1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

The system has recovered from a serious error

Discussion in 'Windows XP' started by Sillsy, 2008/08/07.

  1. 2008/08/25
    Sillsy

    Sillsy Inactive Thread Starter

    Joined:
    2008/08/07
    Messages:
    56
    Likes Received:
    0
    Second log is:

    24 Games for Windows 95
    ABBYY FineReader 6.0 Sprint
    Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)
    Adobe Bridge 1.0
    Adobe Color Common Settings
    Adobe Color Common Settings
    Adobe Common File Installer
    Adobe ExtendScript Toolkit 2
    Adobe ExtendScript Toolkit 2
    Adobe Flash Player ActiveX
    Adobe Help Center 1.0
    Adobe InDesign CS
    Adobe Photoshop Album 2.0 Starter Edition
    Adobe Photoshop CS
    Adobe Photoshop CS2
    Adobe Reader 8.1.2
    Adobe Setup
    Adobe Setup
    Adobe Shockwave Player
    Adobe Stock Photos 1.0
    Adobe SVG Viewer 3.0
    Agere Systems PCI Soft Modem
    AppCore
    ArchiCAD 10 R1 AUS
    AV
    BigPond Broadband ADSL FAQ
    Camera RAW Plug-In for EPSON Creativity Suite
    ccCommon
    CCleaner (remove only)
    Compatibility Pack for the 2007 Office system
    Debugging Tools for Windows (x86)
    Enable S3 for USB Device
    EndNote X.0.2 Volume License Edition
    EPSON Attach To Email
    EPSON Copy Utility 3
    EPSON Easy Photo Print
    EPSON File Manager
    EPSON Printer Software
    EPSON Scan
    EPSON Scan Assistant
    EPSON Stylus CX9300F_DX9400F Manual
    EPSON Web-To-Page
    e-Record 6
    ERUNT 1.1j
    e-tax 2008
    FileNet Desktop eForms
    FinePixViewer Ver.4.2
    FUJIFILM USB Driver
    Google Desktop
    Google Earth
    Google Toolbar for Internet Explorer
    Google Updater
    HijackThis 2.0.2
    Hotfix for Windows Internet Explorer 7 (KB947864)
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 11 (KB939683)
    Hotfix for Windows XP (KB914440)
    Hotfix for Windows XP (KB915865)
    Hotfix for Windows XP (KB926239)
    Hotfix for Windows XP (KB929120)
    Hotfix for Windows XP (KB952287)
    HyperStudio 4 Player
    iKeyWorks 6.16
    ImageMixer VCD2 for FinePix
    Internet Worm Protection
    ISI ResearchSoft - Export Helper
    iWheelWorks V7.42
    Java(TM) 6 Update 7
    LiveUpdate 3.2 (Symantec Corporation)
    LiveUpdate Notice (Symantec Corporation)
    Malwarebytes' Anti-Malware
    Microsoft Compression Client Pack 1.0 for Windows XP
    Microsoft Data Access Components KB870669
    Microsoft Internationalized Domain Names Mitigation APIs
    Microsoft National Language Support Downlevel APIs
    Microsoft Office 2000 Disc 2
    Microsoft Office 2000 Professional
    Microsoft Office Word Viewer 2003
    Microsoft User-Mode Driver Framework Feature Pack 1.0
    MicroStaff WINASPI
    MSXML 4.0 SP2 (KB927978)
    MSXML 4.0 SP2 (KB936181)
    Nero - Burning Rom
    NetComm 56K Inmodem (IN5920)
    Norton AntiVirus
    Norton AntiVirus (Symantec Corporation)
    Norton AntiVirus Help
    Norton AntiVirus Parent MSI
    Norton AntiVirus SYMLT MSI
    Norton PC Checkup
    Norton Protection Center
    Norton Security Scan
    OpenOffice.org 1.0.1
    PaperPort
    PowerDVD
    QuickTime
    RAW FILE CONVERTER LE
    Realtek AC'97 Audio
    Samsung Media Studio
    Scholastic's I SPY Junior
    Security Update for Windows Internet Explorer 7 (KB938127)
    Security Update for Windows Internet Explorer 7 (KB942615)
    Security Update for Windows Internet Explorer 7 (KB944533)
    Security Update for Windows Internet Explorer 7 (KB950759)
    Security Update for Windows Internet Explorer 7 (KB953838)
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player 11 (KB936782)
    Security Update for Windows Media Player 6.4 (KB925398)
    Security Update for Windows Media Player 9 (KB911565)
    Security Update for Windows Media Player 9 (KB917734)
    Security Update for Windows Media Player 9 (KB936782)
    Security Update for Windows XP (KB883939)
    Security Update for Windows XP (KB890046)
    Security Update for Windows XP (KB893756)
    Security Update for Windows XP (KB896358)
    Security Update for Windows XP (KB896422)
    Security Update for Windows XP (KB896423)
    Security Update for Windows XP (KB896424)
    Security Update for Windows XP (KB896428)
    Security Update for Windows XP (KB896688)
    Security Update for Windows XP (KB899587)
    Security Update for Windows XP (KB899588)
    Security Update for Windows XP (KB899591)
    Security Update for Windows XP (KB900725)
    Security Update for Windows XP (KB901017)
    Security Update for Windows XP (KB901190)
    Security Update for Windows XP (KB901214)
    Security Update for Windows XP (KB902400)
    Security Update for Windows XP (KB903235)
    Security Update for Windows XP (KB904706)
    Security Update for Windows XP (KB905414)
    Security Update for Windows XP (KB905749)
    Security Update for Windows XP (KB905915)
    Security Update for Windows XP (KB908519)
    Security Update for Windows XP (KB908531)
    Security Update for Windows XP (KB911562)
    Security Update for Windows XP (KB911567)
    Security Update for Windows XP (KB911927)
    Security Update for Windows XP (KB912812)
    Security Update for Windows XP (KB912919)
    Security Update for Windows XP (KB913446)
    Security Update for Windows XP (KB913580)
    Security Update for Windows XP (KB914388)
    Security Update for Windows XP (KB914389)
    Security Update for Windows XP (KB916281)
    Security Update for Windows XP (KB917159)
    Security Update for Windows XP (KB917344)
    Security Update for Windows XP (KB917422)
    Security Update for Windows XP (KB917953)
    Security Update for Windows XP (KB918118)
    Security Update for Windows XP (KB918439)
    Security Update for Windows XP (KB918899)
    Security Update for Windows XP (KB919007)
    Security Update for Windows XP (KB920213)
    Security Update for Windows XP (KB920214)
    Security Update for Windows XP (KB920670)
    Security Update for Windows XP (KB920683)
    Security Update for Windows XP (KB920685)
    Security Update for Windows XP (KB921398)
    Security Update for Windows XP (KB921503)
    Security Update for Windows XP (KB921883)
    Security Update for Windows XP (KB922616)
    Security Update for Windows XP (KB922760)
    Security Update for Windows XP (KB922819)
    Security Update for Windows XP (KB923191)
    Security Update for Windows XP (KB923414)
    Security Update for Windows XP (KB923689)
    Security Update for Windows XP (KB923694)
    Security Update for Windows XP (KB923980)
    Security Update for Windows XP (KB924191)
    Security Update for Windows XP (KB924270)
    Security Update for Windows XP (KB924496)
    Security Update for Windows XP (KB924667)
    Security Update for Windows XP (KB925454)
    Security Update for Windows XP (KB925486)
    Security Update for Windows XP (KB925902)
    Security Update for Windows XP (KB926255)
    Security Update for Windows XP (KB926436)
    Security Update for Windows XP (KB927779)
    Security Update for Windows XP (KB927802)
    Security Update for Windows XP (KB928090)
    Security Update for Windows XP (KB928255)
    Security Update for Windows XP (KB928843)
    Security Update for Windows XP (KB929123)
    Security Update for Windows XP (KB929969)
    Security Update for Windows XP (KB930178)
    Security Update for Windows XP (KB931261)
    Security Update for Windows XP (KB931768)
    Security Update for Windows XP (KB931784)
    Security Update for Windows XP (KB932168)
    Security Update for Windows XP (KB933566)
    Security Update for Windows XP (KB933729)
    Security Update for Windows XP (KB935839)
    Security Update for Windows XP (KB935840)
    Security Update for Windows XP (KB936021)
    Security Update for Windows XP (KB937143)
    Security Update for Windows XP (KB938127)
    Security Update for Windows XP (KB938829)
    Security Update for Windows XP (KB939653)
    Security Update for Windows XP (KB941202)
    Security Update for Windows XP (KB941568)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB941644)
    Security Update for Windows XP (KB941693)
    Security Update for Windows XP (KB942615)
    Security Update for Windows XP (KB943055)
    Security Update for Windows XP (KB943460)
    Security Update for Windows XP (KB943485)
    Security Update for Windows XP (KB944653)
    Security Update for Windows XP (KB945553)
    Security Update for Windows XP (KB946026)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB948590)
    Security Update for Windows XP (KB948881)
    Security Update for Windows XP (KB950749)
    Security Update for Windows XP (KB950760)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953839)
    Sesame Street Baby and Me
    SPBBC 32bit
    Spelling Dictionaries Support For Adobe Reader 8
    Symantec
    SymNet
    Telstra BigPond
    Update for Windows XP (KB894391)
    Update for Windows XP (KB896727)
    Update for Windows XP (KB898461)
    Update for Windows XP (KB900485)
    Update for Windows XP (KB904942)
    Update for Windows XP (KB910437)
    Update for Windows XP (KB911280)
    Update for Windows XP (KB916595)
    Update for Windows XP (KB920872)
    Update for Windows XP (KB922582)
    Update for Windows XP (KB927891)
    Update for Windows XP (KB929338)
    Update for Windows XP (KB930916)
    Update for Windows XP (KB931836)
    Update for Windows XP (KB932823-v3)
    Update for Windows XP (KB933360)
    Update for Windows XP (KB936357)
    Update for Windows XP (KB938828)
    Update for Windows XP (KB942763)
    Update for Windows XP (KB942840)
    Update for Windows XP (KB951072-v2)
    Windows Installer 3.1 (KB893803)
    Windows Installer 3.1 (KB893803)
    Windows Internet Explorer 7
    Windows Media Format 11 runtime
    Windows Media Format 11 runtime
    Windows Media Player 11
    Windows Media Player 11
    Windows XP Hotfix - KB867282
    Windows XP Hotfix - KB873333
    Windows XP Hotfix - KB873339
    Windows XP Hotfix - KB885250
    Windows XP Hotfix - KB885835
    Windows XP Hotfix - KB885836
    Windows XP Hotfix - KB886185
    Windows XP Hotfix - KB887472
    Windows XP Hotfix - KB887742
    Windows XP Hotfix - KB888113
    Windows XP Hotfix - KB888302
    Windows XP Hotfix - KB890047
    Windows XP Hotfix - KB890175
    Windows XP Hotfix - KB890859
    Windows XP Hotfix - KB890923
    Windows XP Hotfix - KB891781
    Windows XP Hotfix - KB893066
    Windows XP Hotfix - KB893086
    Windows XP Service Pack 2
    Yahoo! Install Manager
    Yahoo! Toolbar


    When we started looking into the problem we changed the powerboard that we were using. My husband is an electrician and has checked the power supply from the powerboard and it is normal. He isn't sure about checking the internal power supply of the harddrive so I will have to get that checked instore.

    The computer shut down the day before last about twice in them morning but then not again all day. Similar thing yesterday. Strange that then it runs all day without a problem. Something else to note though, yesterday when it shut down I couldn't even turn it on. I turned it off at the powerboard, turned it back on and then I could turn the computer on again. My husband has also had this happen.

    Maybe it is just dying a slow death? I really hope not.

    Thanks
    Sue
     
  2. 2008/08/25
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Oops oops oops!

    Just saw something!

    But first forget the issue of having to unplug to get the computer back on as this can happen and does not indicate the computer is slowly dying.

    This is caused by the motherboard maintaining 3 volts even when it is off. This feature allows what is called WakeOn, Wakeon LAN will power up the computer if it is off if another computer on the LAN makes a network request to that computer.

    Or you could dial in to a computer that is off and it will power it up (Wake it up). None of these you use. But sometimes they just freeze and unpluging is all you can do. Do not worry about this it has nothing to do with your problem.

    Now for what I Oops'ed about! May not be the problem but it is the only error I see.

    If you remember in my first post (#9) I mentioned it may be your brother printer?

    Then in post (#21) Whiskyman gave the proceedure to uninstall it.

    I thought you did what he said but i just noticed that they were still there.

    So here is what to do.

    Do Whiskyman's post #21
    reboot
    Post a new HJT log.

    Mike
     

  3. to hide this advert.

  4. 2008/08/25
    Sillsy

    Sillsy Inactive Thread Starter

    Joined:
    2008/08/07
    Messages:
    56
    Likes Received:
    0
    Hi Mike,

    I had tried to do this but had a few problems. I've just typed in the sc delete BrSplService but again I got the message 'The specified service does not exist as an installed service'. I will now do the rest and let you know how I go, do you think I could be doing something wrong?

    Sue
     
  5. 2008/08/25
    Sillsy

    Sillsy Inactive Thread Starter

    Joined:
    2008/08/07
    Messages:
    56
    Likes Received:
    0
    It is still there, even though I clicked on O23 - etc and clicked Fix checked.

    Here is the new log:
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 11:26:23 AM, on 26/08/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16705)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
    C:\WINDOWS\System32\brsvc01a.exe
    C:\WINDOWS\System32\brss01a.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\htpatch.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\WINDOWS\AGRSMMSG.exe
    C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe
    C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe
    C:\program files\Telstra\Signup\tbpt.exe
    C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
    C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
    C:\Program Files\Microsoft IntelliType Pro\itype.exe
    C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
    C:\Program Files\Microsoft IntelliPoint\ipoint.exe
    C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\Google Updater\GoogleUpdater.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
    C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    C:\Program Files\Symantec\LiveUpdate\AUPDATE.EXE
    C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
    C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
    C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.impressionablekids.com.au/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = BigPond Dial-Up Residential Internet Explorer
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll
    O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
    O4 - HKLM\..\Run: [HTpatch] C:\WINDOWS\htpatch.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
    O4 - HKLM\..\Run: [iKeyWorks] C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe
    O4 - HKLM\..\Run: [WheelMouse] C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe
    O4 - HKLM\..\Run: [{F7D90BD2-14A9-11d3-AD9E-00AA0064EC94}] C:\program files\Telstra\Signup\tbpt.exe
    O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
    O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
    O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
    O4 - HKLM\..\Run: [IndexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe "
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe "
    O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton AntiVirus\osCheck.exe "
    O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll "
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe "
    O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe "
    O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe "
    O4 - HKLM\..\Run: [SMSTray] C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe
    O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [EPSON Stylus CX9300F Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICFP.EXE /FU "C:\DOCUME~1\Owner\LOCALS~1\Temp\E_S14.tmp" /EF "HKCU "
    O4 - HKUS\S-1-5-18\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe (User 'Default user')
    O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O14 - IERESET.INF: START_PAGE_URL=http://www.bigpond.com/
    O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
    O16 - DPF: {6A344D34-5231-452A-8A57-D064AC9B7862} (Symantec Download Manager) - https://webdl.symantec.com/activex/symdlmgr.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{36E68565-96FB-4DBE-AF27-3B5E107D75AD}: Domain = nsw.bigpond.net.au
    O17 - HKLM\System\CS1\Services\Tcpip\Parameters: SearchList = vic.bigpond.net.au
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: SearchList = vic.bigpond.net.au
    O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\System32\brsvc01a.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\isPwdSvc.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
    O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe

    --
    End of file - 10716 bytes

    Sue
     
  6. 2008/08/25
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Hi Sue

    Do the below

    With left mouse button down drag mouse to highlight all between the lines but not the lines.

    -------------------------------------------------------------------------
    cd\

    attrib brsvc01a.exe -h -s -r /s
    attrib brss01a.exe -h -s -r /s
    attrib brsvc01a.exe -h -s -r /s

    dir brsv*.* /s > "%USERPROFILE% "\Desktop\brss.txt
    dir brss*.* /s >> "%USERPROFILE% "\Desktop\brss.txt

    del brsvc01a.exe /s
    del brss01a.exe /s
    del brsvc01a.exe /s

    dir brsv*.* /s >> "%USERPROFILE% "\Desktop\brss.txt
    dir brss*.* /s >> "%USERPROFILE% "\Desktop\brss.txt

    exit
    -------------------------------------------------------------------------

    Then
    Start-Run
    type cmd

    Rt click and paste into the CMD prompt and then hit enter twice

    Look on desktop for a new Icon brss.txt copy and paste to the thread!

    Mike
     
  7. 2008/08/25
    Sillsy

    Sillsy Inactive Thread Starter

    Joined:
    2008/08/07
    Messages:
    56
    Likes Received:
    0
    Volume in drive C has no label.
    Volume Serial Number is DCC6-3099

    Directory of C:\WINDOWS\system32

    24/03/2005 12:59 PM 184 brsvc01a.bsi
    11/04/2002 11:00 PM 57,344 brsvc01a.exe
    2 File(s) 57,528 bytes

    Total Files Listed:
    2 File(s) 57,528 bytes
    0 Dir(s) 34,535,772,160 bytes free
    Volume in drive C has no label.
    Volume Serial Number is DCC6-3099

    Directory of C:\Documents and Settings\Owner\Desktop

    26/08/2008 12:31 PM 389 brss.txt
    1 File(s) 389 bytes

    Directory of C:\WINDOWS\system32

    12/12/2001 11:01 PM 45,056 brss01a.exe
    24/03/2005 12:59 PM 30 brss01a.ini
    2 File(s) 45,086 bytes

    Total Files Listed:
    3 File(s) 45,475 bytes
    0 Dir(s) 34,535,706,624 bytes free
    Volume in drive C has no label.
    Volume Serial Number is DCC6-3099

    Directory of C:\WINDOWS\system32

    24/03/2005 12:59 PM 184 brsvc01a.bsi
    11/04/2002 11:00 PM 57,344 brsvc01a.exe
    2 File(s) 57,528 bytes

    Total Files Listed:
    2 File(s) 57,528 bytes
    0 Dir(s) 34,535,768,064 bytes free
    Volume in drive C has no label.
    Volume Serial Number is DCC6-3099

    Directory of C:\Documents and Settings\Owner\Desktop

    26/08/2008 12:31 PM 1,390 brss.txt
    1 File(s) 1,390 bytes

    Directory of C:\WINDOWS\system32

    12/12/2001 11:01 PM 45,056 brss01a.exe
    24/03/2005 12:59 PM 30 brss01a.ini
    2 File(s) 45,086 bytes

    Total Files Listed:
    3 File(s) 46,476 bytes
    0 Dir(s) 34,535,768,064 bytes free

    Sue
     
  8. 2008/08/26
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Hi Sue

    Still there.

    Delete the brss.txt on desktop

    Then do the same as last post with below!

    -------------------------------------------------------------------------
    cd\

    attrib brsvc01a.exe /s > "%USERPROFILE% "\Desktop\brss.txt
    attrib brss01a.exe /s >> "%USERPROFILE% "\Desktop\brss.txt
    attrib brsvc01a.exe /s >> "%USERPROFILE% "\Desktop\brss.txt

    exit
    -------------------------------------------------------------------------
    After you post the brss.txt file above delete it from your desktop.

    After posting this back to me do the below.

    Download AutoRuns http://live.sysinternals.com/autoruns.exe

    Install and run it look under the "Everything TAB" for these 3 files and/or anything with Brother in name description or publisher. If you want you may look under the other TABS just to be sure.

    When found uncheck the box then Rt Click and Delete

    When complete reboot then do Post #45 again and post the brss.txt back to the thread.

    Mike
     
    Last edited: 2008/08/26
  9. 2008/08/26
    Sillsy

    Sillsy Inactive Thread Starter

    Joined:
    2008/08/07
    Messages:
    56
    Likes Received:
    0
    Brss.text below:

    A C:\WINDOWS\system32\brsvc01a.exe
    A C:\WINDOWS\system32\brss01a.exe
    A C:\WINDOWS\system32\brsvc01a.exe

    Will get back to you shortly.

    Sue
     
  10. 2008/08/26
    Sillsy

    Sillsy Inactive Thread Starter

    Joined:
    2008/08/07
    Messages:
    56
    Likes Received:
    0
    Hi Mike,

    Deleted four files with the Brother name. Each time it said 'Error changing item state: the system cannot find the file specified' but then deleted it anyway.

    This is the brss.txt this time around:

    Volume in drive C has no label.
    Volume Serial Number is DCC6-3099

    Directory of C:\WINDOWS\system32

    24/03/2005 12:59 PM 184 brsvc01a.bsi
    11/04/2002 11:00 PM 57,344 brsvc01a.exe
    2 File(s) 57,528 bytes

    Total Files Listed:
    2 File(s) 57,528 bytes
    0 Dir(s) 34,563,973,120 bytes free
    Volume in drive C has no label.
    Volume Serial Number is DCC6-3099

    Directory of C:\Documents and Settings\Owner\Desktop

    26/08/2008 11:03 PM 389 brss.txt
    1 File(s) 389 bytes

    Directory of C:\Documents and Settings\Owner\Recent

    26/08/2008 10:49 PM 459 brss.lnk
    26/08/2008 03:09 PM 631 brss01a.lnk
    2 File(s) 1,090 bytes

    Directory of C:\WINDOWS\system32

    12/12/2001 11:01 PM 45,056 brss01a.exe
    24/03/2005 12:59 PM 30 brss01a.ini
    2 File(s) 45,086 bytes

    Total Files Listed:
    5 File(s) 46,565 bytes
    0 Dir(s) 34,563,969,024 bytes free
    Volume in drive C has no label.
    Volume Serial Number is DCC6-3099

    Directory of C:\WINDOWS\system32

    24/03/2005 12:59 PM 184 brsvc01a.bsi
    11/04/2002 11:00 PM 57,344 brsvc01a.exe
    2 File(s) 57,528 bytes

    Total Files Listed:
    2 File(s) 57,528 bytes
    0 Dir(s) 34,563,969,024 bytes free
    Volume in drive C has no label.
    Volume Serial Number is DCC6-3099

    Directory of C:\Documents and Settings\Owner\Desktop

    26/08/2008 11:03 PM 1,596 brss.txt
    1 File(s) 1,596 bytes

    Directory of C:\Documents and Settings\Owner\Recent

    26/08/2008 10:49 PM 459 brss.lnk
    26/08/2008 03:09 PM 631 brss01a.lnk
    2 File(s) 1,090 bytes

    Directory of C:\WINDOWS\system32

    12/12/2001 11:01 PM 45,056 brss01a.exe
    24/03/2005 12:59 PM 30 brss01a.ini
    2 File(s) 45,086 bytes

    Total Files Listed:
    5 File(s) 47,772 bytes
    0 Dir(s) 34,563,969,024 bytes free

    Thanks again!

    Probably won't get back here for a quite a few hours now.

    Sue
     
  11. 2008/08/26
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    OK for when you do get back!

    These are being so stubborn they probably are you issues.

    OK since rebooting look in Autoruns again and see if they are actually gone from there.

    If they are gone from there they are not from the HD so we will nuke them another way.

    Download http://www.malwarebytes.org/fileassassin.php

    Install and run: Select FileAssassins method of file removal them check the 3 square boxes.

    Then copy each line below one at a time and paste to Fileassassin

    C:\WINDOWS\system32\brsvc01a.exe

    C:\WINDOWS\system32\brss01a.exe

    C:\WINDOWS\system32\brsvc01a.exe

    If you are not sure they are gone then repeat the process above and Fileassassin will confirm that it is or is not gone.

    If they do not delete with the above then use the Delete on boot option. Add all 3 files and reboot.

    Mike
     
  12. 2008/08/27
    Sillsy

    Sillsy Inactive Thread Starter

    Joined:
    2008/08/07
    Messages:
    56
    Likes Received:
    0
    Hi Mike,

    Finally back. FileAssassin got rid of the three files, but I have also found these on my system, they have the brother name attached to them:

    brsvc01a.bsi
    BrUSi04a.dll
    BrWia04a.dll
    bsplmf01
    bsplmf01.dll

    Should I try and get rid of these?

    Sue

    PS. The computer hasn't shut down in two days.
     
  13. 2008/08/27
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Good morning Sue 07:20 North Carolina USA Eastenrn time!:)

    Yes get rid of them! Reboot after removal!

    Fileassassin if needed.

    Has not shutdown in 2 days but how long has it been on during that time?

    Mike
     
  14. 2008/08/27
    Sillsy

    Sillsy Inactive Thread Starter

    Joined:
    2008/08/07
    Messages:
    56
    Likes Received:
    0
    Hi Mike,

    Goodmorning, but its 9.50pm here, so its really goodnight for me!

    I have deleted those files and it seems to be ok.

    Computer is on all day, from about 7.30 in the morning until usually about 10/11pm. So two days of running all day and no shut downs.

    But on another point, not sure if its related, but I have a recent email that I cannot open or delete. It just stays in my inbox as unread.

    Sue
     
  15. 2008/08/27
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Good evening

    OK do you use Outlook Express?

    And is the message from someone you know?

    Any thing unusual about the email.

    Have you closed the email app and tried to delete after rebooting?

    Mike
     
  16. 2008/08/27
    Sillsy

    Sillsy Inactive Thread Starter

    Joined:
    2008/08/07
    Messages:
    56
    Likes Received:
    0
    Yes I do use Outlook Express. It is just a survey email that I receive quite regularly. I can't open it but I can't see anything unusual. I've tried deleting it everyday but it just freezes up outlook express and then I have to end it because it is not responding.

    Sue
     
  17. 2008/08/27
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Try holding down the SHIFT key while clicking Delete.

    OR Highlight message hold down the SHIFT key and tap the DEL key on Keyboard.

    Mike
     
  18. 2008/08/27
    Sillsy

    Sillsy Inactive Thread Starter

    Joined:
    2008/08/07
    Messages:
    56
    Likes Received:
    0
    Thanks Mike, that worked. You are a genius as far as I'm concerned.

    Sue
     
  19. 2008/08/27
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Thanks Sue

    It has been nice working with you!

    Hopefully you can stay out of trouble for a while!:D:D

    Lets hope we have no more restarts, if not it was the Brother printer files not removed when you uninstalled the printer.

    You try to stay warm I will try to stay cool!:)

    Mike
     
  20. 2008/08/27
    Sillsy

    Sillsy Inactive Thread Starter

    Joined:
    2008/08/07
    Messages:
    56
    Likes Received:
    0
    Thanks for everything, I know you've spent a lot of your time helping me and I really appreciate it.

    Hopefully I can stay out of trouble, like you said. I'll let you know if I can't!

    Thanks again from the other side of the world.

    Sue
     
  21. 2008/08/29
    dkline

    dkline Inactive

    Joined:
    2002/01/10
    Messages:
    406
    Likes Received:
    0
    So I'm having this bout of writer's block, and looking for things to do, I dropped by Windows BBS here and just stumbled across this thread.

    Wow, it was like reading a (very dense) crime novel, and kind of Sherlock Holmesian in the way you two finally deduced the problem.

    Mike, you are the man! You reminded me of Columbo a bit.

    Sue, you were like the Dustin Hoffman character in "Marathon Man" -- totally rising to the occasion (and probably surprising yourself in the process).

    Okay, now I've run out of excuses for not working. So it's back to the grindstone, but thanks for a terrifc e-adventure.
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.