Forum Home
Press F1
 
Thread ID: 119436 2011-07-23 02:50:00 program fails to start. starman (15517) Press F1
Post ID Timestamp Content User
1218542 2011-07-23 02:50:00 An occasional problem keeps showing up.
You'd expect it to boot up the Same every time.... but...
When I start up the Pc, and once up and running, I attempt to start a program, any program, Nothing happens! it just fails to start.

If I check Task Manager, I'll see the program exe there, but doing nothing.
It's there and very much in the lower end of any memory use. double digits only.

The only resolution is to Reboot, which also takes 'some time' to begin.
If I attempt to terminate anything, or initiate a restart via task manager, it locks up.
I tried to take a screen snapshot of taskmanager to compare content with a 'succesful start'
I did manage to initiate Paintnet, pasted image, but as soon as I attempted to save the image - it LocksUp!!
As does any other program I attempt tp start, or rather it simply failes to start up.

When it does eventually reboot - it's often perfectly ok, might take a couple of reboots to get there though.
What could be causing this ? I'm unsure where to begin looking. and how can one boot up differ from another!?
I'm of course assuming it's a boot up problem... but maybe it's some program that gets itself locked up even after a boot up, and prevents me starting any other program .. I don't know.
starman (15517)
1218543 2011-07-23 03:16:00 What version of windows is it?? If its XP is it up to date?? And if the programs youre trying to run use net framework, are whatever versions installed?

I would check event viewer. And see what error messages appear
Speedy Gonzales (78)
1218544 2011-07-23 08:10:00 XP and not fully up to date - I need to get the lastest batch of updates for the past month - might just do that tonight (23rd)
as for Event Viewer = wencrservice - is a regular !
( things have been good today - well.. after my 3 reboots this morning! )

The description for Event ID ( 0 ) in Source ( wencrservice ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: wencrservice error: 2, The system cannot find the file specified. (0x2).
starman (15517)
1218545 2011-07-23 08:30:00 wencrservice belongs to winencrypt. Is this still installed?? This may also be some kind of malware

I would get hijackthis, see if it installs. If it does, run it then click on scan the system and save a log. Copy and paste the log in here

free.antivirus.com

Download 2.04
Speedy Gonzales (78)
1218546 2011-07-23 12:20:00 Here's the Scanlog from Hijackthis
that "wencrservice" shows up at the end.

Of course this log is from the system running ok.(apparently)
Is it possible to have a "bug" or Fault that comes and goes?
Active on one Boot-up, and causing prog's to not start,
and all running ok after a reboot?
Plus at times it Does boot up ok and all going fine,
just every now n then -too frequently- I do have to reboot
to be able to start other programs.

__________________________________________
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:33:25, on 7/23/2011

Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
E:\Comodo\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
E:\Comodo\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Alwil Software\Avast5\avastUI.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
E:\Ashampoo\Ashampoo HDD Control\Dfsdks.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
E:\OO Software\Defrag\oodag.exe
C:\WINDOWS\system32\PrintCtrl.exe
E:\Photodex\ScsiAccess.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
E:\DreamMail\DreamMail4\DM2005.exe
C:\Program Files\Internet Explorer\iexplore.exe
E:\Download Manager\fdm.exe
F:\Applications\AntiVirus\HiJackThis\HijackThis.ex e

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = go.microsoft.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = go.microsoft.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\s wg.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - E:\Download Manager\iefdm2.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [COMODO Internet Security] "E:\Comodo\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [avast] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\S-S\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: Download all with Free Download Manager - file://E:\Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://E:\Download Manager\dlselected.htm
O8 - Extra context menu item: Download video with Free Download Manager - file://E:\Download Manager\dlfvideo.htm
O8 - Extra context menu item: Download with Free Download Manager - file://E:\Download Manager\dllink.htm
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C3 48BC2E93EB2B.dll/cmsidewiki.html
O9 - Extra button: (no name) - AutorunsDisabled - (no file)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - platformdl.adobe.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{99839FA4-C6E0-49BF-B5F3-EFAB6401DE9A}: NameServer = 202.180.64.10 202.180.64.11
O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Emsisoft Anti-Malware 5.0 - Service (a2AntiMalware) - Emsi Software GmbH - E:\a-squared Free\Emsisoft Anti-Malware\a2service.exe
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Acronis Nonstop Backup service (afcdpsrv) - Acronis - C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Capture Device Service - Unknown owner - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe (file missing)
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - E:\Comodo\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Defragmentation-Service (DfSdkS) - mst software GmbH, Germany - E:\Ashampoo\Ashampoo HDD Control\Dfsdks.exe
O23 - Service: DU Meter Service (DUMeterSvc) - Hagel Technologies Ltd. - E:\DU Meter\DUMeterSvc.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NMSAccessU - Unknown owner - E:\Super_DVD_Creator_9.8\NMSAccessU.exe
O23 - Service: O&O Defrag - O&O Software GmbH - E:\OO Software\Defrag\oodag.exe
O23 - Service: Printer Control - ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM - C:\WINDOWS\system32\PrintCtrl.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: ScsiAccess - Unknown owner - E:\Photodex\ScsiAccess.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: SureThing Labelflash service - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: Viewpoint Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: WinEncrypt service (wencrservice) - WinEncrypt - C:\WINDOWS\SYSTEM32\wentxp.exe

--
End of file - 8816 bytes
____________________________________
starman (15517)
1218547 2011-07-23 13:31:00 Doesnt look too bad. You can run hijackthis again tick these entries then tick fix checked

Close browser/s first

If you didnt do this, tick these entries

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O9 - Extra button: (no name) - AutorunsDisabled - (no file)

If WinEncrypt isnt installed tick this

O23 - Service: WinEncrypt service (wencrservice) - WinEncrypt - C:\WINDOWS\SYSTEM32\wentxp.exe

Uninstall viewpoint

Avast doesnt inc the firewall does it? You should only have 1 firewall running
Speedy Gonzales (78)
1218548 2011-07-23 21:15:00 Bet it's Comodo. pctek (84)
1218549 2011-07-23 23:12:00 Open msconfig - start, run, type in msconfig, go to the startup tab, locate WinEncrypt and untick it, that should stop it from running, may solve the errors.

You can also do it through Ccleaner if you have that installed.
wainuitech (129)
1218550 2011-07-24 00:58:00 ok done that, all ok so far. It actually did start up 1st time ok this morning.
Yes Avast antivirus only(not the firewall)
I did suspect Comodo -only because at one time, after trying to start up a program and getting nothing, and trying another and another -I sat back and waited before hitting the restart button, then quite sudenly Comodo fired up several alerts - I forget the exact words,, but something like - "this program has been partially restricted/sandboxed" I got several of these and clicked ok to them all and the programs then started up ok, it was as though Comodo had "just woken up" !, but that was just the once. Apart from that one incident I'v never had any problems with Comodo.
I'll see how this all goes over the next few days, and report if there are any more lock-ups after system start up. Appreciate your advice and help... Many thanks.
starman (15517)
1