PDA

View Full Version : Prblems logging back into my log on screen



Panicjungle
2006-04-21, 11:45
Hello - I hope someone can help, heres the problems:scratch:

Ok my partner and I share one PC and so have separate accounts. The problem we are having for the past week has been this, when one of us logs out of our account and goes off, when the other comes to log into their screen the PC automatically reboots and when either of us logs in after that, it says the system has recovered from a serious error. We then get a message saying that our norton antivirus is turned off when infact it never is (it is always enabled and working) and we also get the same sometimes for the windows firewall.

The other problem is that usually we can surf the net all day with no probs with internet explorer, but now, after about an hours use, interner explorer (6.0) either shuts down because of a serious error or else it just wont let you view any web pages unless you reboot the pc. I really am at my wits end as Norton/Spybot/Adaware/says there are no probs found on the pc.


Im not sure if this related but these probs only started happening after I started getting error messages about Active X whenever I tried to view certain webpages saved in my favourites through internet explorer. I rectifyed that problem by downloading a hotfix from microsoft.

Heres a list of current running processes.

2005-05-31 blindman.exe (1.0.0.1)
2005-05-31 SpybotSD.exe (1.4.0.3)
2005-05-31 TeaTimer.exe (1.4.0.2)
2006-04-15 unins000.exe (51.41.0.0)
2005-05-31 Update.exe (1.4.0.0)
2006-02-06 advcheck.dll (1.0.2.0)
2005-05-31 aports.dll (2.1.0.0)
2005-05-31 borlndmm.dll (7.0.4.453)
2005-05-31 delphimm.dll (7.0.4.453)
2005-05-31 SDHelper.dll (1.4.0.0)
2006-02-20 Tools.dll (2.0.0.2)
2005-05-31 UnzDll.dll (1.73.1.1)
2005-05-31 ZipDll.dll (1.73.2.0)
2006-04-14 Includes\Cookies.sbi
2006-04-14 Includes\Dialer.sbi
2006-04-14 Includes\Hijackers.sbi
2006-04-14 Includes\Keyloggers.sbi
2006-04-14 Includes\Malware.sbi
2006-04-14 Includes\PUPS.sbi
2006-04-14 Includes\Revision.sbi
2006-04-14 Includes\Security.sbi
2006-04-14 Includes\Spybots.sbi
2005-02-17 Includes\Tracks.uti
2006-04-14 Includes\Trojans.sbi

PID: 0 ( 0) [System]
PID: 456 ( 4) \SystemRoot\System32\smss.exe
PID: 512 ( 456) \??\C:\WINDOWS\system32\csrss.exe
PID: 536 ( 456) \??\C:\WINDOWS\system32\winlogon.exe
PID: 596 ( 536) C:\WINDOWS\system32\services.exe
size: 108032
MD5: C6CE6EEC82F187615D1002BB3BB50ED4
PID: 608 ( 536) C:\WINDOWS\system32\lsass.exe
size: 13312
MD5: 84885F9B82F4D55C6146EBF6065D75D2
PID: 620 ( 552) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 768 ( 596) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 844 ( 596) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 908 ( 596) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 996 ( 596) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 1076 ( 596) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 1196 ( 596) C:\WINDOWS\system32\spoolsv.exe
size: 57856
MD5: DA81EC57ACD4CDC3D4C51CF3D409AF9F
PID: 1520 ( 596) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 1532 ( 596) C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
size: 317128
MD5: EDC5C2342E91F7A8870E17AC5A87D6EC
PID: 1580 ( 596) C:\PROGRA~1\NORTON~2\NORTON~1\GHOSTS~2.EXE
size: 200704
MD5: BC9C77FAC763D84BFDF09B55D4B41AFA
PID: 1628 ( 596) C:\Program Files\Norton AntiVirus\navapsvc.exe
size: 116336
MD5: 00FF9F38A83706E7605F83852171197A
PID: 1664 ( 596) C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
size: 135168
MD5: 4914A155F9B73317B14F94BBA4A79639
PID: 1704 ( 596) C:\WINDOWS\System32\nvsvc32.exe
size: 61440
MD5: C933159F6C63A866A8002BC3CB71F426
PID: 1908 ( 596) C:\PROGRA~1\NORTON~2\SPEEDD~1\nopdb.exe
size: 172065
MD5: 305365A42F7D38D8D10B233ECE1C84C6
PID: 1936 ( 596) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 1964 ( 596) C:\WINDOWS\system32\wdfmgr.exe
size: 38912
MD5: C81B8635DEE0D3EF5F64B3DD643023A5
PID: 2040 ( 596) C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
size: 316544
MD5: 67C5AF84809468061121FBCBECB19285
PID: 424 ( 596) C:\WINDOWS\System32\alg.exe
size: 44544
MD5: F1958FBF86D5C004CF19A5951A9514B7
PID: 1396 (1788) C:\WINDOWS\Explorer.EXE
size: 1032192
MD5: A0732187050030AE399B241436565E64
PID: 328 (1396) C:\Program Files\Common Files\Symantec Shared\ccApp.exe
size: 54296
MD5: ACE91F1DB4E08FA62C758ADF2390C07E
PID: 672 (1396) C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
size: 36975
MD5: 61A3A9D5D98BF0331DF5B716144A8100
PID: 732 (1396) C:\Program Files\Common Files\Real\Update_OB\realsched.exe
size: 180269
MD5: 3CF6BFF887AF6F733473D81A8921A5C5
PID: 1924 (1396) C:\Program Files\iTunes\iTunesHelper.exe
size: 278528
MD5: A8CF3F60099EAA123DB72611CE7BE271
PID: 736 (1396) C:\WINDOWS\system32\rundll32.exe
size: 33280
MD5: DA285490BBD8A1D0CE6623577D5BA1FF
PID: 496 (1396) C:\Program Files\QuickTime\qttask.exe
size: 155648
MD5: C74C7963EEC07AF49DCE44D64819B2BF
PID: 232 (1396) C:\Program Files\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
size: 94208
MD5: 45725CE2A9BD68CF1526728FCFFCC24E
PID: 240 (1396) C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe
size: 188416
MD5: 74AC39DF8B2BC9C45BCFBB6567886F66
PID: 224 (1396) C:\WINDOWS\SOUNDMAN.EXE
size: 47104
MD5: E4908C8BB7BB227A2BBC80343D7521A4
PID: 948 (1396) C:\Program Files\MSN Messenger\msnmsgr.exe
size: 7094272
MD5: 59E6B431FAF166923C93F32D1FB9AAA4
PID: 940 (1396) C:\Program Files\Messenger\msmsgs.exe
size: 1694208
MD5: 74E6E96C6F0E2ECA4EDBB7F7A468F259
PID: 2220 (1336) C:\Program Files\blueyonder IST\bin\mpbtn.exe
size: 172032
MD5: 6C32B6BFA087E25FAE06F8DDA0C07ED2
PID: 2328 ( 596) C:\Program Files\iPod\bin\iPodService.exe
size: 323584
MD5: EDA049739349F0E837D4F55E8879D665
PID: 2900 ( 768) C:\PROGRA~1\INCRED~1\bin\IMApp.exe
size: 139305
MD5: 2ABE5AE88F3E35BC0B67DB5D5B5F949C
PID: 2988 (2680) C:\Program Files\Internet Explorer\iexplore.exe
size: 93184
MD5: E7484514C0464642BE7B4DC2689354C8
PID: 1796 (1396) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
size: 4393096
MD5: 09CA174A605B480318731E691DC98539
PID: 4 ( 0) System

tashi
2006-04-27, 00:37
Hello and sorry for the wait.
If you are still in need of assistance please go here and post a link back to this topic to flag a helper.

If you have waited three days for advice post here. (http://forums.spybot.info/showthread.php?p=4836#post4836)

tashi
2006-04-30, 08:45
Hello.
It might speed things up if you follow the instructions in the following link to post a HJT log especially as the Spybot-S&D log is incomplete. ;)

BEFORE you post a log, and who will advise you. Preliminary Steps (http://forums.spybot.info/showthread.php?t=288)

tashi
2006-05-03, 23:36
This topic is now closed to prevent others with similar issues posting in it.
If you need it re-opened please send me a pm, provide a link to the thread and have a fresh HJT log ready.