1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

XP Booting issue

Discussion in 'Windows XP' started by roy66, 2005/08/28.

  1. 2005/08/28
    roy66

    roy66 Well-Known Member Thread Starter

    Joined:
    2002/03/07
    Messages:
    756
    Likes Received:
    3
    I am running XP Home with which I am currently having a peculiar problem.

    When I bootup I get no response from my mouse when I click on anything on my desktop.

    If I then insert my Xp cd and then shut down its welcome it triggers everything into action.

    I can then operate my PC as I would normally.

    Thankfully at least by this method I can get it operating , but there must be some issue that needs addressing.

    All help appreciated.
    Thanks
    roy66
     
  2. 2005/08/28
    Newt

    Newt Inactive

    Joined:
    2002/01/07
    Messages:
    10,974
    Likes Received:
    2
    Run devmgmt.msc and delete all your pointing devices then reboot. Windows will redetect the mouse and hopefully the reinstall will take care of your issue if it is software related.

    With XP-home you may have to boot to safe mode and log on as Administrator to be able to delete the device.
     
    Newt,
    #2

  3. to hide this advert.

  4. 2005/08/28
    roy66

    roy66 Well-Known Member Thread Starter

    Joined:
    2002/03/07
    Messages:
    756
    Likes Received:
    3
    Thanks Newt for your response but before I follow up on it maybe I need to clarify.

    My mouse is OK it is the desktop that is frozen, therefore not responding to mouse clicks.

    However after inserting my XP cd and then shutting down its welcome... it triggers everything into action.

    Perhaps your suggestion is the solution but I felt the need to clarify the situation.

    roy66
     
  5. 2005/08/29
    Newt

    Newt Inactive

    Joined:
    2002/01/07
    Messages:
    10,974
    Likes Received:
    2
    It may well cure the problem and at worst will leave you as you are now.

    There are some other 'fix it' options available but none as harmless as this so I'd like you to give it a try before we move on to more heroic measures.
     
    Newt,
    #4
  6. 2005/08/29
    roy66

    roy66 Well-Known Member Thread Starter

    Joined:
    2002/03/07
    Messages:
    756
    Likes Received:
    3
    OK, here's what I've basically discovered.

    The taskbar and clock is frozen and doesn't "seemingly" respond..BUT after about a minute all those items I frantically clicked on..with no response, suddenly open.
    However, My Computer just goes on a "flashlight" search so I close that down.
    The desktop freezes again and after about another minute it is all ok..up and running.
    ????????????
     
  7. 2005/08/29
    roy66

    roy66 Well-Known Member Thread Starter

    Joined:
    2002/03/07
    Messages:
    756
    Likes Received:
    3
    Logfile of HijackThis v1.98.2
    Scan saved at 7:20:58 PM, on 29/08/2005
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\System32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Ahead\InCD\InCDsrv.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
    C:\PROGRA~1\Avast4\ashDisp.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\PROGRA~1\REGIST~2\rbcs.exe
    C:\Program Files\AutoSizer\AutoSizer.exe
    C:\Program Files\Avast4\aswUpdSv.exe
    C:\Program Files\Avast4\ashServ.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\Program Files\TClock.exe
    C:\Program Files\Avast4\ashMaiSv.exe
    C:\Program Files\Avast4\ashWebSv.exe
    C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
    C:\Program Files\Outlook Express\msimn.exe
    C:\Downloads\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://www.superwebsearch.com/ie/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.tpg.com.au/
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.tpg.com.au/
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll
    O3 - Toolbar: (no name) - {82315A18-6CFB-44a7-BDFD-90E36537C252} - (no file)
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe "
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\system32\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [CheckRegDefragService] "C:\PROGRA~1\REGIST~2\rbcs.exe" -autorun
    O4 - HKCU\..\Run: [AutoSizer] "C:\Program Files\AutoSizer\AutoSizer.exe "
    O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\ccleaner.exe" /AUTO
    O4 - Startup: MiniMinder.lnk = C:\Program Files\MiniMind\MiniMind.exe
    O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
    O8 - Extra context menu item: &ieSpell Options - res://C:\Program Files\ieSpell\iespell.dll/SPELLOPTION.HTM
    O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
    O8 - Extra context menu item: Check &Spelling - res://C:\Program Files\ieSpell\iespell.dll/SPELLCHECK.HTM
    O8 - Extra context menu item: Customize Menu &4 - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
    O8 - Extra context menu item: Fill Forms &] - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
    O8 - Extra context menu item: Open PDF in Word - res://C:\Program Files\ScanSoft\PDF Converter\IEShellExt.dll /100
    O8 - Extra context menu item: Save Forms &[ - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
    O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
    O9 - Extra button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - res://C:\Program Files\ieSpell\iespell.dll/SPELLCHECK.HTM (file missing)
    O9 - Extra 'Tools' menuitem: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - res://C:\Program Files\ieSpell\iespell.dll/SPELLCHECK.HTM (file missing)
    O9 - Extra button: (no name) - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - res://C:\Program Files\ieSpell\iespell.dll/SPELLOPTION.HTM (file missing)
    O9 - Extra 'Tools' menuitem: ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - res://C:\Program Files\ieSpell\iespell.dll/SPELLOPTION.HTM (file missing)
    O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
    O9 - Extra 'Tools' menuitem: Fill Forms &] - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
    O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
    O9 - Extra 'Tools' menuitem: Save Forms &[ - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
    O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
    O9 - Extra 'Tools' menuitem: RF Toolbar &2 - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
    O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - (no file)
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - (no file)
    O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://pcpitstop.com/pcpitstop/PCPitStop.CAB
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
    O16 - DPF: {5EB6A98B-F75B-4AC7-821D-BAD2C29D18C2} (CVALAXObj Class) - https://www.crystalvoicelive.com/download/CVALAX.CAB
    O16 - DPF: {6BEA1C48-1850-486C-8F58-C7354BA3165E} (Install Class) - http://updates.lifescapeinc.com/installers/pinstall/pinstall.cab
    O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
    O16 - DPF: {C432C4BD-3566-411C-8F3C-E5E0D3AE5D33} (CBrowser Class) - http://www.streamingfaith.com/common/mbrowser/MINIBrowser.CAB
    O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) - http://h30043.www3.hp.com/aio/en/check/qdiagh.cab?322
    O17 - HKLM\System\CCS\Services\Tcpip\..\{3E59B777-5C88-4E9A-AD4C-D51B0BCCEDF1}: NameServer = 203.12.160.35,203.12.160.36
     
  8. 2005/08/29
    oshwyn5

    oshwyn5 Inactive

    Joined:
    2005/08/25
    Messages:
    736
    Likes Received:
    0
    C:\Downloads\HijackThis.exe

    Move to a permanent folder
    C:\Downloads\HijackThis\HijackThis.exe



    R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://www.superwebsearch.com/ie/

    Superwebsearch.com is a known coolwebsearch trojan identifier and installer.

    Get the removal tool
    http://www.intermute.com/products/cwshredder.html
    Download, run with all other windows closed and choose fix.

    You also have Quicksearch Spyware
    Follow the removal instructions here
    http://securityresponse.symantec.com/avcenter/venc/data/spyware.quicksearch.html

    Then run HijackThis with all other windows closed
    Check this
    R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://www.superwebsearch.com/ie/
    O3 - Toolbar: (no name) - {82315A18-6CFB-44a7-BDFD-90E36537C252} - (no file)
    And choose fix


    Looking at your logfile, I would suspect that cccleaner has removed some of the registry entries your mouse needs to work. Reinstall the mouse software.
    There should be a 020 or 023 entry for it.
     
  9. 2005/08/29
    roy66

    roy66 Well-Known Member Thread Starter

    Joined:
    2002/03/07
    Messages:
    756
    Likes Received:
    3
    IDIOSYNCRATICis possibly the better description for the recent behavioural problems that my PC has been dishing out to me.

    I will take note of the suggestion in relation to my last posting.

    Currently the problem has sorted itself out and all is running OK..much like when you get out of bed with a problem that you were unaware existed in your body and then throughout the day it mysteriously manages itself and you are OK again.

    TRUST all remains OK as I have rebooted my PC several times to test the results and so far not a problem.

    THANKS to all

    roy66
     
  10. 2005/08/29
    oshwyn5

    oshwyn5 Inactive

    Joined:
    2005/08/25
    Messages:
    736
    Likes Received:
    0
    Note that CCCleaner and other "Registry fixers" work by taking a database which they have compiled which lists the registry entries, dll files , dependencies and shortcuts etc which known programs have.
    They then compare your registry to their database. Anything not matching is called an error. Is it? Not necessarily. It just means it is not what they have in their database or it is not listed in their database. Maybe you have a newer or older version, a customized tweaked setup, or just something they did not include.
    How do they fix these registry errors? They delete them. Not good.
    Yes, they can be useful if you do not let them do things automatically.If you review each item they find and verify that it is indeed unnecessary or incorrect.
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.