When I log in, it won't show the start menu (desktop). I can't use ctrl+alt+del either. Nothing works except the mouse.
I'm on safe mode right now. This should indicate there is nothing wrong with my harddrive right?
What's the problem!!!
Blogs > clazziquai |
clazziquai
6685 Posts
When I log in, it won't show the start menu (desktop). I can't use ctrl+alt+del either. Nothing works except the mouse. I'm on safe mode right now. This should indicate there is nothing wrong with my harddrive right? What's the problem!!! | ||
ShadowDrgn
United States2497 Posts
2. Run a virus scan. 3. Reformat and reinstall. | ||
clazziquai
6685 Posts
| ||
Goosey
United States695 Posts
But it is really hard to help without more information. Did this happen randomly, or as a result of new hardware/software? Did it start happening after you powered-off without letting windows shut down gracefully? Power outage? | ||
jello_biafra
United Kingdom6631 Posts
| ||
clazziquai
6685 Posts
I always put my computer on standby, and turned it off like once a week. No power outage. I am running a virus scan, but I think some files on the harddrive might be corrupt. | ||
Raithed
China7078 Posts
| ||
clazziquai
6685 Posts
On April 18 2008 10:30 jello_biafra wrote: Restart your computer and hit F8 repeatedly until the boot menu comes up, then you should be able to choose something like "Start computer with last known good settings" or there might be a system restore point you can use. I've no idea what the problem is but this might fix it :O Didn't work. When I do system store, it says somethign like "My username" - Loading personal info blah blah but doesn't load... wtf! | ||
Narrator
United States868 Posts
| ||
clazziquai
6685 Posts
Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 오후 10:19:10, on 2008-04-17 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Safe mode with network support Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\ctfmon.exe C:\Program Files\AIM6\aim6.exe C:\Program Files\AIM6\aolsoftware.exe C:\PROGRA~1\NORTON~1\navw32.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe C:\Program Files\Mozilla Firefox\firefox.exe R3 - URLSearchHook: SearchHelper - {C04BB70C-5F50-473B-8A57-34F452CB0D96} - C:\Program Files\Common Files\system\SearchHelper.dll O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files\Orbitdownloader\orbitcth.dll O2 - BHO: KB82478635797Obj Class - {6cf6c65a-b401-4e38-a9a3-291f7f538e71} - C:\WINDOWS\system32\KB8247~1.DLL O2 - BHO: SearchHelper - {C04BB70C-5F50-473B-8A57-34F452CB0D96} - C:\Program Files\Common Files\system\SearchHelper.dll O2 - BHO: (no name) - {EFDEDA7F-6161-424B-B39D-5B5D3EB77735} - C:\WINDOWS\luckysearchmodule.dll O4 - HKLM\..\Run: [Apoint] "C:\Program Files\Apoint2K\Apoint.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe" O4 - HKLM\..\Run: [SonyPowerCfg] "C:\Program Files\Sony\VAIO Power Management\SPMgr.exe" O4 - HKLM\..\Run: [ISBMgr.exe] "C:\Program Files\Sony\ISB Utility\ISBMgr.exe" O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe" O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless O4 - HKLM\..\Run: [EOUApp] "C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe" O4 - HKLM\..\Run: [Biomenu] "C:\Program Files\Protector Suite QL\menusw.exe" O4 - HKLM\..\Run: [vmnat] $$$"C:\WINDOWS\AppPatch\vmnat.exe" O4 - HKLM\..\Run: [ctfmon] $$$c:\windows\inf\ctfmon.exe O4 - HKLM\..\Run: [CTNotify] $$$c:\Program Files\Creative\ShareDLL\bin\CTNotify.exe O4 - HKLM\..\Run: [soundct] $$$c:\Program Files\C-Media\bin\soundct.exe O4 - HKLM\..\Run: [volumebar] $$$c:\Program Files\Daum\ShareDLL\bin\volumebar.exe O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton AntiVirus\osCheck.exe" O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE O4 - HKLM\..\Run: [MsgSpool] C:\WINDOWS\system32\MsgSpool.exe O4 - HKLM\..\Run: [ldpclt] C:\WINDOWS\system32\ldpclt.exe O4 - HKLM\..\Run: [byuab] C:\WINDOWS\system32\byuab.exe O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" O4 - HKCU\..\Run: [Free Download Manager] "C:\Program Files\Free Download Manager\fdm.exe" -autorun O4 - HKCU\..\Run: [vmnat] $$$"C:\WINDOWS\AppPatch\vmnat.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [neroburn] $$$"C:\Program Files\Ahead\Nero\CDI\neroburn.exe" O4 - HKCU\..\Run: [webreg] C:\Program Files\Internet Explorer\Custom\webreg.exe O4 - HKCU\..\Run: [quakqweqqw] "C:\Program Files\Windows Media Player\svchost.exe" O4 - HKCU\..\Run: [zHideWin] C:\Documents and Settings\BY\My Documents\My Safe\R.exe O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020 O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/201 O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/204 O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/203 O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/202 O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra button: Auction - {47906380-0DDC-46f4-98B4-DB9107C2CA01} - C:\WINDOWS\system32\gc_auc.dll (file missing) O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing) O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=http://www.sony.com/vaiopeople O15 - Trusted Zone: *.daum.net O15 - Trusted Zone: http://*.daum.net O15 - Trusted Zone: *.ilikeclick.com O15 - Trusted Zone: http://*.ilikeclick.com O15 - Trusted Zone: *.yahoo.co.kr O15 - Trusted Zone: http://*.yahoo.co.kr O15 - Trusted Zone: *.yahoo.com O15 - Trusted Zone: http://*.yahoo.com O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1161114034874 O16 - DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} (HGPlugin9USA Class) - http://gamedownload.ijjimax.com/gamedownload/dist/hgstart/HGPlugin9USA.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{A42E515A-EFA6-4DDB-A259-9A4393E70846}: NameServer = 167.206.245.70,167.206.245.6 O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe O23 - Service: Local Network Servicess (admin) - Unknown owner - C:\WINDOWS\system32\admin.exe (file missing) O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: Win Network Control Service (ctralt) - Unknown owner - C:\WINDOWS\system32\ctralt.exe (file missing) O23 - Service: Error Event Log (ereventlog) - Unknown owner - C:\WINDOWS\system32\drivers\erelog.exe (file missing) O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe O23 - Service: Network Local Service (iconpark) - Unknown owner - C:\WINDOWS\system32\iconpark.exe O23 - Service: iPod 서비스 (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\isPwdSvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: Local Manager lagacy (LMlagacy) - Unknown owner - C:\WINDOWS\ctfmon.exe (file missing) O23 - Service: Local security Service (lssver) - Unknown owner - C:\WINDOWS\system32\lssver.exe O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe O23 - Service: OwnershipProtocol - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\OProtSvc.exe O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe O23 - Service: Interface Tool Service (s2cnger) - Unknown owner - C:\WINDOWS\system\msspoolsv.exe (file missing) O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe O23 - Service: System Spool Service (sspoolsrv) - Unknown owner - C:\WINDOWS\system32\wbem\spoolsv.exe (file missing) O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe (file missing) O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe O23 - Service: Toggle Analysis (tgglana) - Unknown owner - C:\WINDOWS\system32\togglelg.exe (file missing) O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files\Sony\VAIO Event Service\VESMgr.exe O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe O23 - Service: vdwasvcs - Unknown owner - C:\WINDOWS\system32\vdwasvcs.exe (file missing) O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe O23 - Service: Local security servi (winnsds) - Unknown owner - C:\WINDOWS\system32\winnsds.exe O23 - Service: VNC Server Version 4 (WinVNC4) - RealVNC Ltd. - C:\Program Files\RealVNC\VNC4\WinVNC4.exe O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe O23 - Service: Washer Security Access (wwSecSvc) - Webroot Software, Inc. - C:\WINDOWS\system32\wwSecure.exe O23 - Service: xejnsvcs - Unknown owner - C:\WINDOWS\system32\xejnsvcs.exe (file missing) -- End of file - 12484 bytes | ||
clazziquai
6685 Posts
| ||
dyodyo
Philippines578 Posts
A reformat would erase everything on your harddisk. So basically you just start from scratch. Edit: These lines is very suspicious: O4 - HKLM\..\Run: [ctfmon] $$$c:\windows\inf\ctfmon.exe O4 - HKCU\..\Run: [quakqweqqw] "C:\Program Files\Windows Media Player\svchost.exe" O4 - HKCU\..\Run: [zHideWin] C:\Documents and Settings\BY\My Documents\My Safe\R.exe - The original ctfmon.exe is in C:\Windows\System32 - svchost.exe should not be in the Program Files folder - a file is autoloading from your MY Documents folder So I think you DEFINITELY have a virus or some type of worm. | ||
clazziquai
6685 Posts
| ||
clazziquai
6685 Posts
But for the others, I think it makes me want to reformat even more...lol | ||
Raithed
China7078 Posts
your. disk. first. HABLO INGLES SENOR? | ||
clazziquai
6685 Posts
| ||
clazziquai
6685 Posts
| ||
| ||
BSL: GosuLeague
RO24 Group C
UltrA vs TBD
Hawk vs TBD
nOmaD vs TBD
perroflaco vs TBD
Hejek vs TBD
VenOm vs TBD
ZZZero.O150
[ Submit Event ] |
StarCraft 2 StarCraft: Brood War Dota 2 Counter-Strike Heroes of the Storm Other Games summit1g6768 Grubby3120 singsing2289 fl0m969 C9.Mang0525 Mew2King499 FrodaN493 ToD239 KnowMe238 sgares192 Fuzer 163 RotterdaM143 FunKaTv 91 Trikslyr83 ViBE46 kRYSTAL_31 Organizations
StarCraft 2 • StrangeGG 42 StarCraft: Brood War• intothetv • sooper7s • Migwel • Laughngamez YouTube • LaughNgamezSOOP • IndyKCrew • Kozan • AfreecaTV YouTube Dota 2 League of Legends Other Games |
OSC
Replay Cast
Replay Cast
SOOP Global
NightMare vs GuMiho
Classic vs SHIN
SOOP
NightMare vs Oliveira
SC Evo Complete
WardiTV Invitational
CSO Cup
Replay Cast
Sparkling Tuna Cup
[ Show More ] SC Evo Complete
WardiTV Invitational
Replay Cast
Wardi Open
StarCraft2.fi
OlimoLeague
StarCraft2.fi
StarCraft2.fi
The PondCast
|
|