Forum Home
Press F1
 
Thread ID: 79116 2007-05-08 15:21:00 STOP: 0X0000007E (0XC0000047,0X8051D200,0XF7962954,0XF79629A4) SurferJoe46 (51) Press F1
Post ID Timestamp Content User
548397 2007-05-08 15:21:00 I am seeing this error message . . . a lot more often . . it started yesterday the first time and a re-boot fixed it . . . but today . . . I get the same error over and over .

I realize it's probably a USB problem, and I think I found the problem by removing an unused cable with nothing on the other end from my USB hub .

The hub is self-powered, and the power light is lit . . so why should a USB cable that's got nothing on the other end cause this problem?

The cable is completely out of any possible harm's way . . . no cat chewing on it or anything else . . so how can that unused cable cause a power loss?

The error message: STOP: 0X0000007E (0XC0000047,0X8051D200,0XF7962954,0XF79629A4), does not Google as a whole, just the first number in the parentheses does . That number also only shows up as a USB/printer problem . . . which I don't have on USB anyway .

The only printer on that computer is through the printer port, not USB .

I do use printer sharing . . . . . could that be the real problem?

A curse on Windows and their cryptic messages .
SurferJoe46 (51)
548398 2007-05-08 15:35:00 Addendum: You'll notice that some of the normally in "C" drive stuff is in other drives to keep them away from the root in case of malware etc...makes it easier to reload XP if I don't have to get all the other stuff too at the same time.

The one I worry about, as I haven't seen it before is: C:\Program Files\MSN Toolbar Suite\SL\02.05.0001.1119\en-us\msn_sl.exe

Here's a HJT: What do you think, Speedy?

Logfile of HijackThis v1.99.1
Scan saved at 7:33:55 AM, on 5/8/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\WINDOWS\Mixer.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\umonit.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\SOYO\HW Monitor\Itesmart.exe
C:\Program Files\LClock\lclock.exe
D:\SECURITY AREA\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Google\Google Talk\googletalk.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
J:\MS4palm\wcescomm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Sony Handheld\HOTSYNC.EXE
J:\MS4palm\rapimgr.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopOE.exe
E:\HJT.exe
C:\Program Files\Mozilla Firefox\firefox.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://verizon.my.msn.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = go.microsoft.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = go.microsoft.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *.local
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\SECURI~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector
O4 - HKLM\..\Run: [UMonit] C:\WINDOWS\system32\umonit.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SmartGuardian] C:\Program Files\SOYO\HW Monitor\Itesmart.exe
O4 - HKCU\..\Run: [LClock] C:\Program Files\LClock\lclock.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] D:\SECURITY AREA\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [googletalk] "C:\Program Files\Google\Google Talk\googletalk.exe" /autostart
O4 - HKCU\..\Run: [H/PC Connection Agent] "J:\MS4palm\wcescomm.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: HotSync Manager.lnk = C:\Program Files\Sony Handheld\HOTSYNC.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &ieSpell Options - res://E:\IE SpellWare\ieSpell\iespell.dll/SPELLOPTION.HTM
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: Check &Spelling - res://E:\IE SpellWare\ieSpell\iespell.dll/SPELLCHECK.HTM
O8 - Extra context menu item: Convert for CLIÉ - C:\Program Files\Sony\Image Converter\menu.htm
O8 - Extra context menu item: Open Link Target in Firefox - file://C:\Documents and Settings\Joe Vreeland\Application Data\Mozilla\Firefox\Profiles\mor7y54v.default\ext ensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewlink.html
O8 - Extra context menu item: View This Page in Firefox - file://C:\Documents and Settings\Joe Vreeland\Application Data\Mozilla\Firefox\Profiles\mor7y54v.default\ext ensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewpage.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files\Bonjour\ExplorerPlugin.dll
O9 - Extra button: Share in Hello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program Files\Hello\PicasaCapture.dll
O9 - Extra 'Tools' menuitem: Share in H&ello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program Files\Hello\PicasaCapture.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - messenger.zone.msn.com
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - messenger.zone.msn.com
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} -
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - download.mcafee.com
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - groups.msn.com
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - v5.windowsupdate.microsoft.com
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - messenger.zone.msn.com
O16 - DPF: {9A54032D-31F7-400D-B184-83B33BDE65FA} (MSN File Upload Control) - sc.groups.msn.com
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - messenger.msn.com
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - messenger.zone.msn.com
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - download.mcafee.com
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - www2.verizon.net
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - chat.msn.com
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - messenger.zone.msn.com
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: Bonjour Service - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
SurferJoe46 (51)
548399 2007-05-08 15:48:00 Log looks to me, but u can tick these entries.

O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

Is some kind of tweaking program on this PC??

Why these are here

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present

Your Java is a bit out of date, I would uninstall ALL versions of Sun Java.

Its now up to 6 update 1. Link is in my sig.

Itunes is a bit out of date.

Check event viewer, under application and system. See if there are any other X's errors or bugcheck entries.

Umm this entry

O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll even tho its by apple, could be suss.

It looks like its can screw things up.

And may or may not screw your net access up.

Altho if u remove this (And Itunes 5), u may need LSPfix to fix it, as u may lose net access.
Speedy Gonzales (78)
548400 2007-05-08 16:04:00 Log looks to me, but u can tick these entries .

O4 - HKLM\ . . \Run: [C-Media Mixer] Mixer . exe /startup

O4 - HKLM\ . . \Run: [NvCplDaemon] RUNDLL32 . EXE C:\WINDOWS\system32\NvCpl . dll,NvStartup

O4 - HKLM\ . . \Run: [NvMediaCenter] RUNDLL32 . EXE C:\WINDOWS\system32\NvMcTray . dll,NvTaskbarInit

O4 - HKLM\ . . \Run: [nwiz] nwiz . exe /install

Is some kind of tweaking program on this PC??

Why these are here

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present

I think these (^) are from my Internet Safe Zone Settings . . . no?

Your Java is a bit out of date, I would uninstall ALL versions of Sun Java .

Its now up to 6 update 1 . Link is in my sig .

Itunes is a bit out of date . I don't use iTunes . . wonder how it got there?

Check event viewer, under application and system . See if there are any other X's errors or bugcheck entries .

Got a couple of red "X's" :

The last two are these:


The Bonjour Service hung on starting

The Hauppauge Streaming Data Device service failed to start due to the following error .
The device cannot be started, either because it is disabled or because it has no enabled devices associated with it .

Well . . DUH! It's right as I don't have the Hauppauge tuner in here at all .

The first pair from yesterday are:


While validating that\Device\Serial2 was really a serial port, the contents of the driver latch register was identical to the interrupt enable and the receive registers, The device is assumed not to be a serial port and will be deleted .

The IP address 192 . 168 . 1 . 101 for the network card with network adress 00502cxxxxxx has been denied by the DHCP Server xxx . xxx . x . x (The DHCP Server sent a DHCPNACK message) .
SurferJoe46 (51)
548401 2007-05-08 16:25:00 Hi

I'm well out of my depth here but it you type that last IP address into google (192.168.1.101 ) you get all sorts of links with worried people thinking there getting hacked.

Heres one, but theres plenty more

answers.yahoo.com
lotse (11963)
548402 2007-05-08 16:32:00 Got a couple of red "X's" :

The last two are these:


The Bonjour Service hung on starting

Does Itunes 5 or an Itunes entry appear in Add/remove programs??

If there's on there, uninstall it .


The Hauppauge Streaming Data Device service failed to start due to the following error .

The device cannot be started, either because it is disabled or because it has no enabled devices associated with it .

Umm, go to device manager, do the drivers appear here somewhere?

Also go to View / show hidden devices .

Click on Non-plug and play drivers, any Hauppage entries here?? If there is delete them .



[The IP address 192 . 168 . 1 . 101 for the network card with network adress 00502cxxxxxx has been denied by the DHCP Server xxx . xxx . x . x (The DHCP Server sent a DHCPNACK message) . [/INDENT]

Whats 192 . 168 . 1 . 101? A router? Or a NIC?

I would tick the entries I posted previously . Get LSPfix ( . cexx . org/lspfix . htm" target="_blank">www . cexx . org) BEFORE you tick that dll entry in the previous post . Or u may not get back on the net .

Follow / print the info on the site above .

Also, try trojan remover in my sig below, install run click on scan . And then select the 3rd - 7th option under the utils menu .

This may or may not fix the LSP prob (or you having to use LSPfix) .
Speedy Gonzales (78)
548403 2007-05-08 16:36:00 Just in case the above post disappears .


Got a couple of red "X's" :

The last two are these:


The Bonjour Service hung on starting

Does Itunes 5 or an Itunes entry appear in Add/remove programs??

If there's one there, uninstall it .


The Hauppauge Streaming Data Device service failed to start due to the following error .

The device cannot be started, either because it is disabled or because it has no enabled devices associated with it .

Umm, go to device manager, do the drivers appear here somewhere?

Also go to View / show hidden devices .

Click on Non-plug and play drivers, any Hauppage entries here?? If there is delete them .



[The IP address 192 . 168 . 1 . 101 for the network card with network adress 00502cxxxxxx has been denied by the DHCP Server xxx . xxx . x . x (The DHCP Server sent a DHCPNACK message) . [/INDENT]

Whats 192 . 168 . 1 . 101? A router? Or a NIC?

I would tick the entries I posted previously . Get LSPfix ( . cexx . org/lspfix . htm" target="_blank">www . cexx . org) BEFORE you tick that dll entry in the previous post . Or u may not get back on the net .

Follow / print the info on the site above .

Also, try trojan remover in my sig below, install run click on scan . And then select the 3rd - 7th option under the utils menu .

This may or may not fix the LSP prob (or you having to use LSPfix) .
Speedy Gonzales (78)
548404 2007-05-08 16:57:00 Just in case the above post disappears .



Does Itunes 5 or an Itunes entry appear in Add/remove programs??

If there's one there, uninstall it . NOPE . . . not there .



Umm, go to device manager, do the drivers appear here somewhere? No .

Also go to View / show hidden devices .

Click on Non-plug and play drivers, any Hauppage entries here?? If there is delete them . NOPE . . . not there either!

I DO have a yellow exclamation (!) on Ports (Com & LPT) Communications Port (COM4) . . . but that's been there for a year .




Whats 192 . 168 . 1 . 101? A router? Or a NIC? The Linksys Router .

I would tick the entries I posted previously . Get LSPfix ( . cexx . org/lspfix . htm" target="_blank">www . cexx . org) BEFORE you tick that dll entry in the previous post . Or u may not get back on the net .

Follow / print the info on the site above .

Also, try trojan remover in my sig below, install run click on scan . And then select the 3rd - 7th option under the utils menu .

This may or may not fix the LSP prob (or you having to use LSPfix) .

OK . . . . . I also notice that my Picasa 2 is losing files/folders too . . not a big problem as I have them all dvd'd anyway . . but interesting?
SurferJoe46 (51)
548405 2007-05-08 17:41:00 Speedy:

This one:

O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp . dll . . . . even tho its by apple, could be suss .

. . . . . . . . . . is likely my Kodak Easy-Share C653 camera . . . it uses Apple QT Player . . . and I'm sorely tempted to use the alternate viewer, if you get my drift .

I am right now-installing Java . . . on the other computer . . . . I took the smaller of the two packages for Windows-based systems .

OK . . did the new Java . . and my taskbar is all oversized now .

The icons are larger and the programs list runs off the screen . . . that's new!

For the life of me, I cannot remember where that setting is again . . . . but I do know it's not a problem in the Taskbar and Start Menu area as the Small Icons is checked .

. . . and the right click in the programs list if I want to Sort By Name . . the whole right click is missing now . This is very important . . I need this function returned .

Hmmmmmmmm! Gadfry! And all I wanted to do was stop the error message .
SurferJoe46 (51)
548406 2007-05-08 23:40:00 Well... the taskbar thing check your screen resolution I guess you have a 17" LCD then setting your resolution to 1024 x 768 would be fine or even go 1280 x 1024, if you mean the icons on the desktop are big then thats in the "Display properties>Appearance>Effects". The right click problem might be the "Taskbar and Start Menu Properties>Start Menu>Customize>Advanced" then under the "Start Menu Items" see if "Enable Dragging and Dropping" is ticked.

The STOP problem. May be try the "run>msconfig" in the startup untick everything and reboot then see if the stop happens if not go back in to msconfig and enable something to startup and see if it is successful if so then repeat until you find which one it stops on, then that would be the one you need to deal with. If still unsuccessful, then hmmm... anyone with more ideas...
kennie (10559)
1 2