1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Slow Boot Up in windows XP

Discussion in 'Windows XP' started by Buck, 2008/12/30.

  1. 2009/01/22
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    I don't think that would cause a problem Buck.
     
  2. 2009/01/25
    Buck

    Buck Inactive Thread Starter

    Joined:
    2008/10/07
    Messages:
    41
    Likes Received:
    0
    Hi Noadfear- I sent you a bootlog after uninstalling both Comodo and Avast. Let me know what else you need and thanks again. Buck
     

  3. to hide this advert.

  4. 2009/01/25
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    I have not yet received that email Buck. Please resend.
     
  5. 2009/01/26
    Buck

    Buck Inactive Thread Starter

    Joined:
    2008/10/07
    Messages:
    41
    Likes Received:
    0
    I sent it to you again....sorry, don't know what happened.....let me know if you don't get it soon. Buck
     
  6. 2009/01/27
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    Hi Buck,

    Finally figured out where your last 2 messages went. For some reason they got filtered out by the spam filter. Odd, since the first one you sent went right through. :confused:

    Anyway, looks like the source has been found. Not one process took over 1 minute to load with both Avast and Comodo out, and total logon process was under 2 minutes. Re-install Comodo and see how it behaves after a couple of restarts. If OK, re-install Avast and see what happens.
     
  7. 2009/01/29
    Buck

    Buck Inactive Thread Starter

    Joined:
    2008/10/07
    Messages:
    41
    Likes Received:
    0
    Hey Noahdfear- reinstalled comodo then avast. Boot time seems to be about the same- around six minutes or so. May be its just the computer? Any ideas? Thanks. Buck
     
  8. 2009/01/29
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    The last bootlog you sent appeared to me as though you had a normalish boot time - approximately 2 minutes. Is that correct?
    Are you saying that it's back up to 6 minutes after re-installing? If so, the idea was to see which of the 2 apps was causing it by installing just one of them and checking boot time a few times, then the other.
     
  9. 2009/01/31
    Buck

    Buck Inactive Thread Starter

    Joined:
    2008/10/07
    Messages:
    41
    Likes Received:
    0
    Hey Noahdfear. Gotcha. I uninstalled avast and boot time returned to about 2minutes and change. So it looks like its that. Right now, I'm going to leave it uninstalled. Any recs about having avast and keeping the boottime down? Should I go with a different antivirus program (it had Mcafee on it when I started and it barely even ran at all). Let me know your thoughts....thanks!
     
  10. 2009/01/31
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    About the best I could do RE: taming Avast would be seeing if it's being caused by a service loading and if that order of loading might keep it from hanging. Other alternatives (for free) include Avira, AVG, Comodo, PCTools, to name a few. If considering a pro version, I'd recommend Kaspersky.
     
  11. 2009/02/01
    Buck

    Buck Inactive Thread Starter

    Joined:
    2008/10/07
    Messages:
    41
    Likes Received:
    0
    I'd rather have avast if possible as i have it running on my other computer and am familiar with the user interface. Any advice on how to reinstall so it boots faster?
     
  12. 2009/02/01
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    As previously stated, the best I could do with Avast is to see if the services are in a group whose startup position can be changed, if that is indeed what is causing the conflict.

    First, download, install and run ERUNT to save a backup of the registry. Once done, navigate to the dated subfolder of C:\Windows\ERDNT and zip the file named system. Name the zip file before.zip

    Next, re-install Avast. If the bootime again increases to the unbearable, first create another regsitry backup with ERUNT, then a new BootlogXP log. Check the C:\Windows\ERDNT to see if there was a new dated subfolder created. If not, zip the same system file as before and name it after.zip


    You will then need to email me the bootlog and the 2 zipped system files for analysis.
     
  13. 2009/02/02
    Buck

    Buck Inactive Thread Starter

    Joined:
    2008/10/07
    Messages:
    41
    Likes Received:
    0
    Sorry Noahdfear- I'm not totally familiar with zipping something- is this easy? If not, I'm inclined to stop here- we have a functioning computer that now takes six minutes to boot up- I'd like it to boot faster but don't want to break it. What do you think- should I do this next step or stop while I'm ahead? If you think I should go on- can you give me a quick step through on how to zip something? Thanks again for all you help.
     
  14. 2009/02/02
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    It's very easy Buck. Navigate to the file, right click on it and select Send To>Compressed (zipped) Folder. A zip file named system.zip will be created right there in the same directory. Right click the zip and select rename, then name before.zip
    Repeat for the after.zip file, then attach both zip files to an email.
     
  15. 2009/02/02
    Buck

    Buck Inactive Thread Starter

    Joined:
    2008/10/07
    Messages:
    41
    Likes Received:
    0
    Hey noahdfear...i did what you wanted but my email won't let me send files larger than 10mb. (both the zipped files are larger than 10mb) any other way to get it to you?
     
  16. 2009/02/02
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    Each over 10MB :eek:

    Lets go with another angle. Download driver_service_info and run it.
    Press S then Enter for a Services report.
    Press A then Enter for Active Services.
    When prompted, press Y then Enter to gather ServiceGroup and LoadOrderGroup info.
    Copy the contents of the log that opens and paste it in a reply here.
     
  17. 2009/02/03
    Buck

    Buck Inactive Thread Starter

    Joined:
    2008/10/07
    Messages:
    41
    Likes Received:
    0
    Here it is....

    ~~~ Active Service Info report ~~~

    Microsoft Windows XP Home Edition
    Service Pack 3
    5.1.2600

    2/3/2009 4:33:00 PM


    ~~~Running Processes~~~

    System Idle Process
    PID: 0
    Path:
    Parent PID: 0

    System
    PID: 4
    Path:
    Parent PID: 0

    smss.exe
    PID: 736
    Path: C:\WINDOWS\System32\smss.exe
    Parent PID: 4

    csrss.exe
    PID: 808
    Path:
    Parent PID: 736

    winlogon.exe
    PID: 832
    Path: C:\WINDOWS\system32\winlogon.exe
    Parent PID: 736

    services.exe
    PID: 876
    Path: C:\WINDOWS\system32\services.exe
    Parent PID: 832

    lsass.exe
    PID: 888
    Path: C:\WINDOWS\system32\lsass.exe
    Parent PID: 832

    svchost.exe
    PID: 1052
    Path: C:\WINDOWS\system32\svchost.exe
    Parent PID: 876

    svchost.exe
    PID: 1136
    Path:
    Parent PID: 876

    svchost.exe
    PID: 1192
    Path: C:\WINDOWS\System32\svchost.exe
    Parent PID: 876

    svchost.exe
    PID: 1264
    Path:
    Parent PID: 876

    svchost.exe
    PID: 1380
    Path:
    Parent PID: 876

    WLTRYSVC.EXE
    PID: 1508
    Path: C:\WINDOWS\System32\WLTRYSVC.EXE
    Parent PID: 876

    BCMWLTRY.EXE
    PID: 1524
    Path: C:\WINDOWS\System32\bcmwltry.exe
    Parent PID: 1508

    aswUpdSv.exe
    PID: 1532
    Path: C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    Parent PID: 876

    ashServ.exe
    PID: 1608
    Path: C:\Program Files\Alwil Software\Avast4\ashServ.exe
    Parent PID: 876

    explorer.exe
    PID: 1832
    Path: C:\WINDOWS\Explorer.EXE
    Parent PID: 1804

    hkcmd.exe
    PID: 176
    Path: C:\WINDOWS\system32\hkcmd.exe
    Parent PID: 1832

    igfxpers.exe
    PID: 188
    Path: C:\WINDOWS\system32\igfxpers.exe
    Parent PID: 1832

    SynTPEnh.exe
    PID: 192
    Path: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    Parent PID: 1832

    WLTRAY.EXE
    PID: 204
    Path: C:\WINDOWS\system32\WLTRAY.exe
    Parent PID: 1832

    stsystra.exe
    PID: 212
    Path: C:\WINDOWS\stsystra.exe
    Parent PID: 1832

    tfswctrl.exe
    PID: 220
    Path: C:\WINDOWS\system32\dla\tfswctrl.exe
    Parent PID: 1832

    issch.exe
    PID: 232
    Path: C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
    Parent PID: 1832

    hpwuSchd2.exe
    PID: 248
    Path: C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    Parent PID: 1832

    cfp.exe
    PID: 276
    Path: C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
    Parent PID: 1832

    igfxsrvc.exe
    PID: 316
    Path: C:\WINDOWS\system32\igfxsrvc.exe
    Parent PID: 1052

    ashDisp.exe
    PID: 332
    Path: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    Parent PID: 1832

    TeaTimer.exe
    PID: 340
    Path: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    Parent PID: 1832

    ctfmon.exe
    PID: 476
    Path: C:\WINDOWS\system32\ctfmon.exe
    Parent PID: 1832

    DLG.exe
    PID: 656
    Path: C:\Program Files\Digital Line Detect\DLG.exe
    Parent PID: 1832

    hpqtra08.exe
    PID: 672
    Path: C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    Parent PID: 1832

    sqlmangr.exe
    PID: 712
    Path: C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
    Parent PID: 1832

    spoolsv.exe
    PID: 1392
    Path: C:\WINDOWS\system32\spoolsv.exe
    Parent PID: 876

    AppleMobileDeviceService.exe
    PID: 1840
    Path: C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    Parent PID: 876

    cmdagent.exe
    PID: 1980
    Path: C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    Parent PID: 876

    svchost.exe
    PID: 628
    Path: C:\WINDOWS\system32\svchost.exe
    Parent PID: 876

    MDM.EXE
    PID: 2012
    Path: C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    Parent PID: 876

    sqlservr.exe
    PID: 1960
    Path: C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
    Parent PID: 876

    NicConfigSvc.exe
    PID: 464
    Path: C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
    Parent PID: 876

    svchost.exe
    PID: 2084
    Path: C:\WINDOWS\system32\svchost.exe
    Parent PID: 876

    wdfmgr.exe
    PID: 2116
    Path:
    Parent PID: 876

    CALMAIN.exe
    PID: 2316
    Path: C:\Program Files\Canon\CAL\CALMAIN.exe
    Parent PID: 876

    ashMaiSv.exe
    PID: 2796
    Path: C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    Parent PID: 876

    ashWebSv.exe
    PID: 2868
    Path: C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    Parent PID: 876

    alg.exe
    PID: 3436
    Path:
    Parent PID: 876

    wmiprvse.exe
    PID: 3484
    Path:
    Parent PID: 1052

    svchost.exe
    PID: 2356
    Path: C:\WINDOWS\System32\svchost.exe
    Parent PID: 876

    hpqste08.exe
    PID: 3792
    Path: C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
    Parent PID: 672

    svchost.exe
    PID: 3524
    Path: C:\WINDOWS\System32\svchost.exe
    Parent PID: 876

    iexplore.exe
    PID: 3416
    Path: C:\Program Files\Internet Explorer\iexplore.exe
    Parent PID: 1832

    driver_service_info[1].exe
    PID: 3780
    Path: C:\Documents and Settings\Sharon Sanborn\Local Settings\Temporary Internet Files\Content.IE5\AQNFTQVS\driver_service_info[1].exe
    Parent PID: 3416

    cmd.exe
    PID: 136
    Path: C:\WINDOWS\system32\cmd.exe
    Parent PID: 3780

    wmiprvse.exe
    PID: 1028
    Path:
    Parent PID: 1052

    cscript.exe
    PID: 756
    Path: C:\WINDOWS\system32\cscript.exe
    Parent PID: 136

    findstr.exe
    PID: 2564
    Path: C:\WINDOWS\system32\findstr.exe
    Parent PID: 136


    ~~~Running Services by PID~~~

    PID: 3436
    Application Layer Gateway Service
    PID: 1840
    Apple Mobile Device
    PID: 1532
    avast! iAVS4 Control Service
    PID: 1192
    Windows Audio
    Cryptographic Services
    DHCP Client
    Error Reporting Service
    COM+ Event System
    Fast User Switching Compatibility
    Help and Support
    Server
    Workstation
    Network Connections
    Network Location Awareness (NLA)
    Remote Access Auto Connection Manager
    Remote Access Connection Manager
    Task Scheduler
    Secondary Logon
    System Event Notification
    Windows Firewall/Internet Connection Sharing (ICS)
    Shell Hardware Detection
    System Restore Service
    Telephony
    Themes
    Windows Time
    Windows Management Instrumentation
    Security Center
    Automatic Updates
    PID: 1608
    avast! Antivirus
    PID: 2796
    avast! Mail Scanner
    PID: 2868
    avast! Web Scanner
    PID: 2316
    Canon Camera Access Library 8
    PID: 1980
    COMODO Internet Security Helper Service
    PID: 1052
    DCOM Server Process Launcher
    Terminal Services
    PID: 1264
    DNS Client
    PID: 876
    Event Log
    Plug and Play
    PID: 628
    hpqcxs08
    HP CUE DeviceDiscovery Service
    PID: 2356
    HTTP SSL
    PID: 1380
    TCP/IP NetBIOS Helper
    SSDP Discovery Service
    Universal Plug and Play Device Host
    WebClient
    PID: 2012
    Machine Debug Manager
    PID: 1960
    MSSQL$MICROSOFTSMLBIZ
    PID: 464
    NICCONFIGSVC
    PID: 3524
    Pml Driver HPZ12
    PID: 888
    IPSEC Services
    Protected Storage
    Security Accounts Manager
    PID: 1136
    Remote Procedure Call (RPC)
    PID: 1392
    Print Spooler
    PID: 2084
    Windows Image Acquisition (WIA)
    PID: 2116
    Windows User Mode Driver Framework
    PID: 1508
    Dell Wireless WLAN Tray Service


    ~~~Running Services Configuration~~~

    PID: 3436
    Service: ALG
    Displayed: Application Layer Gateway Service
    Image: C:\WINDOWS\System32\alg.exe
    Start Mode: Manual

    PID: 1840
    Service: Apple Mobile Device
    Displayed: Apple Mobile Device
    Image: "C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe "
    Start Mode: Auto

    PID: 1532
    Service: aswUpdSv
    Displayed: avast! iAVS4 Control Service
    Image: "C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe "
    Start Mode: Auto

    PID: 1192
    Service: AudioSrv
    Displayed: Windows Audio
    Image: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1608
    Service: avast! Antivirus
    Displayed: avast! Antivirus
    Image: "C:\Program Files\Alwil Software\Avast4\ashServ.exe "
    Start Mode: Auto

    PID: 2796
    Service: avast! Mail Scanner
    Displayed: avast! Mail Scanner
    Image: "C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service
    Start Mode: Manual

    PID: 2868
    Service: avast! Web Scanner
    Displayed: avast! Web Scanner
    Image: "C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service
    Start Mode: Manual

    PID: 2316
    Service: CCALib8
    Displayed: Canon Camera Access Library 8
    Image: C:\Program Files\Canon\CAL\CALMAIN.exe
    Start Mode: Auto

    PID: 1980
    Service: cmdAgent
    Displayed: COMODO Internet Security Helper Service
    Image: "C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe "
    Start Mode: Auto

    PID: 1192
    Service: CryptSvc
    Displayed: Cryptographic Services
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1052
    Service: DcomLaunch
    Displayed: DCOM Server Process Launcher
    Image: C:\WINDOWS\system32\svchost -k DcomLaunch
    Start Mode: Auto

    PID: 1192
    Service: Dhcp
    Displayed: DHCP Client
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1264
    Service: Dnscache
    Displayed: DNS Client
    Image: C:\WINDOWS\system32\svchost.exe -k NetworkService
    Start Mode: Auto

    PID: 1192
    Service: ERSvc
    Displayed: Error Reporting Service
    Image: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 876
    Service: Eventlog
    Displayed: Event Log
    Image: C:\WINDOWS\system32\services.exe
    Start Mode: Auto

    PID: 1192
    Service: EventSystem
    Displayed: COM+ Event System
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Manual

    PID: 1192
    Service: FastUserSwitchingCompatibility
    Displayed: Fast User Switching Compatibility
    Image: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Start Mode: Manual

    PID: 1192
    Service: helpsvc
    Displayed: Help and Support
    Image: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 628
    Service: hpqcxs08
    Displayed: hpqcxs08
    Image: C:\WINDOWS\system32\svchost.exe -k hpdevmgmt
    Start Mode: Manual

    PID: 628
    Service: hpqddsvc
    Displayed: HP CUE DeviceDiscovery Service
    Image: C:\WINDOWS\system32\svchost.exe -k hpdevmgmt
    Start Mode: Auto

    PID: 2356
    Service: HTTPFilter
    Displayed: HTTP SSL
    Image: C:\WINDOWS\System32\svchost.exe -k HTTPFilter
    Start Mode: Manual

    PID: 1192
    Service: lanmanserver
    Displayed: Server
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1192
    Service: lanmanworkstation
    Displayed: Workstation
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1380
    Service: LmHosts
    Displayed: TCP/IP NetBIOS Helper
    Image: C:\WINDOWS\system32\svchost.exe -k LocalService
    Start Mode: Auto

    PID: 2012
    Service: MDM
    Displayed: Machine Debug Manager
    Image: "C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE "
    Start Mode: Auto

    PID: 1960
    Service: MSSQL$MICROSOFTSMLBIZ
    Displayed: MSSQL$MICROSOFTSMLBIZ
    Image: "C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe" -sMICROSOFTSMLBIZ
    Start Mode: Auto

    PID: 1192
    Service: Netman
    Displayed: Network Connections
    Image: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Start Mode: Manual

    PID: 464
    Service: NICCONFIGSVC
    Displayed: NICCONFIGSVC
    Image: C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
    Start Mode: Auto

    PID: 1192
    Service: Nla
    Displayed: Network Location Awareness (NLA)
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Manual

    PID: 876
    Service: PlugPlay
    Displayed: Plug and Play
    Image: C:\WINDOWS\system32\services.exe
    Start Mode: Auto

    PID: 3524
    Service: Pml Driver HPZ12
    Displayed: Pml Driver HPZ12
    Image: C:\WINDOWS\System32\svchost.exe -k HPZ12
    Start Mode: Auto

    PID: 888
    Service: PolicyAgent
    Displayed: IPSEC Services
    Image: C:\WINDOWS\system32\lsass.exe
    Start Mode: Auto

    PID: 888
    Service: ProtectedStorage
    Displayed: Protected Storage
    Image: C:\WINDOWS\system32\lsass.exe
    Start Mode: Auto

    PID: 1192
    Service: RasAuto
    Displayed: Remote Access Auto Connection Manager
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Manual

    PID: 1192
    Service: RasMan
    Displayed: Remote Access Connection Manager
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Manual

    PID: 1136
    Service: RpcSs
    Displayed: Remote Procedure Call (RPC)
    Image: C:\WINDOWS\system32\svchost -k rpcss
    Start Mode: Auto

    PID: 888
    Service: SamSs
    Displayed: Security Accounts Manager
    Image: C:\WINDOWS\system32\lsass.exe
    Start Mode: Auto

    PID: 1192
    Service: Schedule
    Displayed: Task Scheduler
    Image: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1192
    Service: seclogon
    Displayed: Secondary Logon
    Image: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1192
    Service: SENS
    Displayed: System Event Notification
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1192
    Service: SharedAccess
    Displayed: Windows Firewall/Internet Connection Sharing (ICS)
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1192
    Service: ShellHWDetection
    Displayed: Shell Hardware Detection
    Image: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1392
    Service: Spooler
    Displayed: Print Spooler
    Image: C:\WINDOWS\system32\spoolsv.exe
    Start Mode: Auto

    PID: 1192
    Service: srservice
    Displayed: System Restore Service
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1380
    Service: SSDPSRV
    Displayed: SSDP Discovery Service
    Image: C:\WINDOWS\system32\svchost.exe -k LocalService
    Start Mode: Manual

    PID: 2084
    Service: stisvc
    Displayed: Windows Image Acquisition (WIA)
    Image: C:\WINDOWS\system32\svchost.exe -k imgsvc
    Start Mode: Auto

    PID: 1192
    Service: TapiSrv
    Displayed: Telephony
    Image: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Start Mode: Manual

    PID: 1052
    Service: TermService
    Displayed: Terminal Services
    Image: C:\WINDOWS\System32\svchost -k DComLaunch
    Start Mode: Manual

    PID: 1192
    Service: Themes
    Displayed: Themes
    Image: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 2116
    Service: UMWdf
    Displayed: Windows User Mode Driver Framework
    Image: C:\WINDOWS\system32\wdfmgr.exe
    Start Mode: Auto

    PID: 1380
    Service: upnphost
    Displayed: Universal Plug and Play Device Host
    Image: C:\WINDOWS\system32\svchost.exe -k LocalService
    Start Mode: Manual

    PID: 1192
    Service: w32time
    Displayed: Windows Time
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1380
    Service: WebClient
    Displayed: WebClient
    Image: C:\WINDOWS\system32\svchost.exe -k LocalService
    Start Mode: Auto

    PID: 1192
    Service: winmgmt
    Displayed: Windows Management Instrumentation
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1508
    Service: wltrysvc
    Displayed: Dell Wireless WLAN Tray Service
    Image: C:\WINDOWS\System32\WLTRYSVC.EXE C:\WINDOWS\System32\bcmwltry.exe
    Start Mode: Auto

    PID: 1192
    Service: wscsvc
    Displayed: Security Center
    Image: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Start Mode: Auto

    PID: 1192
    Service: wuauserv
    Displayed: Automatic Updates
    Image: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Start Mode: Auto


    ~~~ svchost Export ~~~

    HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost
    HTTPFilter REG_MULTI_SZ
    HTTPFilter
    LocalService REG_MULTI_SZ
    Alerter
    WebClient
    LmHosts
    RemoteRegistry
    upnphost
    SSDPSRV
    NetworkService REG_MULTI_SZ
    DnsCache
    netsvcs REG_MULTI_SZ
    6to4
    AppMgmt
    AudioSrv
    Browser
    CryptSvc
    DMServer
    DHCP
    ERSvc
    EventSystem
    FastUserSwitchingCompatibility
    HidServ
    Ias
    Iprip
    Irmon
    LanmanServer
    LanmanWorkstation
    Messenger
    Netman
    Nla
    Ntmssvc
    NWCWorkstation
    Nwsapagent
    Rasauto
    Rasman
    Remoteaccess
    Schedule
    Seclogon
    SENS
    Sharedaccess
    SRService
    Tapisrv
    Themes
    TrkWks
    W32Time
    WZCSVC
    Wmi
    WmdmPmSp
    winmgmt
    wscsvc
    xmlprov
    BITS
    wuauserv
    ShellHWDetection
    helpsvc
    WmdmPmSN
    napagent
    hkmsvc
    DcomLaunch REG_MULTI_SZ
    DcomLaunch
    TermService
    rpcss REG_MULTI_SZ
    RpcSs
    imgsvc REG_MULTI_SZ
    StiSvc
    termsvcs REG_MULTI_SZ
    TermService
    eapsvcs REG_MULTI_SZ
    eaphost
    dot3svc REG_MULTI_SZ
    dot3svc
    HPZ12 REG_MULTI_SZ
    Pml Driver HPZ12
    Net Driver HPZ12
    hpdevmgmt REG_MULTI_SZ
    hpqcxs08
    hpqddsvc
    HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\DComLaunch
    CoInitializeSecurityParam REG_DWORD 0x1
    DefaultRpcStackSize REG_DWORD 0x8
    HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\dot3svc
    AuthenticationCapabilities REG_DWORD 0x3020
    CoInitializeSecurityParam REG_DWORD 0x1
    HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\eapsvcs
    AuthenticationCapabilities REG_DWORD 0x3020
    CoInitializeSecurityParam REG_DWORD 0x1
    HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\HTTPFilter
    CoInitializeSecurityParam REG_DWORD 0x1
    HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\LocalService
    CoInitializeSecurityParam REG_DWORD 0x1
    AuthenticationCapabilities REG_DWORD 0x2000
    HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\netsvcs
    CoInitializeSecurityParam REG_DWORD 0x1
    AuthenticationCapabilities REG_DWORD 0x3020
    HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\PCHealth
    CoInitializeSecurityParam REG_DWORD 0x2
    AuthenticationCapabilities REG_DWORD 0x40
    HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\termsvcs
    CoInitializeSecurityParam REG_DWORD 0x1
    DefaultRpcStackSize REG_DWORD 0x8


    ~~~ ServiceGroupOrder ~~~

    System Reserved
    Boot Bus Extender
    System Bus Extender
    SCSI miniport
    Port
    Primary Disk
    SCSI Class
    SCSI CDROM Class
    FSFilter Infrastructure
    FSFilter System
    FSFilter Bottom
    FSFilter Copy Protection
    FSFilter Security Enhancer
    FSFilter Open File
    FSFilter Physical Quota Management
    FSFilter Encryption
    FSFilter Compression
    FSFilter HSM
    FSFilter Cluster File System
    FSFilter System Recovery
    FSFilter Quota Management
    FSFilter Content Screener
    FSFilter Continuous Backup
    FSFilter Replication
    FSFilter Anti-Virus
    FSFilter Undelete
    FSFilter Activity Monitor
    FSFilter Top
    Filter
    Boot File System
    Base
    Pointer Port
    Keyboard Port
    Pointer Class
    Keyboard Class
    Video Init
    Video
    Video Save
    File System
    Event Log
    Streams Drivers
    NDIS Wrapper
    COM Infrastructure
    UIGroup
    LocalValidation
    PlugPlay
    PNP_TDI
    NDIS
    TDI
    wltrysvc
    NetBIOSGroup
    ShellSvcGroup
    SchedulerGroup
    SpoolerGroup
    AudioGroup
    SmartCardGroup
    NetworkProvider
    RemoteValidation
    NetDDEGroup
    Parallel arbitrator
    Extended Base
    PCI Configuration
    MS Transactions
    PnP Filter
    ASCTRM
    Network

    ~~~ LoadOrderGroup Members ~~~

    Service: aswUpdSv
    LoadOrderGroup: ShellSvcGroup

    Service: AudioSrv
    LoadOrderGroup: AudioGroup

    Service: avast! Antivirus
    LoadOrderGroup: ShellSvcGroup

    Service: avast! Mail Scanner
    LoadOrderGroup: ShellSvcGroup

    Service: avast! Web Scanner
    LoadOrderGroup: ShellSvcGroup

    Service: DcomLaunch
    LoadOrderGroup: Event Log

    Service: Dhcp
    LoadOrderGroup: TDI

    Service: Dnscache
    LoadOrderGroup: TDI

    Service: Dot3svc
    LoadOrderGroup: TDI

    Service: Eventlog
    LoadOrderGroup: Event log

    Service: EventSystem
    LoadOrderGroup: Network

    Service: lanmanworkstation
    LoadOrderGroup: NetworkProvider

    Service: LmHosts
    LoadOrderGroup: TDI

    Service: MSDTC
    LoadOrderGroup: MS Transactions

    Service: NetDDE
    LoadOrderGroup: NetDDEGroup

    Service: Netlogon
    LoadOrderGroup: RemoteValidation

    Service: PlugPlay
    LoadOrderGroup: PlugPlay

    Service: RpcSs
    LoadOrderGroup: COM Infrastructure

    Service: SamSs
    LoadOrderGroup: LocalValidation

    Service: SCardSvr
    LoadOrderGroup: SmartCardGroup

    Service: Schedule
    LoadOrderGroup: SchedulerGroup

    Service: SENS
    LoadOrderGroup: Network

    Service: ShellHWDetection
    LoadOrderGroup: ShellSvcGroup

    Service: Spooler
    LoadOrderGroup: SpoolerGroup

    Service: Themes
    LoadOrderGroup: UIGroup

    Service: WebClient
    LoadOrderGroup: NetworkProvider

    Service: wltrysvc
    LoadOrderGroup: wltrysvc

    Service: WZCSVC
    LoadOrderGroup: TDI


    ~~~End of Report~~~
     
  18. 2009/02/03
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    Click Start>Run and type services.msc then hit Enter.
    Right click and select Properties on Shell Hardware Detection service.
    Change the Startup type to disabled.
    Click OK and restart the computer.
    Let me know if the startup delay changes.
     
  19. 2009/02/04
    Buck

    Buck Inactive Thread Starter

    Joined:
    2008/10/07
    Messages:
    41
    Likes Received:
    0
    Unfortunately, no noticable change. Any other ideas? Buck
     
  20. 2009/02/04
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    Hi Buck. Please set the Shell Hardware Detection service back to it's original startup configuration.

    So that you know why I chose that service to disable, a bit of an explanation.
    We know that there is a conflict with Avast, and we know that Avast has services that load. The log shows us that the Avast services load in the ShellSvcGroup group, as does the Shell Hardware Detection (SHD) service. By disabling the SHD service and seeing no improvement, we have discounted that as a cause.

    Now, what I propose to do next is actually prevent the ShellSvcGroup group from loading entirely, to verify the delay is being caused by one of the Avast services. If that proves successful, we can attempt to eliminate the Avast services one by one to find the culprit. Toward this effort I have created a small tool for you to use which will create a backup of the registry key I wish to alter, then import an altered set of values. The tool will also enable you to restore the key to it's original state when done.

    Please download SlowBootTest.exe and save it to your desktop.
    Double click the file and it will extract a folder named SlowBootTest on the desktop.
    Open the folder and double click the BuckShellSvcGroup.bat icon to start the tool.
    Type a 1 then hit Enter at the menu screen to Backup and Import.
    A log will be created and open to confirm success.

    Restart the computer now to see if the delay persists.
    You can then run the tool again and type 2 then hit Enter to Restore the original values from the backup.
    Again, a log will open to confirm the operation.

    Let me know the results of the test.
     
  21. 2009/02/06
    Buck

    Buck Inactive Thread Starter

    Joined:
    2008/10/07
    Messages:
    41
    Likes Received:
    0
    Hey again Noahdfear....I did what you wanted. The boot time seemed to speed up to about four minutes but the computer ran very very slow so it was tough to tell when the boot was actually over since the computer was so slow. I restored everything like you said as well and the slow boot test log said
    SGO.reg restore successful
    SGO.red deleted

    Is that correct? What now? Thanks.
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.