Member Panel


Sponsors and Ads

Live Tag Cloud

PC Forum PC Help Forum » Operating Systems » Windows Server » Windows 2000 pro loops at startup

Windows Server - Windows 2000 pro loops at startup posted in the Operating Systems forums; I'm trying to resuscitate someone's Toshiba Tecra 8000 laptop and in a normal boot, I will get all the way to loading personal settings (just before desktop icon display) and ...

JOIN US NOW to remove these Ads

PC Help Forum, the number one FREE computer support website in the search engines
Post New Thread  Reply
  #1  
Old 05-01-2006
naraineafc's Avatar
Bronze Member
 
Join Date: May 2006
Posts: 24
naraineafc - See this Members User comments on their Profile page
Default Windows 2000 pro loops at startup

I'm trying to resuscitate someone's Toshiba Tecra 8000 laptop and in a normal boot, I will get all the way to loading personal settings (just before desktop icon display) and then the below referenced error message appears for 1 second and automatically restarts the boot process. I can boot in safe mode.

Error message:

*** STOP: 0X0000001E (0XC0000005,0X804A3484,0X00000000,0X00000036)
KMODE_EXCEPTION_NOT_HANDLED

*** Address 804A3484 base at 80400000, DateStamp 3ad7ad60 - ntoskrnl.exe

Beginning dump of physical memory
Physical memory dump complete. Contact your system administrator or
technical support group.


This system is running Win 2000 sp2 w/ a paltry 196M ram.
Would appreciate any suggestions to remedy. Thanks for any assistance.
Stan


Here is log from Hijackthis:
Logfile of HijackThis v1.99.1
Scan saved at 3:53:17 PM, on 4/5/2006
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\Explorer.EXE
C:\Documents and Settings\computer user\Desktop\HijackThis.exe

R3 - URLSearchHook: (no name) - _{A045DC85-FC44-45be-8A50-E4F9C62C9A84} - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [PrinTray] C:\WINNT\System32\spool\DRIVERS\W32X86\2\printray. exe
O4 - HKLM\..\Run: [LXSUPMON] C:\WINNT\System32\LXSUPMON.EXE RUN
O4 - HKLM\..\Run: [a-winpoet-service] "C:\Program Files\Verizon Online\WinPoET\winpppoverethernet.exe"
O4 - HKLM\..\Run: [EPSON Stylus C84 Series] C:\WINNT\System32\spool\DRIVERS\W32X86\3\E_S4I2D1. EXE /P23 "EPSON Stylus C84 Series" /O5 "LPT1:" /M "Stylus C84"
O4 - HKLM\..\Run: [RunWindowsUpdate] C:\WINNT\uptodate.exe
O4 - HKLM\..\Run: [IPERGEZZN] C:\WINNT\IPERGEZZN.exe
O4 - HKLM\..\Run: [hqx] C:\WINNT\hqx.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Dvx] C:\WINNT\System32\wsxsvc\wsxsvc.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1144256764\EE\AOLHostManager.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\RunOnce: [AOL Deskbar Installation] regsvr32 /s "C:\Program Files\AOL Deskbar\deskbar.dll"
O4 - HKLM\..\RunOnce: [BrandClearStubs] RUNDLL32 IEDKCS32.DLL,BrandCleanInstallStubs >{D6D8B1C1-148C-4146-A9E4-551607CEF13B}
O4 - HKLM\..\RunOnce: [Regsister WScript] wscript -regserver
O4 - HKCU\..\Run: [System Soap Pro] C:\PROGRA~1\SYSTEM~1\soap.exe min
O4 - HKCU\..\Run: [AOL Fast Start] "C:\Program Files\America Online 9.0\AOL.EXE" -b
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Verizon Online Dialer.lnk = C:\Program Files\Verizon Online\WinPoET\Verizon Online.exe
O4 - Global Startup: Wireless-G Notebook Adapter Utility.lnk = C:\Program Files\Linksys\Wireless-G Notebook Adapter\WPC54CFG.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {421A63BA-4632-43E0-A942-3B4AB645BE51} - http://download-ak.systemsoap.com/ss...temsoappro.cab
O16 - DPF: {8A0DCBDA-6E20-489C-9041-C1E8A0352E75} - http://download.getmirar.com/cabs/875474.cab
O16 - DPF: {C606BA60-AB76-48B6-96A7-2C4D5C386F70} (PreQualifier Class) - http://www.verizon.net/checkmypc/inc...ivePreQual.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINNT\system32\LEXBCES.EXE
O23 - Service: NICSer_WPC54G - Unknown owner - C:\Program Files\Linksys\Wireless-G Notebook Adapter\NICServ.exe
O23 - Service: WinPPPoverEthernet - iVasion, a Routerware Company - C:\Program Files\Verizon Online\WinPoET\WrOS.EXE




  #2  
Old 05-02-2006
radar's Avatar
Elite Member
My PC
 
Join Date: Nov 2005
Location: UK
Posts: 571
radar - See this Members User comments on their Profile page
Default Fix

Hi Narianeafc,

Welcome to the PCHF,
I'm not sure abouth the hijack this log (not my area, but one of our security guys should get onto it).
I had a look around for the error code you gave and found this article with a fix.
http://support.microsoft.com/?kbid=294728
you might be able to get into the system in safe mode (tap f8 on startup) or use the win200 recovery console from the win2000 disk.
Let us know how you get on.


__________________
Did we help you? If we did, please Donate
  #3  
Old 05-02-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,044
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default

Hi guys.


First have a look in add/remove programs and uninstall these if present:

Delfin Media Viewer
Promulgate
System Soap Pro internet cleaning software
HTTPER
Zipclix



Then fix these with hjt:

R3 - URLSearchHook: (no name) - _{A045DC85-FC44-45be-8A50-E4F9C62C9A84} - (no file)
O4 - HKLM\..\Run: [RunWindowsUpdate] C:\WINNT\uptodate.exe
O4 - HKLM\..\Run: [IPERGEZZN] C:\WINNT\IPERGEZZN.exe
O4 - HKLM\..\Run: [hqx] C:\WINNT\hqx.exe
O4 - HKLM\..\RunOnce: [Regsister WScript] wscript -regserver
O4 - HKCU\..\Run: [System Soap Pro] C:\PROGRA~1\SYSTEM~1\soap.exe min
O16 - DPF: {421A63BA-4632-43E0-A942-3B4AB645BE51} - http://download-ak.systemsoap.com/ss...temsoappro.cab
O16 - DPF: {8A0DCBDA-6E20-489C-9041-C1E8A0352E75} - http://download.getmirar.com/cabs/875474.cab
Delete the files in bold manually , reboot , and post a new hjt log please.


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -

  #4  
Old 05-03-2006
naraineafc's Avatar
Bronze Member
 
Join Date: May 2006
Posts: 24
naraineafc - See this Members User comments on their Profile page
Default

Tnx for the feedback.
I did as Joe5 advised and was allowed to boot up normally once but subsequent boots reverted to same error mess.
I found DMVlite in my add/remove program list and was incapable of removing. It kept requiring internet access which I was able to facilitate the one time i had the normal boot. However, the url it was looking for was not found. Sounds fishy alltogether.
Here is my new log:
Attached Files
File Type: txt hjt.txt (3.7 KB, 0 views)



Last edited by joe5; 05-03-2006 at 06:13 PM.
  #5  
Old 05-03-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,044
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default

One of them came back , and i missed one the last time.. That doesn't happen often though..

Boot in safemode again , and fix these with hjt:

O4 - HKLM\..\Run: [Dvx] C:\WINNT\System32\wsxsvc\wsxsvc.exe
O4 - HKCU\..\Run: [System Soap Pro] C:\Program Files\System Soap Pro\soap.exe min
Then delete the files in bold , and reboot. Hopefully in normal mode , and post a new hjt then please.


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -

  #6  
Old 05-03-2006
naraineafc's Avatar
Bronze Member
 
Join Date: May 2006
Posts: 24
naraineafc - See this Members User comments on their Profile page
Default

Sorry Joe5.
I did as you suggested but the same error message.
Here's the new log, tnx for your assistance:
Attached Files
File Type: log hijackthis.log (3.6 KB, 1 views)



Reply
New! Norton Internet Security 2008 – Download Now Click Here

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On


All times are GMT +1. The time now is 06:47 AM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top