Forum Home
Press F1
 
Thread ID: 76461 2007-02-01 21:41:00 Problem: XP MyComputer window blank braindead (1685) Press F1
Post ID Timestamp Content User
521807 2007-02-01 21:41:00 When I double-click MyComputer in XP Home, I get a blank window with a searching torch icon. Nothing else happens.

When I close MyComputer, right-click it again and select Explorer, Explorer opens but with the right pane blank, as above.

When I close Explorer, my screen goes blank for a second or two, then redraws itself to my normal desktop.

Something is screwed but I know not what. I've reinstalled IE7, run registry checks etc to no avail.

Any suggestions appreciated! Thanks

John
braindead (1685)
521808 2007-02-01 21:45:00 Get the file in my sig below.

We'll see if there's anything nasty in it.
Speedy Gonzales (78)
521809 2007-02-02 00:07:00 Will do, thanks Speedy :) braindead (1685)
521810 2007-02-02 00:17:00 There you go Speedy:

Logfile of HijackThis v1.99.1
Scan saved at 1:06:20 PM, on 2/2/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\systemcare\avast4\aswUpdSv.exe
C:\systemcare\avast4\ashServ.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\utilities\CachemanXP\CachemanXP.exe
C:\Program Files\DriveCrypt\DcrServ.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\GhostPE\GhostStartService.exe
C:\Program Files\Mil Incorporated\Mil Shield\ShieldService.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\Norton Utilities\NPROTECT.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\SLEE81.exe
C:\Program Files\Speed Disk\nopdb.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\UTSCSI.EXE
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\wwSecure.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\atwtusb.exe
C:\GhostPE\GhostStartTrayApp.exe
C:\1_com\ZoneAlarm\zlclient.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\Eset\nod32kui.exe
C:\utilities\Iconoid\iconoid.exe
C:\Program Files\Bluetack\ProtoWall\ProtoWall.exe
C:\WINDOWS\system32\ctfmon.exe
C:\systemcare\Ashampoo UnInstaller Platinum\UIWatcher.exe
C:\Program Files\Mil Incorporated\Mil Shield\ShieldWorker.exe
C:\WINDOWS\Application\JF-Utility.exe
C:\Program Files\GretagMacbeth\huey\hueyTray.exe
C:\Program Files\Microtek\ScanWizard 5\ScannerFinder.exe
C:\utilities\CpuIdle\cpuidle.exe
C:\utilities\Remind-Me\RemindMe.exe
C:\utilities\PowerDesk\PDExplo.exe
E:\# 1_scan\hijackthis\HijackThis.exe
C:\Program Files\JGsoft\EditPadPro5\EditPadPro.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = file:///E:/My%20Documents/1_web%20sites/MYPORTAL/JS_portal.htm
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = go.microsoft.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = go.microsoft.com
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\1_com\Internet Download Manager\IDMIECC.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\SYSTEM~2\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [atwtusb] atwtusb.exe beta
O4 - HKLM\..\Run: [GhostStartTrayApp] C:\GhostPE\GhostStartTrayApp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Zone Labs Client] C:\1_com\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKCU\..\Run: [ShellToys-VirtualDrives] "C:\Program Files\CFi\ShellToys\vdrive.exe" -start
O4 - HKCU\..\Run: [Iconoid] "C:\utilities\Iconoid\iconoid.exe"
O4 - HKCU\..\Run: [ProtoWall] C:\Program Files\Bluetack\ProtoWall\ProtoWall.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [UIWatcher] C:\systemcare\Ashampoo UnInstaller Platinum\UIWatcher.exe
O4 - HKCU\..\Run: [MilShieldSlave] "C:\Program Files\Mil Incorporated\Mil Shield\ShieldWorker.exe" -logon
O4 - HKCU\..\Run: [Quickbar] C:\WINDOWS\Application\JF-Utility.exe /RunInst 16384
O4 - Startup: loader.exe.lnk = C:\utilities\CpuIdle\loader.exe
O4 - Startup: RemindMe.lnk = C:\utilities\Remind-Me\RemindMe.exe
O4 - Global Startup: hueyTray.lnk = C:\Program Files\GretagMacbeth\huey\hueyTray.exe
O4 - Global Startup: Microtek Scanner Finder.lnk = C:\Program Files\Microtek\ScanWizard 5\ScannerFinder.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: + Offline &Explorer: Download the link - file://C:\1_com\Offline Explorer Enterprise\Add_UrlO.htm
O8 - Extra context menu item: + Offline E&xplorer: Download the current page - file://C:\1_com\Offline Explorer Enterprise\Add_AllO.htm
O8 - Extra context menu item: Download All Links with IDM - C:\1_com\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download with IDM - C:\1_com\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: List Stylesheets - C:\WINDOWS\Web\CSS_Stylesheets.html
O8 - Extra context menu item: Sothink SWF Catcher - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\npjpi150_10.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\npjpi150_10.dll
O9 - Extra button: Share in Hello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\webtools\Hello\PicasaCapture.dll
O9 - Extra 'Tools' menuitem: Share in H&ello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\webtools\Hello\PicasaCapture.dll
O9 - Extra button: (no name) - {ffcd98a0-9e1a-11d5-aa62-e2dcf03ff459} - C:\WINDOWS\Web\CSS_Stylesheets.html
O9 - Extra 'Tools' menuitem: &List Stylesheets - {ffcd98a0-9e1a-11d5-aa62-e2dcf03ff459} - C:\WINDOWS\Web\CSS_Stylesheets.html
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\idmmbc.dll
O11 - Options group: [INTERNATIONAL] International*
O15 - Trusted Zone: http://*.flickr.com
O15 - Trusted Zone: http://*.update.microsoft.com
O15 - Trusted Zone: http://download.windowsupdate.com
O15 - Trusted Zone: http://*.windowsupdate.com
O15 - Trusted Zone: http://download.windowsupdate.com
O16 - DPF: {01FE8D0A-51AD-459B-B62B-85E135128B32} - www.drivershq.com
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - secure.logmein.com
O20 - Winlogon Notify: LMIinit - C:\WINDOWS\SYSTEM32\LMIinit.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\systemcare\avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\systemcare\avast4\ashServ.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: CachemanXP (CachemanXPService) - OuterTechnologies - C:\utilities\CachemanXP\CachemanXP.exe
O23 - Service: DriveCrypt Service (DriveCryptService) - Unknown owner - C:\Program Files\DriveCrypt\DcrServ.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: GhostStartService - Symantec Corporation - C:\GhostPE\GhostStartService.exe
O23 - Service: MilShieldCleaner - Unknown owner - C:\Program Files\Mil Incorporated\Mil Shield\ShieldService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton Utilities\NPROTECT.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Steganos Live Encryption Engine 8.1 [Service] (SLEE_81_SERVICE) - Unknown owner - C:\WINDOWS\system32\SLEE81.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\Program Files\Speed Disk\nopdb.exe
O23 - Service: USBest Service Zero (UTSCSI) - USBest - C:\WINDOWS\system32\UTSCSI.EXE
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O23 - Service: Washer AutoComplete (wwSecSvc) - Webroot Software, Inc. - C:\WINDOWS\system32\wwSecure.exe
braindead (1685)
521811 2007-02-02 01:05:00 Hmm Most of the log looks ok.

Run HJT again close browser/s tick these entries and tick fix checked.

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = file:///E:/My%20Documents/1_web%20sites/MYPORTAL/JS_portal.htm

O4 - HKLM\..\Run: [GhostStartTrayApp] C:\GhostPE\GhostStartTrayApp.exe

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"

O4 - HKCU\..\Run: [Iconoid] "C:\utilities\Iconoid\iconoid.exe"

O4 - Startup: loader.exe.lnk = C:\utilities\CpuIdle\loader.exe
Speedy Gonzales (78)
521812 2007-02-02 01:58:00 OK Speedy. We'll see what happens. Thank you. braindead (1685)
521813 2007-02-02 02:03:00 No worries, u can also uninstall Java (and other versions of Sun Java), and get the update here (sdlc6b.sun.com E65EC3D7A87) Speedy Gonzales (78)
1