0
   

HJT log-Computer Freezes when Online

 
 
echi
 
Reply Mon 23 Jan, 2006 10:49 pm
I am running Windows 2000 with Roadrunner connection. EZ Antivirus and EZ Firewall. Recently added 'Yahoo Toolbar'.

I have had this problem for about three months:
My computer works fine when it is off-line. When it's on-line it freezes about every hour, or so (sometimes more), usually when it's opening a program or performing some other function. Ctrl+Alt+Delete does not work. Mouse arrow does not move. Nothing. I turn it off, turn it back on, and it re-boots without any trouble.

I followed the procedure outlined in Timber's thread, "IMPORTANT! UPDATED YUCKWARE REMOVAL/HiJackThis TIPS". No problems.
Thank you, Timber.


Logfile of HijackThis v1.99.1
Scan saved at 9:45:28 PM, on 1/23/2006
Platform: Windows ME (Win9x 4.90.3000)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\PROGRAM FILES\CA\ETRUST EZ ARMOR\ETRUST EZ ANTIVIRUS\ISAFE.EXE
C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE
C:\WINDOWS\SYSTEM\STIMON.EXE
C:\WINDOWS\SYSTEM\KB891711\KB891711.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\IBMTOOLS\APTEZBTN\APTEZBP.EXE
C:\WINDOWS\SYSTEM\PELMICED.EXE
C:\PROGRAM FILES\CA\ETRUST EZ ARMOR\ETRUST ANTI-SPAM\QSP-2.1.215.5\QOELOADER.EXE
C:\PROGRAM FILES\CA\ETRUST EZ ARMOR\ETRUST EZ ANTIVIRUS\VETMSG.EXE
C:\PROGRAM FILES\CA\ETRUST EZ ARMOR\ETRUST EZ ANTIVIRUS\CAVTRAY.EXE
C:\PROGRAM FILES\CA\ETRUST EZ ARMOR\ETRUST EZ ANTIVIRUS\CAVRID.EXE
C:\PROGRAM FILES\CA\ETRUST EZ ARMOR\ETRUST EZ FIREWALL\CA.EXE
C:\PROGRAM FILES\HP\HP SOFTWARE UPDATE\HPWUSCHD2.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\PROGRAM FILES\HP\DIGITAL IMAGING\BIN\HPQTRA08.EXE
C:\PROGRAM FILES\YAHOO!\MESSENGER\YMSGR_TRAY.EXE
C:\WINDOWS\SYSTEM\HPZIPM12.EXE
C:\PROGRAM FILES\HP\DIGITAL IMAGING\BIN\HPQGALRY.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\PROGRAM FILES\HIJACKTHIS.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr7/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr7/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr7/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr7/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr7/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr7/*http://www.yahoo.com
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YT.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRAM FILES\YAHOO!\COMMON\YIESRVC.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YT.DLL
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
O4 - HKLM\..\Run: [PCHealth] C:\WINDOWS\PCHealth\Support\PCHSchd.exe -s
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [AEZBProc] c:\ibmtools\aptezbtn\aptezbp.exe
O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] PELMICED.EXE
O4 - HKLM\..\Run: [GDRIVE] C:\IBMTOOLS\IBMBOOT\GDRIVE.EXE -N
O4 - HKLM\..\Run: [ACCIBM] C:\IBMTOOLS\Access IBM\bin\AccLaunch.exe
O4 - HKLM\..\Run: [QOELOADER] "C:\PROGRAM FILES\CA\ETRUST EZ ARMOR\ETRUST ANTI-SPAM\QSP-2.1.215.5\QOELoader.exe"
O4 - HKLM\..\Run: [VetAlert] C:\PROGRA~1\CA\ETRUST~1\ETRUST~3\VETMSG.EXE
O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVTray.exe"
O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVRID.exe"
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Firewall\ca.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\StateMgr.exe
O4 - HKLM\..\RunServices: [CAISafe] C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\ISafe.exe
O4 - HKLM\..\RunServices: [TrueVector] C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE -service
O4 - HKLM\..\RunServices: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
O4 - HKLM\..\RunServices: [KB891711] C:\WINDOWS\SYSTEM\KB891711\KB891711.EXE
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRAM FILES\YAHOO!\COMMON\YIESRVC.DLL
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicro.com/spyware-scan/as4web.cab
  • Topic Stats
  • Top Replies
  • Link to this Topic
Type: Discussion • Score: 0 • Views: 1,052 • Replies: 4
No top replies

 
timberlandko
 
  1  
Reply Wed 25 Jan, 2006 12:29 pm
echi, I don't notice any yuckware signatures in that log. I do notice, however, the machine on which that log was generated is running Windows Millenium Edition, not Windows 2000. WinME is known to have a buncha hang issues; they generally can be resolved (with a buncha nit-picky twiddling), but its generally better to upgrade either to Win2K or to Win XP; just about any machine on which WinME will run will benefit greatly from migrating to a more stable, secure operating system. I suspect what you are experiencing is a resource issue stemming from the way Windows ME works. It is possible your EZ-Trust Security Suite is overloading your system. What is you machine's processor type and speed, how much memory do you have installed, and what USB and/or FireWire peripherals do you have connected and installed?
0 Replies
 
echi
 
  1  
Reply Thu 26 Jan, 2006 02:52 pm
timber--

Thank you for your advice.
I have 127.0 MB of RAM (48% free).
I wasn't sure about the rest, so I ran a trial version of Everest (lavalys.com) and got the following information. It may be more than you need, but since I don't know much about this stuff, I figure more is better than less.

Computer
Operating System Microsoft Windows ME
Internet Explorer 6.0.2800.1106 (IE 6.0 SP1)
DirectX 4.07.01.3000 (DirectX 7.1)
Date / Time 2006-01-26 / 14:26

Motherboard
CPU Type Intel Celeron, 600 MHz (9 x 67)
Motherboard Name Unknown
Motherboard Chipset Intel Whitney i810E
BIOS Type AMI (09/14/00)
Communication Port Communications Port (COM1)
Communication Port ECP Printer Port (LPT1)

Display
Video Adapter Intel(r) 82810E Graphics Controller
3D Accelerator Intel i752
Monitor IBM 6332 E74 [17" CRT] (55-YZN59)

Multimedia
Audio Adapter Analog Devices AD1881A @ Intel 82801AA I/O Controller Hub - AC'97 Audio Adapter [B-1]

Storage
IDE Controller Intel 82801AA Bus Master IDE Controller
IDE Controller Primary IDE controller (dual fifo)
IDE Controller Secondary IDE controller (dual fifo)
Floppy Drive GENERIC NEC FLOPPY DISK
Disk Drive GENERIC IDE DISK TYPE47
Optical Drive LITEON CD-ROM LTN485S (48x CD-ROM)
SMART Hard Disks Status Unknown

Input
Keyboard Standard 101/102-Key or Microsoft Natural Keyboard
Mouse IBM ScrollPoint II

Network
Primary MAC Address 00-02-8A-B4-51-3B
Network Adapter PPP Adapter.
Modem MDP3880-W(U) PCI Modem

Peripherals
Printer HP PSC 1500 series
USB1 Controller Intel 82801AA I/O Controller Hub - USB Controller [B-1]
USB Device HP PSC 1500 series (DOT4USB)
USB Device HP PSC 1500
USB Device PSC 1500 (USBPRINT)
USB Device USB Cable Modem 351000
USB Device USB Composite Device

DMI
DMI BIOS Vendor American Megatrends Inc.
DMI BIOS Version IBM BIOS 460024i 1.04
DMI System Manufacturer IBM
DMI System Product 2276
DMI System Version 0000000
DMI Motherboard Manufacturer INTEL
DMI Motherboard Product WHITNEY
DMI Motherboard Version 1.0
DMI Chassis Manufacturer INTEL String
DMI Chassis Version 1.0
DMI Chassis Type Desktop Case
0 Replies
 
timberlandko
 
  1  
Reply Thu 26 Jan, 2006 03:19 pm
Looks to me like your machine is groaning under the load of today's software and web experience - I'm gonna guess that machine dates to the late '90s. My first suggestion would be to add as much RAM as you can afford ... and given that the Celeron 600 processor you have isn't really all that capable relative to today's processors, even all the RAM you can fit might not help much in the current environment.
0 Replies
 
echi
 
  1  
Reply Thu 26 Jan, 2006 07:30 pm
I guess I'm in the market for a new computer, then. Cool. Got any suggestions?
0 Replies
 
 

Related Topics

Clone of Micosoft Office - Question by Advocate
Do You Turn Off Your Computer at Night? - Discussion by Phoenix32890
The "Death" of the Computer Mouse - Discussion by Phoenix32890
Windows 10... - Discussion by Region Philbis
Surface Pro 3: What do you think? - Question by neologist
Windows 8 tips thread - Discussion by Wilso
GOOGLE CHROME - Question by Setanta
.Net and Firefox... - Discussion by gungasnake
Hacking a computer and remote access - Discussion by trying2learn
 
  1. Forums
  2. » HJT log-Computer Freezes when Online
Copyright © 2024 MadLab, LLC :: Terms of Service :: Privacy Policy :: Page generated in 0.04 seconds on 05/03/2024 at 09:52:05