Computer restarts when ITS ready and freezes up a lot

edited October 2004 in Hardware
This computer restarts whenever it pleases and freezes up several times a day. Can you help. I have run Adaware and Spybot already. Below is the log for HJT. Thanks and God Bless!!! :confused:

Logfile of HijackThis v1.98.2
Scan saved at 7:26:21 PM, on 10/13/2004
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\hpb2ksrv.exe
C:\WINDOWS\System32\hpbhksrv.exe
C:\WINDOWS\System32\WFXSVC.EXE
C:\Program Files\Symantec\WinFax\WFXMOD32.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\hpnra.exe
C:\WINDOWS\System32\hpstatus.exe
C:\Program Files\Java\j2re1.4.1_01\bin\javaw.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\PROGRA~1\AIM95\aim.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\AWS\WEATHE~1\Weather.EXE
C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
C:\WINDOWS\System32\HPBSPSVR.EXE
C:\WINDOWS\System32\HPBJDSNT.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\janet pickett\Desktop\HiJackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://channels.aimtoday.com/search/aimtoolbar.jsp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://channels.aimtoday.com/search/aimtoolbar.jsp
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Acrobat\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: AIM Search - {40D41A8B-D79B-43d7-99A7-9EE0F344C385} - C:\Program Files\AIM Toolbar\AIMBar.dll
O4 - HKLM\..\Run: [HP Network Registry Agent] C:\WINDOWS\System32\hpnra.exe
O4 - HKLM\..\Run: [HP Status] C:\WINDOWS\System32\hpstatus.exe
O4 - HKLM\..\Run: [HP Proxy Server] C:\Program Files\Hewlett-Packard\ProxyService\ProxyService.lnk
O4 - HKLM\..\Run: [WildTangent CDA] RUNDLL32.exe "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0400.dll",cdaEngineMain
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM95\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Weather] C:\PROGRA~1\AWS\WEATHE~1\Weather.EXE 1
O4 - HKCU\..\Run: [pdfSaver3] "C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe"
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\PROGRA~1\AWS\WEATHE~1\Weather.exe (HKCU)
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {2C15848B-21C0-406A-9902-56C8D90684F3} (alaWeb.clsGetStats) - file://C:\Wintotal\WIN2000\CONTENT\cabs\alaWeb.CAB
O16 - DPF: {4989312D-58CF-11D5-A7D7-00E02911103E} (Interealty MultiSelect) - http://bcs.mlxchange.com/Control/MultiSelectComboBox.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://207.188.7.150/17fa3dd9df7331476a01/netzip/RdxIE2.cab
O16 - DPF: {6FD482A3-7B57-438B-B040-52CAA30147EE} (MLXchange Client Utils) - http://bcs.mlxchange.com/Control/MLXClientUtils.cab
O16 - DPF: {7A7537FC-5988-11D3-8B33-00104B9E5A4A} (IRCWwwPrint Class) - http://bcsnet.interealty.com/BCS/cab/IRCWebPrint.cab
O16 - DPF: {83AB6E4D-CDD7-11D3-B5E7-00104B9AFF6E} (GeacRevw Control) - http://bcs.mlxchange.com/Control/IRCSharc.cab
O16 - DPF: {9420AB25-A351-4C46-AE2E-41B8701BBAF7} (SessionTimer Class) - http://bcsnet.interealty.com/BCS/cab/NICEClient.cab
O16 - DPF: {C118AE9E-3A30-4B96-9C1C-295AA4A1262A} - http://vault.alamode.com/cab/vaultinstall.cab
O16 - DPF: {DF4AC631-95F6-11D4-B75E-00E0B81077E8} (Pegasus Class) - http://bcsnet.interealty.com/bcs/cab/WebHorse.cab
O16 - DPF: {F060A272-A18A-11D3-B75B-00E0B81077E8} (DropList Class) - http://bcsnet.interealty.com/BCS/cab/AspCustomCtrls.cab

Comments

  • edited October 2004
    This is not the same computer as the "unwanted search icons"
  • edited October 2004
    This is an updated logfile. I have already run spybot and adaware. Thanks and God Bless.

    Logfile of HijackThis v1.98.2
    Scan saved at 8:34:13 PM, on 10/13/2004
    Platform: Windows XP (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 (6.00.2600.0000)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\System32\hpb2ksrv.exe
    C:\WINDOWS\System32\hpbhksrv.exe
    C:\WINDOWS\System32\WFXSVC.EXE
    C:\Program Files\Symantec\WinFax\WFXMOD32.EXE
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\System32\hpnra.exe
    C:\WINDOWS\System32\hpstatus.exe
    C:\Program Files\Java\j2re1.4.1_01\bin\javaw.exe
    C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
    C:\PROGRA~1\AIM95\aim.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\PROGRA~1\AWS\WEATHE~1\Weather.EXE
    C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe
    C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
    C:\WINDOWS\System32\HPBSPSVR.EXE
    C:\WINDOWS\System32\HPBJDSNT.EXE
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\janet pickett\Desktop\HiJackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://channels.aimtoday.com/search/aimtoolbar.jsp
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://channels.aimtoday.com/search/aimtoolbar.jsp
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Acrobat\ActiveX\AcroIEHelper.ocx
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O3 - Toolbar: AIM Search - {40D41A8B-D79B-43d7-99A7-9EE0F344C385} - C:\Program Files\AIM Toolbar\AIMBar.dll
    O4 - HKLM\..\Run: [HP Network Registry Agent] C:\WINDOWS\System32\hpnra.exe
    O4 - HKLM\..\Run: [HP Status] C:\WINDOWS\System32\hpstatus.exe
    O4 - HKLM\..\Run: [HP Proxy Server] C:\Program Files\Hewlett-Packard\ProxyService\ProxyService.lnk
    O4 - HKLM\..\Run: [WildTangent CDA] RUNDLL32.exe "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0400.dll",cdaEngineMain
    O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
    O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM95\aim.exe -cnetwait.odl
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [Weather] C:\PROGRA~1\AWS\WEATHE~1\Weather.EXE 1
    O4 - HKCU\..\Run: [pdfSaver3] "C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe"
    O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\aim.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\PROGRA~1\AWS\WEATHE~1\Weather.exe (HKCU)
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O16 - DPF: {2C15848B-21C0-406A-9902-56C8D90684F3} (alaWeb.clsGetStats) - file://C:\Wintotal\WIN2000\CONTENT\cabs\alaWeb.CAB
    O16 - DPF: {4989312D-58CF-11D5-A7D7-00E02911103E} (Interealty MultiSelect) - http://bcs.mlxchange.com/Control/MultiSelectComboBox.cab
    O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://207.188.7.150/17fa3dd9df7331476a01/netzip/RdxIE2.cab
    O16 - DPF: {6FD482A3-7B57-438B-B040-52CAA30147EE} (MLXchange Client Utils) - http://bcs.mlxchange.com/Control/MLXClientUtils.cab
    O16 - DPF: {7A7537FC-5988-11D3-8B33-00104B9E5A4A} (IRCWwwPrint Class) - http://bcsnet.interealty.com/BCS/cab/IRCWebPrint.cab
    O16 - DPF: {83AB6E4D-CDD7-11D3-B5E7-00104B9AFF6E} (GeacRevw Control) - http://bcs.mlxchange.com/Control/IRCSharc.cab
    O16 - DPF: {9420AB25-A351-4C46-AE2E-41B8701BBAF7} (SessionTimer Class) - http://bcsnet.interealty.com/BCS/cab/NICEClient.cab
    O16 - DPF: {C118AE9E-3A30-4B96-9C1C-295AA4A1262A} - http://vault.alamode.com/cab/vaultinstall.cab
    O16 - DPF: {DF4AC631-95F6-11D4-B75E-00E0B81077E8} (Pegasus Class) - http://bcsnet.interealty.com/bcs/cab/WebHorse.cab
    O16 - DPF: {F060A272-A18A-11D3-B75B-00E0B81077E8} (DropList Class) - http://bcsnet.interealty.com/BCS/cab/AspCustomCtrls.cab
  • primesuspectprimesuspect Beepin n' Boopin Detroit, MI Icrontian
    edited October 2004
    Okay, get rid of:

    O4 - HKLM\..\Run: [WildTangent CDA] RUNDLL32.exe "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0400.dll",cdaEngineMain
    O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe

    O4 - HKCU\..\Run: [Weather] C:\PROGRA~1\AWS\WEATHE~1\Weather.EXE 1

    O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\PROGRA~1\AWS\WEATHE~1\Weather.exe (HKCU)

    O16 - DPF: {2C15848B-21C0-406A-9902-56C8D90684F3} (alaWeb.clsGetStats) - file://C:\Wintotal\WIN2000\CONTENT\cabs\alaWeb.CAB

    O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://207.188.7.150/17fa3dd9df7331...tzip/RdxIE2.cab

    reboot, and post a new log :)
  • edited October 2004
    Okay - I removed the items and here is the new log. :p


    Logfile of HijackThis v1.98.2
    Scan saved at 9:13:21 AM, on 10/14/2004
    Platform: Windows XP (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 (6.00.2600.0000)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\System32\hpb2ksrv.exe
    C:\WINDOWS\System32\hpbhksrv.exe
    C:\WINDOWS\System32\WFXSVC.EXE
    C:\Program Files\Symantec\WinFax\WFXMOD32.EXE
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\System32\hpnra.exe
    C:\WINDOWS\System32\hpstatus.exe
    C:\Program Files\Java\j2re1.4.1_01\bin\javaw.exe
    C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
    C:\PROGRA~1\AIM95\aim.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\PROGRA~1\AWS\WEATHE~1\Weather.EXE
    C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe
    C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
    C:\WINDOWS\System32\HPBSPSVR.EXE
    C:\WINDOWS\System32\HPBJDSNT.EXE
    C:\Documents and Settings\janet pickett\Desktop\HiJackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://channels.aimtoday.com/search/aimtoolbar.jsp
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://channels.aimtoday.com/search/aimtoolbar.jsp
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Acrobat\ActiveX\AcroIEHelper.ocx
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O3 - Toolbar: AIM Search - {40D41A8B-D79B-43d7-99A7-9EE0F344C385} - C:\Program Files\AIM Toolbar\AIMBar.dll
    O4 - HKLM\..\Run: [HP Network Registry Agent] C:\WINDOWS\System32\hpnra.exe
    O4 - HKLM\..\Run: [HP Status] C:\WINDOWS\System32\hpstatus.exe
    O4 - HKLM\..\Run: [HP Proxy Server] C:\Program Files\Hewlett-Packard\ProxyService\ProxyService.lnk
    O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM95\aim.exe -cnetwait.odl
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [pdfSaver3] "C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe"
    O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\aim.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O16 - DPF: {4989312D-58CF-11D5-A7D7-00E02911103E} (Interealty MultiSelect) - http://bcs.mlxchange.com/Control/MultiSelectComboBox.cab
    O16 - DPF: {6FD482A3-7B57-438B-B040-52CAA30147EE} (MLXchange Client Utils) - http://bcs.mlxchange.com/Control/MLXClientUtils.cab
    O16 - DPF: {7A7537FC-5988-11D3-8B33-00104B9E5A4A} (IRCWwwPrint Class) - http://bcsnet.interealty.com/BCS/cab/IRCWebPrint.cab
    O16 - DPF: {83AB6E4D-CDD7-11D3-B5E7-00104B9AFF6E} (GeacRevw Control) - http://bcs.mlxchange.com/Control/IRCSharc.cab
    O16 - DPF: {9420AB25-A351-4C46-AE2E-41B8701BBAF7} (SessionTimer Class) - http://bcsnet.interealty.com/BCS/cab/NICEClient.cab
    O16 - DPF: {C118AE9E-3A30-4B96-9C1C-295AA4A1262A} - http://vault.alamode.com/cab/vaultinstall.cab
    O16 - DPF: {DF4AC631-95F6-11D4-B75E-00E0B81077E8} (Pegasus Class) - http://bcsnet.interealty.com/bcs/cab/WebHorse.cab
    O16 - DPF: {F060A272-A18A-11D3-B75B-00E0B81077E8} (DropList Class) - http://bcsnet.interealty.com/BCS/cab/AspCustomCtrls.cab
  • edited October 2004
    I forgot to reboot before that last log. This log is after I rebooted. Thanks and God Bless.


    Logfile of HijackThis v1.98.2
    Scan saved at 9:22:45 AM, on 10/14/2004
    Platform: Windows XP (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 (6.00.2600.0000)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\System32\hpnra.exe
    C:\WINDOWS\System32\hpstatus.exe
    C:\Program Files\Java\j2re1.4.1_01\bin\javaw.exe
    C:\PROGRA~1\AIM95\aim.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe
    C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
    C:\WINDOWS\System32\hpb2ksrv.exe
    C:\WINDOWS\System32\hpbhksrv.exe
    C:\WINDOWS\System32\WFXSVC.EXE
    C:\Program Files\Symantec\WinFax\WFXMOD32.EXE
    C:\WINDOWS\System32\HPBSPSVR.EXE
    C:\WINDOWS\System32\HPBJDSNT.EXE
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\janet pickett\Desktop\HiJackThis\HijackThis.exe
    C:\WINDOWS\System32\hpbpro.exe
    C:\WINDOWS\System32\hpboid.exe
    C:\WINDOWS\System32\hppapml0.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://channels.aimtoday.com/search/aimtoolbar.jsp
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://channels.aimtoday.com/search/aimtoolbar.jsp
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Acrobat\ActiveX\AcroIEHelper.ocx
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O3 - Toolbar: AIM Search - {40D41A8B-D79B-43d7-99A7-9EE0F344C385} - C:\Program Files\AIM Toolbar\AIMBar.dll
    O4 - HKLM\..\Run: [HP Network Registry Agent] C:\WINDOWS\System32\hpnra.exe
    O4 - HKLM\..\Run: [HP Status] C:\WINDOWS\System32\hpstatus.exe
    O4 - HKLM\..\Run: [HP Proxy Server] C:\Program Files\Hewlett-Packard\ProxyService\ProxyService.lnk
    O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM95\aim.exe -cnetwait.odl
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [pdfSaver3] "C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe"
    O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\aim.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O16 - DPF: {4989312D-58CF-11D5-A7D7-00E02911103E} (Interealty MultiSelect) - http://bcs.mlxchange.com/Control/MultiSelectComboBox.cab
    O16 - DPF: {6FD482A3-7B57-438B-B040-52CAA30147EE} (MLXchange Client Utils) - http://bcs.mlxchange.com/Control/MLXClientUtils.cab
    O16 - DPF: {7A7537FC-5988-11D3-8B33-00104B9E5A4A} (IRCWwwPrint Class) - http://bcsnet.interealty.com/BCS/cab/IRCWebPrint.cab
    O16 - DPF: {83AB6E4D-CDD7-11D3-B5E7-00104B9AFF6E} (GeacRevw Control) - http://bcs.mlxchange.com/Control/IRCSharc.cab
    O16 - DPF: {9420AB25-A351-4C46-AE2E-41B8701BBAF7} (SessionTimer Class) - http://bcsnet.interealty.com/BCS/cab/NICEClient.cab
    O16 - DPF: {C118AE9E-3A30-4B96-9C1C-295AA4A1262A} - http://vault.alamode.com/cab/vaultinstall.cab
    O16 - DPF: {DF4AC631-95F6-11D4-B75E-00E0B81077E8} (Pegasus Class) - http://bcsnet.interealty.com/bcs/cab/WebHorse.cab
    O16 - DPF: {F060A272-A18A-11D3-B75B-00E0B81077E8} (DropList Class) - http://bcsnet.interealty.com/BCS/cab/AspCustomCtrls.cab
  • primesuspectprimesuspect Beepin n' Boopin Detroit, MI Icrontian
    edited October 2004
    The log looks clean. If the computer still reboots spontaneously, I would suggest that it is a hardware problem.

    One thing you can do is test the memory. Go to www.memtest.org and download the pre-compiled executable, which will make a bootable floppy. Boot off that floppy and it will test the memory. It can take up to an hour, so be sure to set aside some time for this. There are 7 tests. If it gets through all 7, with zero errors, then we can assume that the memory is not the problem.

    Let us know how that goes :)
  • edited October 2004
    Thanks - I'll have to do the memtest tonight, but I wanted to ask about this line in the log. Vault is something we do not use anymore - it was a backup system for some of our work files and we have chosen to not use it. Can this line be deleted.


    O16 - DPF: {C118AE9E-3A30-4B96-9C1C-295AA4A1262A} - http://vault.alamode.com/cab/vaultinstall.cab
  • edited October 2004
    :( Well, I don't know what I'm doing wrong. I have tried for two hours to make this boot disk from memtest and I just can't get it done. I have tried every download choice they have just to be sure I'm not trying the wrong one, but nothing works. Something is definitely still wrong with the computer. It went all day withOUT restarting but then it RESTARTED all on its on tonight. It is also doing very weird things in some of our software. It runs very, very slow. Any suggestions???? Man, I really hate this, I wanted to be someone that got my problem fixed and then got out of your hair. I am so sorry. My other machine is still acting up to, but I'll update my other thread on that one. Again, thank you so much for your help and I really am sorry about this. By the way, I noticed on another thread that someone was getting a "dumprep" line in their log - I got that earlier today and I removed it. I'm not sure if that means anything, but I just thought I would let you know.

    Here is a new HJT log if you need it:

    Logfile of HijackThis v1.98.2
    Scan saved at 10:24:00 PM, on 10/14/2004
    Platform: Windows XP (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 (6.00.2600.0000)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\System32\hpb2ksrv.exe
    C:\WINDOWS\System32\hpbhksrv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\System32\hpnra.exe
    C:\WINDOWS\System32\hpstatus.exe
    C:\Program Files\Java\j2re1.4.1_01\bin\javaw.exe
    C:\PROGRA~1\AIM95\aim.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe
    C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
    C:\WINDOWS\System32\HPBSPSVR.EXE
    C:\WINDOWS\System32\HPBJDSNT.EXE
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\janet pickett\Desktop\HiJackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://channels.aimtoday.com/search/aimtoolbar.jsp
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://channels.aimtoday.com/search/aimtoolbar.jsp
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Acrobat\ActiveX\AcroIEHelper.ocx
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O3 - Toolbar: AIM Search - {40D41A8B-D79B-43d7-99A7-9EE0F344C385} - C:\Program Files\AIM Toolbar\AIMBar.dll
    O4 - HKLM\..\Run: [HP Network Registry Agent] C:\WINDOWS\System32\hpnra.exe
    O4 - HKLM\..\Run: [HP Status] C:\WINDOWS\System32\hpstatus.exe
    O4 - HKLM\..\Run: [HP Proxy Server] C:\Program Files\Hewlett-Packard\ProxyService\ProxyService.lnk
    O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM95\aim.exe -cnetwait.odl
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [pdfSaver3] "C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe"
    O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\aim.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O16 - DPF: {4989312D-58CF-11D5-A7D7-00E02911103E} (Interealty MultiSelect) - http://bcs.mlxchange.com/Control/MultiSelectComboBox.cab
    O16 - DPF: {6FD482A3-7B57-438B-B040-52CAA30147EE} (MLXchange Client Utils) - http://bcs.mlxchange.com/Control/MLXClientUtils.cab
    O16 - DPF: {7A7537FC-5988-11D3-8B33-00104B9E5A4A} (IRCWwwPrint Class) - http://bcsnet.interealty.com/BCS/cab/IRCWebPrint.cab
    O16 - DPF: {83AB6E4D-CDD7-11D3-B5E7-00104B9AFF6E} (GeacRevw Control) - http://bcs.mlxchange.com/Control/IRCSharc.cab
    O16 - DPF: {9420AB25-A351-4C46-AE2E-41B8701BBAF7} (SessionTimer Class) - http://bcsnet.interealty.com/BCS/cab/NICEClient.cab
    O16 - DPF: {C118AE9E-3A30-4B96-9C1C-295AA4A1262A} - http://vault.alamode.com/cab/vaultinstall.cab
    O16 - DPF: {DF4AC631-95F6-11D4-B75E-00E0B81077E8} (Pegasus Class) - http://bcsnet.interealty.com/bcs/cab/WebHorse.cab
    O16 - DPF: {F060A272-A18A-11D3-B75B-00E0B81077E8} (DropList Class) - http://bcsnet.interealty.com/BCS/cab/AspCustomCtrls.cab

    :bawling:
  • primesuspectprimesuspect Beepin n' Boopin Detroit, MI Icrontian
    edited October 2004
    The more I read, the more I am convinced that it is definitely a hardware problem.

    This is the exact file you need:

    http://www.memtest.org/download/1.27/memtest86+-1.27.floppy.zip

    Unzip that, and run "install.bat"

    It will prompt you for a floppy disk. Follow the prompts and then reboot with the disk in the drive.

    If it doesn't work, can you be specific about the error, or tell me where it's not working at?
  • edited October 2004
    Oh, I forgot to tell you when it restarted on its own I got a message when it came back up that said "Computer restarted after unexpected shutdown. MS Windows detected possible devise error"

    Technical info about error:
    c:\windows\minidump\mini101404-01.dmp
    c:\document 1\janet p\locals 1\temp\wer1b.tmp.dir 00/sysdata.xml

    Error Sig
    BCCode: 100000ea BCP1:8152e7eO BCP2:8142A8 BCP3:81783078
    BCP4:00000001 0SVer:S-1-2600 SP:0-0 Product: 256-1

    You probablly don't need all that, but I'm just trying to give you any help I can.

    Thank you so much
  • edited October 2004
    Okay, I just did exactly as you said and it is not working. When I reboot it doesn't read A:. It just boots as normal right on into windows :rolleyes:
  • edited October 2004
    I do think it made the boot disk because it did take me through the prompts for a floppy and then told me to reboot
  • primesuspectprimesuspect Beepin n' Boopin Detroit, MI Icrontian
    edited October 2004
    You need to change a setting in your BIOS to boot off the floppy. What kind of computer do you have?
  • edited October 2004
    It's a generic. My son built it for me.
  • edited October 2004
    Okay - I finally got my comp to boot up from A:. I'll run the memtest I'll post after that. Thanks for all the help.
  • edited October 2004
    In running memtest it goes through the 7 tests with no errors and then starts with test 1 again. It does this over and over. Is that normal. If it is then everything with memtest checks out ok. Please advise. Thanks :)
  • primesuspectprimesuspect Beepin n' Boopin Detroit, MI Icrontian
    edited October 2004
    Well that's good - your memory is good.

    But it's bad in that we are back to square one - namely, what's wrong with your computer?

    Here's what I'm going to do. I'm moving this thread to general hardware. I think the problem may be PSU related - since your son built it, can you ask him what brand/type of PSU (Power Supply Unit) he used? If it's not the memory, it could be the PSU, motherboard, CPU, or even hard drive (although that is unlikely). Did this problem just start after several months of use, or has it done this from the time he built it?

    Also, could you list the specs of your computer (type/speed of CPU, brand of motherboard, etc.)?
  • edited October 2004
    We have been using this comp for at least 3 years. A long time ago it was shutting off but I found out Norton Anti-Virus was doing it and once I deleted Norton it was fine, but that's the only time we've had trouble with it. I'll get back with you on the specs. Thanks so very much. :)
  • edited October 2004
    I do get a error message once in a while (like right now :) ) that says

    MS Windows detected a possible device failure.
    The driver for the display device was unable to complete a drawing operation.
    Please check with the device manufacturer for a driver update.

    I don't know if thats helpful at all. I'll get the specs to you. Thanks.
  • primesuspectprimesuspect Beepin n' Boopin Detroit, MI Icrontian
    edited October 2004
    That is very helpful actually. It's probably telling us exactly what the problem is - a problem with your video card. First of all, do you know what kind of video card it is? And if so, have you downloaded the latest drivers for it? Perhaps the video card is failing or overheating (or both)....
  • edited October 2004
    I don't know what kind of video card it is. Is there a way to tell from the computer. Sorry to be so ignorant!!! Thanks.
  • edited October 2004
    To Primesuspect: Just wanted to give you an update. I have replaced the video card and it is working fine now - no more random reboots or freezing up. I really appreciate your help. I would have never been able to solve this on my own. Thank you so much and God Bless You.
  • primesuspectprimesuspect Beepin n' Boopin Detroit, MI Icrontian
    edited October 2004
    I'm glad you got it figured out :thumbsup:

    Be sure to stick around here. We certainly appreciate friendly people and in a few short months, you'll be a computer expert just by virtue of osmosis ;D

    Also, you might want to consider joining our folding team. It's a great cause, and a great way to join our community, and there's no downside to it. Check out the link in my signature :)
This discussion has been closed.