Overclock.net › Forums › Software, Programming and Coding › Operating Systems › Windows › Two Service Problems in Windows XP SP2 :(
New Posts  All Forums:Forum Nav:

Two Service Problems in Windows XP SP2 :(

post #1 of 5
Thread Starter 
1. I can't enable Firewall in Windows XP
I tried M$'s registry FAQs and anti-spyware programs, but they don't solve my problem !
I'm sure that a virus infected my pc. I scanned my pc with Kaspersky 7, but
It also changed the TCP/IP's settings! I changed it again, but I can't connect to the internet

2. It seems that "WebClient" has problem too

I confused, Please help me !!!
I don't want to reinstall my windows again :x



Piji
(16 items)
 
  
CPUMotherboardGraphicsRAM
Intel Core i5 4460 Gigabyte H97-D3H EVGA GeForce GTX 960 SuperSC ACX 2.0+ Kingston HyperX Fury 1866MHz 16GB 
Hard DriveHard DriveOptical DriveCooling
Samsung 840 EVO 250GB WD Caviar Green 1TB Pioneer DVR-S21FXV Noctua NH-U12S 
OSMonitorKeyboardPower
Windows 10 Pro x64 SAMSUNG P2270 Logitech K400 ENERMAX NAXN 450W 
CaseMouseMouse PadAudio
ENERMAX Clipeus ECA3210A Logitech Performance MX GIGABYTE PreSonus FireBox 
  hide details  
Reply
Piji
(16 items)
 
  
CPUMotherboardGraphicsRAM
Intel Core i5 4460 Gigabyte H97-D3H EVGA GeForce GTX 960 SuperSC ACX 2.0+ Kingston HyperX Fury 1866MHz 16GB 
Hard DriveHard DriveOptical DriveCooling
Samsung 840 EVO 250GB WD Caviar Green 1TB Pioneer DVR-S21FXV Noctua NH-U12S 
OSMonitorKeyboardPower
Windows 10 Pro x64 SAMSUNG P2270 Logitech K400 ENERMAX NAXN 450W 
CaseMouseMouse PadAudio
ENERMAX Clipeus ECA3210A Logitech Performance MX GIGABYTE PreSonus FireBox 
  hide details  
Reply
post #2 of 5
Try to download this AVG Anti Rootkit.
Run a full scan.

Also download this tool: HijackThis.
Run it and choose Do a system scan and save a logfile.
A new document will popup with you result. Select all (CTRL+A) and copy.
Paste the result here.

It may be a malware (trojan).
If you already removed the trojan, try this link here.

In the mean time, try to install a third-party firewall, such as, Comodo Firewall.
My System
(13 items)
 
  
CPUMotherboardGraphicsRAM
Phenon II X4 946 3Ghz A790GXM-AD3 Black Series XFX HD5750 1GB 4GB DDR3 
OSMonitorKeyboardPower
Windows 7 Ultimate X64 Samsung 932BW Clone ZM500-HP 
CaseMouseMouse Pad
CaseMall ATX R120-V2 SE Black Logitech G5 Steelpad 5L 
  hide details  
Reply
My System
(13 items)
 
  
CPUMotherboardGraphicsRAM
Phenon II X4 946 3Ghz A790GXM-AD3 Black Series XFX HD5750 1GB 4GB DDR3 
OSMonitorKeyboardPower
Windows 7 Ultimate X64 Samsung 932BW Clone ZM500-HP 
CaseMouseMouse Pad
CaseMall ATX R120-V2 SE Black Logitech G5 Steelpad 5L 
  hide details  
Reply
post #3 of 5
Thread Starter 
thanks, but it doesn't solve my problem

Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 7:12:44 PM, on 6/19/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal
Running processes:
D:\\WINDOWS\\System32\\smss.exe
D:\\WINDOWS\\system32\\winlogon.exe
D:\\WINDOWS\\system32\\services.exe
D:\\WINDOWS\\system32\\lsass.exe
D:\\WINDOWS\\system32\\svchost.exe
D:\\Program Files\\Windows Defender\\MsMpEng.exe
D:\\WINDOWS\\System32\\svchost.exe
D:\\WINDOWS\\system32\\spoolsv.exe
D:\\WINDOWS\\Explorer.EXE
D:\\Program Files\\Microsoft IntelliPoint\\ipoint.exe
D:\\Program Files\\Microsoft IntelliType Pro\\itype.exe
D:\\Program Files\\Creative\\Sound Blaster X-Fi\\Volume Panel\\VolPanel.exe
D:\\WINDOWS\\system32\
undll32.exe
D:\\Program Files\\Vista Drive Icon\\DrvIcon.exe
D:\\WINDOWS\\system32\\ctfmon.exe
D:\\Program Files\\Windows Sidebar\\Windows Sidebar.exe
D:\\WINDOWS\\SYSTEM32\\CTXFISPI.EXE
D:\\Program Files\\Diskeeper Corporation\\Diskeeper\\DkService.exe
D:\\WINDOWS\\system32\
vsvc32.exe
D:\\WINDOWS\\system32\\svchost.exe
D:\\WINDOWS\\system32\\wuauclt.exe
D:\\HiJackThis_v2.exe
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = about:blank
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://www.yahoo.com
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = http://www.yahoo.com
R1 - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion \\Internet Settings,ProxyOverride = local;*.local
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - D:\\Program Files\\Internet Download Manager\\IDMIECC.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\\Program Files\\Common Files\\Adobe\\Acrobat\\ActiveX\\AcroIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\\PROGRA~1\\MICROS~2\\Office12\\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\\Program Files\\Java\\jre1.6.0\\bin\\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - D:\\Program Files\\Adobe\\Acrobat 8.0\\Acrobat\\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - D:\\Program Files\\Adobe\\Acrobat 8.0\\Acrobat\\AcroIEFavClient.dll
O4 - HKLM\\..\\Run: [IntelliPoint] "D:\\Program Files\\Microsoft IntelliPoint\\ipoint.exe"
O4 - HKLM\\..\\Run: [itype] "D:\\Program Files\\Microsoft IntelliType Pro\\itype.exe"
O4 - HKLM\\..\\Run: [NeroFilterCheck] D:\\Program Files\\Common Files\\Ahead\\Lib\\NeroCheck.exe
O4 - HKLM\\..\\Run: [VolPanel] "D:\\Program Files\\Creative\\Sound Blaster X-Fi\\Volume Panel\\VolPanel.exe" /r
O4 - HKLM\\..\\Run: [NvCplDaemon] RUNDLL32.EXE D:\\WINDOWS\\system32\\NvCpl.dll,NvStartup
O4 - HKLM\\..\\Run: [nwiz] nwiz.exe /install
O4 - HKLM\\..\\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\\..\\Run: [DiskeeperSystray] "D:\\Program Files\\Diskeeper Corporation\\Diskeeper\\DkIcon.exe"
O4 - HKLM\\..\\Run: [NvMediaCenter] RUNDLL32.EXE D:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\\..\\Run: [DrvIcon] D:\\Program Files\\Vista Drive Icon\\DrvIcon.exe
O4 - HKCU\\..\\Run: [CTFMON.EXE] D:\\WINDOWS\\system32\\ctfmon.exe
O4 - HKUS\\S-1-5-19\\..\\Run: [CTFMON.EXE] D:\\WINDOWS\\system32\\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\\S-1-5-20\\..\\Run: [CTFMON.EXE] D:\\WINDOWS\\system32\\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\\S-1-5-18\\..\\Run: [CTFMON.EXE] D:\\WINDOWS\\system32\\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\\.DEFAULT\\..\\Run: [CTFMON.EXE] D:\\WINDOWS\\system32\\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Windows Sidebar.lnk = D:\\Program Files\\Windows Sidebar\\Windows Sidebar.exe
O8 - Extra context menu item: Append to existing PDF - res://D:\\Program Files\\Adobe\\Acrobat 8.0\\Acrobat\\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert link target to Adobe PDF - res://D:\\Program Files\\Adobe\\Acrobat 8.0\\Acrobat\\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://D:\\Program Files\\Adobe\\Acrobat 8.0\\Acrobat\\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://D:\\Program Files\\Adobe\\Acrobat 8.0\\Acrobat\\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://D:\\Program Files\\Adobe\\Acrobat 8.0\\Acrobat\\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://D:\\Program Files\\Adobe\\Acrobat 8.0\\Acrobat\\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://D:\\Program Files\\Adobe\\Acrobat 8.0\\Acrobat\\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://D:\\Program Files\\Adobe\\Acrobat 8.0\\Acrobat\\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Download All Links with IDM - D:\\Program Files\\Internet Download Manager\\IEGetAll.htm
O8 - Extra context menu item: Download with IDM - D:\\Program Files\\Internet Download Manager\\IEExt.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\\PROGRA~1\\MICROS~2\\Office12\\EXCEL.EXE/3000
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - D:\\Program Files\\Kaspersky Lab\\Kaspersky Anti-Virus 7.0\\SCIEPlgn.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\\PROGRA~1\\MICROS~2\\Office12\\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\\PROGRA~1\\MICROS~2\\Office12\\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\\PROGRA~1\\MICROS~2\\Office12\\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\\Network Diagnostic\\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\\Network Diagnostic\\xpnetdiag.exe (file missing)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/micr...?1181194577781
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\\PROGRA~1\\MICROS~2\\Office12\\GR99D3~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - D:\\WINDOWS\\system32\\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - D:\\WINDOWS\\system32\\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - D:\\Program Files\\Common Files\\Adobe Systems Shared\\Service\\Adobelmsvc.exe
O23 - Service: Kaspersky Anti-Virus 7.0 (AVP) - Kaspersky Lab - D:\\Program Files\\Kaspersky Lab\\Kaspersky Anti-Virus 7.0\\avp.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762# # (Bonjour Service) - Unknown owner - D:\\Program Files\\Bonjour\\mDNSResponder.exe (file missing)
O23 - Service: Capture Device Service - InterVideo Inc. - D:\\Program Files\\Common Files\\InterVideo\\DeviceService\\DevSvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - D:\\WINDOWS\\system32\\CTsvcCDA.EXE
O23 - Service: Diskeeper - Diskeeper Corporation - D:\\Program Files\\Diskeeper Corporation\\Diskeeper\\DkService.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - D:\\Program Files\\Common Files\\Macrovision Shared\\FLEXnet Publisher\\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\\Program Files\\Common Files\\InstallShield\\Driver\\11\\Intel 32\\IDriverT.exe
O23 - Service: NBService - Nero AG - D:\\Program Files\\Nero\\Nero 7\\Nero BackItUp\\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - D:\\WINDOWS\\system32\
vsvc32.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - D:\\Program Files\\Cyberlink\\Shared files\\RichVideo.exe
O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - Unknown owner - D:\\Program Files\\Spyware Doctor\\svcntaux.exe
O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - D:\\Program Files\\Spyware Doctor\\swdsvc.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - D:\\Program Files\\Common Files\\Ulead Systems\\DVD\\ULCDRSvr.exe
--
End of file - 8671 bytes
Piji
(16 items)
 
  
CPUMotherboardGraphicsRAM
Intel Core i5 4460 Gigabyte H97-D3H EVGA GeForce GTX 960 SuperSC ACX 2.0+ Kingston HyperX Fury 1866MHz 16GB 
Hard DriveHard DriveOptical DriveCooling
Samsung 840 EVO 250GB WD Caviar Green 1TB Pioneer DVR-S21FXV Noctua NH-U12S 
OSMonitorKeyboardPower
Windows 10 Pro x64 SAMSUNG P2270 Logitech K400 ENERMAX NAXN 450W 
CaseMouseMouse PadAudio
ENERMAX Clipeus ECA3210A Logitech Performance MX GIGABYTE PreSonus FireBox 
  hide details  
Reply
Piji
(16 items)
 
  
CPUMotherboardGraphicsRAM
Intel Core i5 4460 Gigabyte H97-D3H EVGA GeForce GTX 960 SuperSC ACX 2.0+ Kingston HyperX Fury 1866MHz 16GB 
Hard DriveHard DriveOptical DriveCooling
Samsung 840 EVO 250GB WD Caviar Green 1TB Pioneer DVR-S21FXV Noctua NH-U12S 
OSMonitorKeyboardPower
Windows 10 Pro x64 SAMSUNG P2270 Logitech K400 ENERMAX NAXN 450W 
CaseMouseMouse PadAudio
ENERMAX Clipeus ECA3210A Logitech Performance MX GIGABYTE PreSonus FireBox 
  hide details  
Reply
post #4 of 5
Your log doesn't show any malware.

Try to fix the file system to make 100% sure everything is OK.
Have the Windows XP installation disc in hands.
Click in the Start Button -> Run.. and type
sfc /scannow
It'll check the file system.

* When that started to happen?
* Have you installed anything before this problem occours?
* How long have you have this VistaPack installed?
My System
(13 items)
 
  
CPUMotherboardGraphicsRAM
Phenon II X4 946 3Ghz A790GXM-AD3 Black Series XFX HD5750 1GB 4GB DDR3 
OSMonitorKeyboardPower
Windows 7 Ultimate X64 Samsung 932BW Clone ZM500-HP 
CaseMouseMouse Pad
CaseMall ATX R120-V2 SE Black Logitech G5 Steelpad 5L 
  hide details  
Reply
My System
(13 items)
 
  
CPUMotherboardGraphicsRAM
Phenon II X4 946 3Ghz A790GXM-AD3 Black Series XFX HD5750 1GB 4GB DDR3 
OSMonitorKeyboardPower
Windows 7 Ultimate X64 Samsung 932BW Clone ZM500-HP 
CaseMouseMouse Pad
CaseMall ATX R120-V2 SE Black Logitech G5 Steelpad 5L 
  hide details  
Reply
post #5 of 5
goto run
type msconfig
click on the services tab
scroll down and make sure that the service is actually enabled.

Also you may want to try a winsock fix:
http://www.snapfiles.com/php/downloa...=1445888&loc=2
new build
(13 items)
 
  
CPUMotherboardGraphicsRAM
AMD 6000 X2 64 GIGABYTE GA-M59SLI-S5 590SLI AM2 eVGA 8800 GTS 640 MB 4GB DDR2 533 (4x1GB) 
Hard DriveOptical DriveOSMonitor
300GB IDE Seagate, 160GB IDE WD, 80GB IDE WD Mad Dog DVD/CD-RW XP Pro Dell 20.1inch WS LCD 
PowerCaseMouse
COOLMAX CW-650T 650W RT Gigabyte 3D Aurora Logitech G7 
  hide details  
Reply
new build
(13 items)
 
  
CPUMotherboardGraphicsRAM
AMD 6000 X2 64 GIGABYTE GA-M59SLI-S5 590SLI AM2 eVGA 8800 GTS 640 MB 4GB DDR2 533 (4x1GB) 
Hard DriveOptical DriveOSMonitor
300GB IDE Seagate, 160GB IDE WD, 80GB IDE WD Mad Dog DVD/CD-RW XP Pro Dell 20.1inch WS LCD 
PowerCaseMouse
COOLMAX CW-650T 650W RT Gigabyte 3D Aurora Logitech G7 
  hide details  
Reply
New Posts  All Forums:Forum Nav:
  Return Home
  Back to Forum: Windows
Overclock.net › Forums › Software, Programming and Coding › Operating Systems › Windows › Two Service Problems in Windows XP SP2 :(