================

Adobe Flash Player ActiveX
Adobe Flash Player Plugin
Adobe Reader 8.1.5
Adobe Shockwave Player
Adobe® Photoshop® Album Starter Edition 3.2
CCleaner (remove only)
Choice Guard
COMODO Internet Security
COMODO System Cleaner 1.1.64946.38(32bit)
Critical Update for Windows Media Player 11 (KB959772)
HijackThis 2.0.2
Hotfix for Windows Internet Explorer 7 (KB947864)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB954708)
Java™ 6 Update 13
Java™ 6 Update 5
Java™ 6 Update 7
Junk Mail filter update
Malwarebytes' Anti-Malware
Microsoft .NET Framework 2.0 Service Pack 1
Microsoft Application Error Reporting
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office XP Professional
Microsoft Search Enhancement Pack
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Mozilla Firefox (3.0.11)
PC Wizard 2008.1.871
Philips SNU5600 Wireless USB Adapter
Philips SNU5600 Wireless USB Adapter 11b/g
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB942615)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player 11 (KB936782)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Media Player 8 (KB917734)
Security Update for Windows Media Player 9 (KB936782)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960715)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB969898)
Segoe UI
Spybot - Search & Destroy
SpywareBlaster 4.2
Update for Windows XP (KB951978)
Update for Windows XP (KB955839)
Update for Windows XP (KB961503)
Update for Windows XP (KB967715)
VIA Platform Device Manager
VIA Rhine-Family Fast Ethernet Adapter
Visual C++ 2008 x86 Runtime - (v9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Imaging Component
Windows Internet Explorer 7
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Upload Tool
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3

==== Event Viewer Messages From Past Week ========

23/06/2009 17:53:50, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the Dnscache service.
23/06/2009 08:34:30, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Aavmker4 aswSP aswTdi
23/06/2009 08:34:30, error: Service Control Manager [7000] - The avast! Standard Shield Support service failed to start due to the following error: The system cannot find the file specified.
23/06/2009 08:34:30, error: Service Control Manager [7000] - The aswFsBlk service failed to start due to the following error: The system cannot find the file specified.
20/06/2009 15:28:33, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service SeaPort with arguments "-Service" in order to run the server: {D6381B4A-D254-46EB-9018-A62E0F4BA6BA}

==== End Of File ===========================

DDS (Ver_09-06-26.01) - NTFSx86
Run by Bobbie at 19:24:45.12 on 26/06/2009
Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_13
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.479.98 [GMT 1:00]

AV: COMODO Antivirus *On-access scanning disabled* (Updated) {043803A5-4F86-4ef7-AFC5-F6E02A79969B}
AV: avast! antivirus 4.8.1335 [VPS 090608-0] *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: COMODO Firewall *enabled* {043803A3-4F86-4ef6-AFC5-F6E02A79969B}

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Bobbie\Desktop\dds.pif

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.co.uk/
mDefault_Page_URL = hxxp://www.yahoo.com
mStart Page = hxxp://www.yahoo.com
uInternet Settings,ProxyServer = pop3:80
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {196C3A46-4758-433D-A600-802C804AF39C} - No File
TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
mRun: [VTPreset] VTPreset.exe
mRun: [COMODO Internet Security] "c:\program files\comodo\comodo internet security\cfp.exe" -h
mRun: [Adobe Photo Downloader] "c:\program files\adobe\photoshop album starter edition\3.2\apps\apdproxy.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
dRun: [hohohhaha] c:\windows\system32\Washing.com
dRun: [Microsoft Network Associates] c:\windows\system32\Washing.com
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\philip~1.lnk - c:\program files\philips\philips snu5600 wireless usb adapter utility\PHUSBBGMonitor.exe
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1199455443194
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
LSA: Authentication Packages = msv1_0 nwprovau

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\bobbie\applic~1\mozilla\firefox\profiles\zleyqx80.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - prefs.js: browser.search.selectedEngine - Yahoo! Search
FF - prefs.js: browser.startup.homepage - hxxp://google.atcomet.com/b/
FF - plugin: c:\program files\mozilla firefox\plugins\NPAskSBr.dll
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}

============= SERVICES / DRIVERS ===============

R0 crpf;crpf;c:\windows\system32\drivers\crpf.sys [2009-6-21 36512]
R0 csdf;cdsf;c:\windows\system32\drivers\csdf.sys [2009-6-21 39456]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\drivers\cmdguard.sys [2009-3-29 132640]
R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\drivers\cmdhlp.sys [2009-3-29 24096]
R2 cmdAgent;COMODO Internet Security Helper Service;c:\program files\comodo\comodo internet security\cmdagent.exe [2009-3-29 692496]
R3 CPWGU(Philips);Philips SNU5600 Wireless USB Adapter 11b/g(Philips);c:\windows\system32\drivers\CPWGU.sys [2008-11-11 408064]
S1 aswSP;avast! Self Protection; [x]
S2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswfsblk.sys --> c:\windows\system32\drivers\aswFsBlk.sys [?]
S3 cpuz129;cpuz129;c:\program files\pc wizard 2008\pcwiz32.sys [2009-6-20 9600]
S4 avast! Antivirus;avast! Antivirus;"c:\program files\alwil software\avast4\ashserv.exe" --> c:\program files\alwil software\avast4\ashServ.exe [?]
S4 avast! Mail Scanner;avast! Mail Scanner;"c:\program files\alwil software\avast4\ashmaisv.exe" /service --> c:\program files\alwil software\avast4\ashMaiSv.exe [?]
S4 avast! Web Scanner;avast! Web Scanner;"c:\program files\alwil software\avast4\ashwebsv.exe" /service --> c:\program files\alwil software\avast4\ashWebSv.exe [?]
S4 SeaPort;SeaPort;c:\program files\microsoft\search enhancement pack\seaport\SeaPort.exe [2009-5-19 240512]

=============== Created Last 30 ================

2009-06-26 19:24 <DIR> --d-h--- c:\windows\PIF
2009-06-24 18:44 <DIR> --d----- c:\program files\Trend Micro
2009-06-21 10:40 272 a------- c:\windows\system32\drivers\sfi.dat
2009-06-21 10:05 39,456 a------- c:\windows\system32\drivers\csdf.sys
2009-06-21 10:05 36,512 a------- c:\windows\system32\drivers\crpf.sys
2009-06-21 10:05 8,456 a------- c:\windows\system32\cnat.exe
2009-06-20 15:50 552 a------- c:\windows\system32\d3d8caps.dat
2009-06-20 15:47 27,136 a------- c:\windows\system32\PCWizard.cpl
2009-06-20 15:47 <DIR> --d----- c:\program files\PC Wizard 2008
2009-06-17 23:23 <DIR> --d----- c:\windows\system32\wbem\Repository
2009-06-17 09:35 11,952 a------- c:\windows\system32\avgrsstx(2).dll
2009-06-17 09:34 <DIR> --d----- c:\windows\system32\drivers\Avg(2)
2009-06-17 09:33 <DIR> --d----- c:\program files\AVG
2009-06-17 05:54 1,089,593 -c------ c:\windows\system32\dllcache\ntprint.cat
2009-06-16 07:48 <DIR> --d----- c:\windows\system32\XPSViewer
2009-06-16 07:47 89,088 -c------ c:\windows\system32\dllcache\filterpipelineprintproc.dll
2009-06-16 07:47 117,760 -------- c:\windows\system32\prntvpt.dll
2009-06-16 07:47 1,676,288 -c------ c:\windows\system32\dllcache\xpssvcs.dll
2009-06-16 07:47 597,504 -c------ c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2009-06-16 07:47 575,488 -c------ c:\windows\system32\dllcache\xpsshhdr.dll
2009-06-16 07:47 1,676,288 -------- c:\windows\system32\xpssvcs.dll
2009-06-16 07:47 575,488 -------- c:\windows\system32\xpsshhdr.dll
2009-06-16 07:47 <DIR> --d----- C:\37801fb5aa1177ba0e27e5696548786f
2009-06-05 16:44 130 a------- c:\windows\cfplogvw.INI
2009-06-01 08:25 <DIR> --d----- C:\01513a81ddd28bd621aa
2009-06-01 08:25 <DIR> --d----- C:\2c5ea26c5ff0845af4efade28b
2009-05-31 22:35 <DIR> --d----- c:\docume~1\alluse~1\applic~1\SecTaskMan
2009-05-31 08:41 <DIR> --d----- c:\windows\SxsCaPendDel

==================== Find3M ====================

2009-06-26 13:29 34 a------- c:\documents and settings\bobbie\jagex_runescape_preferences.dat
2009-06-17 11:27 38,160 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-17 11:27 19,096 a------- c:\windows\system32\drivers\mbam.sys
2009-05-16 05:32 132,640 a------- c:\windows\system32\drivers\cmdguard.sys
2009-05-14 05:36 168,208 a------- c:\windows\system32\guard32.dll
2009-05-14 05:36 24,096 a------- c:\windows\system32\drivers\cmdhlp.sys
2009-05-07 16:32 345,600 a------- c:\windows\system32\localspl.dll
2009-04-29 05:56 827,392 a------- c:\windows\system32\wininet.dll
2009-04-29 05:55 78,336 a------- c:\windows\system32\ieencode.dll
2009-04-17 13:26 1,847,168 a------- c:\windows\system32\win32k.sys
2009-04-15 15:51 585,216 a------- c:\windows\system32\rpcrt4.dll
2009-04-15 07:18 410,984 a------- c:\windows\system32\deploytk.dll
2008-04-06 16:43 0 a------- c:\program files\temp01
2008-02-10 03:48 20,528 a------- c:\docume~1\bobbie\applic~1\GDIPFONTCACHEV1.DAT
2008-05-15 15:44 32,768 a--sh--- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008051520080516\index.dat

============= FINISH: 19:25:55.40 ===============

Edited by walkon, 27 June 2009 - 12:55 PM.

#2 thcbytes


Posted 01 July 2009 - 09:34 AM

Hello and welcome to Bleeping Computer

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine.

If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.

Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.

If you have already posted a DDS log, please do so again, as your situation may have changed.
Use the 'Add Reply' and add the new log to this thread.

Thanks and again sorry for the delay.

We need to see some information about what is happening in your machine. Please perform the following scan:
  • Download DDS by sUBs from one of the following links. Save it to your desktop.
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explaination about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control HERE
#3 walkon

Posted 07 July 2009 - 02:38 AM

hi, sorry for the delay in replying. i have solved the problem - i unplugged that old comp and put it in the loft. i am getting my own comp back this week, so i will be very happy. thank you for responding. you can close this post, tyvm.

Posted 07 July 2009 - 06:59 AM

Thanks for letting us know! Posted Image

Since this issue appears resolved ... this Topic is closed.

If you need this topic reopened, please request this by sending the moderating team a PM with the address of the thread. This applies only to the original topic starter.

Everyone else please begin a New Topic.
