| Forum Home | ||||
| Press F1 | ||||
| Thread ID: 119436 | 2011-07-23 02:50:00 | program fails to start. | starman (15517) | Press F1 |
| Post ID | Timestamp | Content | User | ||
| 1218542 | 2011-07-23 02:50:00 | An occasional problem keeps showing up. You'd expect it to boot up the Same every time.... but... When I start up the Pc, and once up and running, I attempt to start a program, any program, Nothing happens! it just fails to start. If I check Task Manager, I'll see the program exe there, but doing nothing. It's there and very much in the lower end of any memory use. double digits only. The only resolution is to Reboot, which also takes 'some time' to begin. If I attempt to terminate anything, or initiate a restart via task manager, it locks up. I tried to take a screen snapshot of taskmanager to compare content with a 'succesful start' I did manage to initiate Paintnet, pasted image, but as soon as I attempted to save the image - it LocksUp!! As does any other program I attempt tp start, or rather it simply failes to start up. When it does eventually reboot - it's often perfectly ok, might take a couple of reboots to get there though. What could be causing this ? I'm unsure where to begin looking. and how can one boot up differ from another!? I'm of course assuming it's a boot up problem... but maybe it's some program that gets itself locked up even after a boot up, and prevents me starting any other program .. I don't know. |
starman (15517) | ||
| 1218543 | 2011-07-23 03:16:00 | What version of windows is it?? If its XP is it up to date?? And if the programs youre trying to run use net framework, are whatever versions installed? I would check event viewer. And see what error messages appear |
Speedy Gonzales (78) | ||
| 1218544 | 2011-07-23 08:10:00 | XP and not fully up to date - I need to get the lastest batch of updates for the past month - might just do that tonight (23rd) as for Event Viewer = wencrservice - is a regular ! ( things have been good today - well.. after my 3 reboots this morning! ) The description for Event ID ( 0 ) in Source ( wencrservice ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: wencrservice error: 2, The system cannot find the file specified. (0x2). |
starman (15517) | ||
| 1218545 | 2011-07-23 08:30:00 | wencrservice belongs to winencrypt. Is this still installed?? This may also be some kind of malware I would get hijackthis, see if it installs. If it does, run it then click on scan the system and save a log. Copy and paste the log in here free.antivirus.com Download 2.04 |
Speedy Gonzales (78) | ||
| 1218546 | 2011-07-23 12:20:00 | Here's the Scanlog from Hijackthis that "wencrservice" shows up at the end. Of course this log is from the system running ok.(apparently) Is it possible to have a "bug" or Fault that comes and goes? Active on one Boot-up, and causing prog's to not start, and all running ok after a reboot? Plus at times it Does boot up ok and all going fine, just every now n then -too frequently- I do have to reboot to be able to start other programs. __________________________________________ Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 22:33:25, on 7/23/2011 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe E:\Comodo\COMODO\COMODO Internet Security\cmdagent.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Alwil Software\Avast5\AvastSvc.exe C:\WINDOWS\Explorer.EXE E:\Comodo\COMODO\COMODO Internet Security\cfp.exe C:\Program Files\Alwil Software\Avast5\avastUI.exe C:\Program Files\RocketDock\RocketDock.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe E:\Ashampoo\Ashampoo HDD Control\Dfsdks.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe E:\OO Software\Defrag\oodag.exe C:\WINDOWS\system32\PrintCtrl.exe E:\Photodex\ScsiAccess.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Internet Explorer\iexplore.exe E:\DreamMail\DreamMail4\DM2005.exe C:\Program Files\Internet Explorer\iexplore.exe E:\Download Manager\fdm.exe F:\Applications\AntiVirus\HiJackThis\HijackThis.ex e R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = go.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = go.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = go.microsoft.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = go.microsoft.com R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\s wg.dll O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - E:\Download Manager\iefdm2.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [COMODO Internet Security] "E:\Comodo\COMODO\COMODO Internet Security\cfp.exe" -h O4 - HKLM\..\Run: [avast] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe" O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\S-S\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O8 - Extra context menu item: Download all with Free Download Manager - file://E:\Download Manager\dlall.htm O8 - Extra context menu item: Download selected with Free Download Manager - file://E:\Download Manager\dlselected.htm O8 - Extra context menu item: Download video with Free Download Manager - file://E:\Download Manager\dlfvideo.htm O8 - Extra context menu item: Download with Free Download Manager - file://E:\Download Manager\dllink.htm O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C3 48BC2E93EB2B.dll/cmsidewiki.html O9 - Extra button: (no name) - AutorunsDisabled - (no file) O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - platformdl.adobe.com O17 - HKLM\System\CCS\Services\Tcpip\..\{99839FA4-C6E0-49BF-B5F3-EFAB6401DE9A}: NameServer = 202.180.64.10 202.180.64.11 O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll O23 - Service: Emsisoft Anti-Malware 5.0 - Service (a2AntiMalware) - Emsi Software GmbH - E:\a-squared Free\Emsisoft Anti-Malware\a2service.exe O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Acronis Nonstop Backup service (afcdpsrv) - Acronis - C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Capture Device Service - Unknown owner - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe (file missing) O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - E:\Comodo\COMODO\COMODO Internet Security\cmdagent.exe O23 - Service: Defragmentation-Service (DfSdkS) - mst software GmbH, Germany - E:\Ashampoo\Ashampoo HDD Control\Dfsdks.exe O23 - Service: DU Meter Service (DUMeterSvc) - Hagel Technologies Ltd. - E:\DU Meter\DUMeterSvc.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: NMSAccessU - Unknown owner - E:\Super_DVD_Creator_9.8\NMSAccessU.exe O23 - Service: O&O Defrag - O&O Software GmbH - E:\OO Software\Defrag\oodag.exe O23 - Service: Printer Control - ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM - C:\WINDOWS\system32\PrintCtrl.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - C:\Program Files\WinPcap\rpcapd.exe O23 - Service: ScsiAccess - Unknown owner - E:\Photodex\ScsiAccess.exe O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: SureThing Labelflash service - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe O23 - Service: Viewpoint Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe O23 - Service: WinEncrypt service (wencrservice) - WinEncrypt - C:\WINDOWS\SYSTEM32\wentxp.exe -- End of file - 8816 bytes ____________________________________ |
starman (15517) | ||
| 1218547 | 2011-07-23 13:31:00 | Doesnt look too bad. You can run hijackthis again tick these entries then tick fix checked Close browser/s first If you didnt do this, tick these entries O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O9 - Extra button: (no name) - AutorunsDisabled - (no file) If WinEncrypt isnt installed tick this O23 - Service: WinEncrypt service (wencrservice) - WinEncrypt - C:\WINDOWS\SYSTEM32\wentxp.exe Uninstall viewpoint Avast doesnt inc the firewall does it? You should only have 1 firewall running |
Speedy Gonzales (78) | ||
| 1218548 | 2011-07-23 21:15:00 | Bet it's Comodo. | pctek (84) | ||
| 1218549 | 2011-07-23 23:12:00 | Open msconfig - start, run, type in msconfig, go to the startup tab, locate WinEncrypt and untick it, that should stop it from running, may solve the errors. You can also do it through Ccleaner if you have that installed. |
wainuitech (129) | ||
| 1218550 | 2011-07-24 00:58:00 | ok done that, all ok so far. It actually did start up 1st time ok this morning. Yes Avast antivirus only(not the firewall) I did suspect Comodo -only because at one time, after trying to start up a program and getting nothing, and trying another and another -I sat back and waited before hitting the restart button, then quite sudenly Comodo fired up several alerts - I forget the exact words,, but something like - "this program has been partially restricted/sandboxed" I got several of these and clicked ok to them all and the programs then started up ok, it was as though Comodo had "just woken up" !, but that was just the once. Apart from that one incident I'v never had any problems with Comodo. I'll see how this all goes over the next few days, and report if there are any more lock-ups after system start up. Appreciate your advice and help... Many thanks. |
starman (15517) | ||
| 1 | |||||