Member Panel


Sponsors and Ads

Join the Team

Live Tag Cloud

PC Forum PC Help Forum » Security & Safety » [Fixed] Hijackthis! Logs » [Closed] BSOD, please help, urgent!!

[Fixed] Hijackthis! Logs - [Closed] BSOD, please help, urgent!! posted in the Security & Safety forums; If I'm not mistaken, that's a gigabyte for a DMP file. That's about ten-thousand times what mine are (usually a uniform 100KB)! Absolutely enormous. I feel sorry for the tech ...

JOIN US NOW to remove these Ads

Post New Thread  Closed Thread
  #8  
Old 01-26-2007
Rodents210's Avatar
Moderator
My PC
 
Join Date: Jan 2007
Location: Upstate NY, United States
Posts: 1,029
PC Experience: Very Experienced
Rodents210 - See this Members User comments on their Profile page Rodents210 - See this Members User comments on their Profile page
Default

If I'm not mistaken, that's a gigabyte for a DMP file. That's about ten-thousand times what mine are (usually a uniform 100KB)! Absolutely enormous. I feel sorry for the tech that needs to analyze that monster.


  #9  
Old 01-26-2007
valis's Avatar
Senior Security Analyst
My PC
 
Join Date: Jan 2007
Location: texas, USA
Posts: 2,610
PC Experience: PC Illiterate
valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page
Default

what does teh bsod say? It should give something like irq_not_less_than or some such, and frequently near the bottom it will have the name of the offending file, usually a .sys file.

When does it occur?
If not at boot up, what app triggers it?
Can you boot into windows safely?

need more info. Be as specific as you can. If you can get into windows, do the folllowing:

go to start > run > eventvwr.msc. That will open an explorer like window with applications, security, and system in the left pane. Click on system and see if there are any exclamation points near to when it last froze; if so, double click on the item in the right pane, click on the two pieces of paper to copy it to your clipboard, and then come back here and paste the results. Then do the same for the applications folder; look for any exclamation marks that are near in time to when your pc is freezing.


  #10  
Old 01-26-2007
Bronze Member
 
Join Date: Jan 2007
Posts: 29
neatneatneat - See this Members User comments on their Profile page
Default

Ok,

Yes, I can boot into windows fine (albeit with an active recovery desktop)

The BSOD will then usually occur after 10-15mins of use (The BSOD started about 4days ago but has become more frequent)

I've tried opening the DMP file with notepad but it can't support a file of that size.

In the event viewer, there's no exclamation marks as such, but a few Errors (white X in Red Circle) - here's a few examples of what these contain:



Event Type: Error
Event Source: Service Control Manager
Event Category: None
Event ID: 7023
Date: 26/01/2007
Time: 16:01:38
User: N/A
Computer: ANDREW
Description:
The Computer Browser service terminated with the following error:
This operation returned because the timeout period expired.
For more information, see Help and Support Center at Events And Errors Message Center: Basic Search.



Event Type: Error
Event Source: Service Control Manager
Event Category: None
Event ID: 7000
Date: 26/01/2007
Time: 15:57:23
User: N/A
Computer: ANDREW
Description:
The ICF service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.
For more information, see Help and Support Center at Events And Errors Message Center: Basic Search.



Event Type: Error
Event Source: Service Control Manager
Event Category: None
Event ID: 7009
Date: 26/01/2007
Time: 15:57:23
User: N/A
Computer: ANDREW
Description:
Timeout (30000 milliseconds) waiting for the ICF service to connect.
For more information, see Help and Support Center at Events And Errors Message Center: Basic Search.



Event Type: Error
Event Source: Service Control Manager
Event Category: None
Event ID: 7023
Date: 25/01/2007
Time: 15:24:29
User: N/A
Computer: ANDREW
Description:
The Computer Browser service terminated with the following error:
This operation returned because the timeout period expired.
For more information, see Help and Support Center at Events And Errors Message Center: Basic Search.


ALSO, Under applications in event viewer there are some exclamation marks, here's some descriptions, starting with the most frequent message:


Event Type: Warning
Event Source: Userenv
Event Category: None
Event ID: 1517
Date: 24/01/2007
Time: 14:23:43
User: NT AUTHORITY\SYSTEM
Computer: ANDREW
Description:
Windows saved user ANDREW\Andy registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use.
This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account.
For more information, see Help and Support Center at Events And Errors Message Center: Basic Search.



Event Type: Warning
Event Source: Userenv
Event Category: None
Event ID: 1524
Date: 23/01/2007
Time: 20:25:19
User: ANDREW\Andy
Computer: ANDREW
Description:
Windows cannot unload your classes registry file - it is still in use by other applications or services. The file will be unloaded when it is no longer in use.

For more information, see Help and Support Center at Events And Errors Message Center: Basic Search.



Hope thats enough to start with, I will post what it says on the BSOD when it (inevitably) happens next.


Thanks again.


  #11  
Old 01-26-2007
valis's Avatar
Senior Security Analyst
My PC
 
Join Date: Jan 2007
Location: texas, USA
Posts: 2,610
PC Experience: PC Illiterate
valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page
Default

yes, definitely let us know what the bsod says.....those errors there most likely are not the culprit. Also note if it happens during a specific app, game, etc.

Thanks,

v


  #12  
Old 02-01-2007
Bronze Member
 
Join Date: Jan 2007
Posts: 29
neatneatneat - See this Members User comments on their Profile page
Default

Ok. Sorry i hadn't posted a reply in a ew days, bsod mysteriously stopped happening......but its back. Here's what it says:

A problem has been detected and windows has been shut down to pprevent any damage to your computer.

Technical Information:

STOP: 0x0000008E (0x00000005, 0xEE46060A, 0xED2DFA20, 0x00000000)

1zx32.sys - Address EE4606A base at EE45E000, DateStamp 45b0938d


Blue Screen doesn't happen during the running of a particular app or game either, happens pretty much at random.

Please help!

Cheers


  #13  
Old 02-02-2007
Bronze Member
 
Join Date: Jan 2007
Posts: 29
neatneatneat - See this Members User comments on their Profile page
Default

Is the information i've posted completely useless?

I would love to be able to post my .DMP file but its simply too big; is there any way i can solve this or am i stumped? BSOD'S are getting more frequent and its pretty worrying!

Any suggestions would be much appreciated,

cheers.


  #14  
Old 02-03-2007
valis's Avatar
Senior Security Analyst
My PC
 
Join Date: Jan 2007
Location: texas, USA
Posts: 2,610
PC Experience: PC Illiterate
valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page
Default

are you sure that you copied that correctly? Reason I ask is that lzx32.sys (L at the front, not a 1), is a trojan infection, and it also causes the stop: 0x0000008E bsod's. Just to be sure, I'd follow the prework link in my signature and follow all the steps, concluding with posting a hjt this log. We may end up having this moved to security to have an expert parse your log, but we need to verify that this is NOT a virus problem first, as most of the hits I am getting are pointing towards that end.

thanks,

v


__________________

M.C.S.A.
M.C.P.
- MS Server 2k3, Network Architecture

"Ask Bill why the string in function 9 is terminated by a dollar sign. Ask him, because he can't answer. Only I know that."
- Gary Kildall

Closed Thread
Satellite TV on your PC - over 3000 Channels! Click Here!

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On


All times are GMT +1. The time now is 06:03 AM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top
Unsecured Loans
Personal unsecured loans. Get extra from moneyextra!

Maschinenbau Verfahrenstechnik
Die Produktpalette von IKA umfaßt Maschinen für den Dispergier-, Rühr- und Knetbereich vom Labor- bis zum Produktionsmaßstab

Payday Loans
Get a payday loan in the UK