Welcome Guest ( Log In | Register )

Discover the best free computer help!
Learn more about Geeks to Go by taking the tour. Spyware, virus, trojan, fake security or privacy alerts? Read the malware cleaning guide.
      
 
Reply to this topicStart new topic
no desktop no start menu, just a blue screen
shibby_srd
post Aug 22 2005, 12:35 PM
Post #1


Member
**
Posts: 16
OS: xp



My computer froze and i was unable to bring up the task manager so I just powered off. When I turned it back on I now enter windows with no desktop, no icons, no start menu, and I was unable to do a system restore. Have any advice for me?
Go to the top of the page
 
+Quote Post
Murray S.
post Aug 22 2005, 12:39 PM
Post #2


Moderator
Group Icon
Posts: 3,913
From: Saskatchewan, Canada
OS: XP HE SP2; XP Pro SP2; Windows Vista Ultimate



Howdy and welcome to G2G:

Have you tried running a Repair Windows XP on the system??

Murray
Go to the top of the page
 
+Quote Post
wannabe1
post Aug 22 2005, 12:47 PM
Post #3


Tech Administrator
Group Icon
Posts: 13,494
From: Bozeman, Montana, USA
OS: Windows 95, 98, 98SE, ME, Windows XP, Vista Ultimate



Hi shibby_srd...Welcome to G2G

Have you tried to execute a System Restore from Safe Mode?

Start your machine and tap the F8 key during the boot sequence (right after the beep)..when you get to the Options screen, choose "Safe Mode" and see if your machine will start. If it does...restore your computer to an earlier time (Start > All Progams > Accessories > System Tools > System Restore) go back at least a day before your problem began. Let us know how it goes...

Wannabe1
Go to the top of the page
 
+Quote Post
shibby_srd
post Aug 22 2005, 01:48 PM
Post #4


Member
**
Posts: 16
OS: xp



I trieds running a repair windows xp and with the unregistered version was only able to fix 4 problems. Still no desktop or start menu. I was unable to restore from safe mode.
Go to the top of the page
 
+Quote Post
wannabe1
post Aug 22 2005, 02:15 PM
Post #5


Tech Administrator
Group Icon
Posts: 13,494
From: Bozeman, Montana, USA
OS: Windows 95, 98, 98SE, ME, Windows XP, Vista Ultimate



Hi shibby_srd...

Right click on the Desktop and choose "Properties"...Click on the "Desktop" tab...click "Customize Desktop" button and click on the "Web" tab...make sure the "Lock Desktop" box is not checked...Click "Ok" to close out of both dialog boxes...Right click the desktop again and choose "Arrange Icons"...make sure "Show Desktop Icons" is checked.

Also look Here.

wannabe1

This post has been edited by wannabe1: Aug 22 2005, 02:28 PM
Go to the top of the page
 
+Quote Post
Murray S.
post Aug 22 2005, 02:38 PM
Post #6


Moderator
Group Icon
Posts: 3,913
From: Saskatchewan, Canada
OS: XP HE SP2; XP Pro SP2; Windows Vista Ultimate



QUOTE(shibby_srd @ Aug 22 2005, 01:48 PM)
I trieds running a repair windows xp and with the unregistered version was only able to fix 4 problems.  [right][snapback]312044[/snapback][/right]


It makes no difference if XP is registered or not.. activation is the big thing with XP..

Are you saying you don't have an "activated" XP system??

Murray
Go to the top of the page
 
+Quote Post
shibby_srd
post Aug 22 2005, 03:37 PM
Post #7


Member
**
Posts: 16
OS: xp



XP is registered, the Registry Fixer was not however and would only repair around 4 problems. The problem itself seems to be that upon startup the assigned background, start menu, and the system tray do not appear. There are also no icons present and right clicking on the screen produces no result. I have tried restarting in safe mode, and still there is no background. System Restore hasn't helped, neither have any other "fix-it" programs I've tried. Tthe odd thing is, the desktop background, system tray and icons seem to be the only thing affected. If I open taskmanager, I can access almost any program, and those seem to be working fine. However, the MSN update site refuses to load, citing a problem with the page. Also, I don't know if this might have anything to do with it, but there seems to be three svhost.exe, and a couple other running programs I don't think I've seen before. CCSETMGR.EXE, NISUM.EXE, WRSSSDK.EXE, SBBCSvr.exe, CCEVTMGR.exe. I'm not sure what all that means but I'm sure that I haven't seen any of those programs running before. Lastly, upon startup the only two loaded "user" processes listed by taskmanager are wscntfy.exe and ctfmon.exe whereass it used to load roughly around 15-20 "user" processes on startup. I hope something here gives a better idea about the problem on my computer. I'm not sure if this is a weird sort of hijack or not, but I would like my desktop back.
Thank you smile.gif
Go to the top of the page
 
+Quote Post
shibby_srd
post Aug 22 2005, 03:49 PM
Post #8


Member
**
Posts: 16
OS: xp



Here's a copy of a recent Hijackthis log, thought maybe it would help.

Logfile of HijackThis v1.99.1
Scan saved at 4:40:22 PM, on 8/22/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
c:\Program Files\Norton Personal Firewall\NISUM.EXE
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
c:\Program Files\Norton Personal Firewall\ccPxySvc.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\System32\ups.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\explorer.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\Temporary Directory 4 for hijackthis.zip\HijackThis.exe

F2 - REG:system.ini: Shell=
O2 - BHO: (no name) - {45F6ACBD-7DB5-4021-8E03-09370480686F} - C:\WINDOWS\system32\hbedhdb.dll (file missing)
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\Hewlett-Packard\Digital Imaging\\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\Hewlett-Packard\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
O4 - HKLM\..\Run: [AutoTKit] C:\hp\bin\AUTOTKIT.EXE
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [QuickFinder Scheduler] "c:\Program Files\WordPerfect Office 11\Programs\QFSCHD110.EXE"
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [MessengerPlus2] "C:\Program Files\Messenger Plus! 2\MsgPlus.exe"
O4 - HKLM\..\Run: [HP Software Update] "c:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [mmtask] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [HydraVisionDesktopManager] C:\Program Files\ATI Technologies\HydraVision\HydraDM.exe
O4 - HKLM\..\Run: [Ad-watch] "C:\Program Files\Lavasoft\Ad-aware 6\Ad-watch.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe
O4 - HKLM\..\Run: [exp] C:\WINDOWS\system32\exp
O4 - HKLM\..\Run: [vs2T3tR] rdbund.exe
O4 - HKLM\..\Run: [ccRegVfy] "c:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\Run: [winsync] C:\WINDOWS\system32\ldlgdd.exe reg_run
O4 - HKLM\..\RunOnce: [ATIPRB] C:\Program Files\ATI Technologies\ATI Control Panel\atiprbxx.exe /g
O4 - HKLM\..\RunOnce: [*Restore] C:\WINDOWS\system32\restore\rstrui.exe -i
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [BackupNotify] c:\Program Files\Hewlett-Packard\Digital Imaging\bin\backupnotify.exe
O4 - HKCU\..\Run: [PopUpStopperProfessional] C:\PROGRA~1\PANICW~1\POP-UP~2\PopUpStopperProfessional.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: ncnk.exe
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll (file missing)
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll (file missing)
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: cpcScanner - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10/StagingUI.cab34120.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://www-secure.symantec.com/techsupp/asa/LSSupCtl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (ZoneBuddy Class) - http://zone.msn.com/BinFrameWork/v10/ZBuddy.cab32846.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by104fd.bay104.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/binframework/v10/ZPAChat.cab32846.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1123732435562
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab34246.cab
O16 - DPF: {CAC181B0-4D70-402D-B571-C596A47D0CE0} (CBankshotZoneCtrl Class) - http://zone.msn.com/bingame/zpagames/zpa_pool.cab36107.cab
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (StadiumProxy Class) - http://zone.msn.com/binframework/v10/StProxy.cab35645.cab
O18 - Protocol: bw+0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {63C91B08-13E0-43AF-B1CC-5267DED6862F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - Winlogon Notify: Controls Folder - C:\WINDOWS\
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: Reliability - C:\WINDOWS\system32\Ibetwh32.dll (file missing)
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Proxy Service (ccPxySvc) - Symantec Corporation - c:\Program Files\Norton Personal Firewall\ccPxySvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Personal Firewall Accounts Manager (NISUM) - Symantec Corporation - c:\Program Files\Norton Personal Firewall\NISUM.EXE
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe


And I was wondering about this line I found in the log:

O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE

When I was browsing through my programs trying to see what was wrong, the file this program was in was highlighted a bright blue, does anyone know what this is or what it does?
Go to the top of the page
 
+Quote Post
wannabe1
post Aug 22 2005, 04:07 PM
Post #9


Tech Administrator
Group Icon
Posts: 13,494
From: Bozeman, Montana, USA
OS: Windows 95, 98, 98SE, ME, Windows XP, Vista Ultimate



Hi shibby_srd...


QUOTE
And I was wondering about this line I found in the log: O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE

This is spyware and there are a few other "suspicious" entries in your log, as well.

CCSETMGR.EXE, NISUM.EXE, and CCEVTMGR.exe are all used by Norton Internet Security and WRSSSDK.EXE is used by Webroot's Spysweeper. I'm not sure just what SBBCSvr.exe is.

Sounds like Darth_Ash has a game plan for you so I'll just post this info and let Darth sort out your desktop issue.

wannabe1

Go to the top of the page
 
+Quote Post
Murray S.
post Aug 22 2005, 04:55 PM
Post #10


Moderator
Group Icon
Posts: 3,913
From: Saskatchewan, Canada
OS: XP HE SP2; XP Pro SP2; Windows Vista Ultimate



Do you have your XP cd handy??

Murray
Go to the top of the page
 
+Quote Post
shibby_srd
post Aug 22 2005, 06:39 PM
Post #11


Member
**
Posts: 16
OS: xp



No, I do not have an xp disk.
Go to the top of the page
 
+Quote Post
Murray S.
post Aug 22 2005, 07:50 PM
Post #12


Moderator
Group Icon
Posts: 3,913
From: Saskatchewan, Canada
OS: XP HE SP2; XP Pro SP2; Windows Vista Ultimate



QUOTE(shibby_srd @ Aug 22 2005, 06:39 PM)
No, I do not have an xp disk.
[right][snapback]312572[/snapback][/right]


Where is it?? You are going to need it in order to provide a fix!!

Murray
Go to the top of the page
 
+Quote Post
shibby_srd
post Aug 22 2005, 08:27 PM
Post #13


Member
**
Posts: 16
OS: xp



The computer came with XP installed with no extra disc. However, there is a recovery D drive that is supposed to contain everything from the factory specs.
Go to the top of the page
 
+Quote Post
hats_off
post Aug 22 2005, 08:36 PM
Post #14


Retired Staff
Group Icon
Posts: 2,512
From: England
OS: Windows 98SE XP Pro SP2 Office 2003 Pro XP Home SP2 Office XP Pro



With the absence of an XP CD and with wannabe noticing suspicious items in your HJT log

The Malware Team will deal with this

Please go here:

http://www.geekstogo.com/forum/You_Must_Re..._Log-t2852.html

Run all the programmes as advised then post a current Hijack This Log in a new topic in the Malware Forum



Go to the top of the page
 
+Quote Post

Reply to this topicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 

Collapse

> Similar Topics

    Topic Title Replies / Views Topic Information
No New Posts  
0 / 167 17th June 2005 - 10:59 AM
pgplaya started - last by pgplaya
No new  
23 / 2,837 15th August 2005 - 10:26 PM
Shayne_13 started - last by Trevuren
No New Posts  
0 / 161 7th August 2005 - 04:03 PM
simpaul started - last by simpaul
No new
15 / 627 16th February 2008 - 11:59 PM
julia2 started - last by julia2
No New Posts  
0 / 152 4th June 2008 - 05:06 PM
Mr. Milt started - last by Mr. Milt
No New Posts  
6 / 141 1st July 2008 - 02:05 AM
ChicagosOnlyPunk started - last by mirjel

RSS