I hope someone is willing to bear with me and forgive my lack of computer knowledge, but I'm having problems with windows xp. I keep getting a message that says my virtual memory is too low. I increased the minimum, but that didn't seem t ohelp. My neighbor said it could be a memory leak? I don't know what that is really, I googled it and kind of understand, but not really, kwim? We did recently try some sort of old software,(jumpstart stuff, civilizations) but ended up deleting it all because they didn't run well.
The weird part is that some of the user accounts are having problems but not others. I had to delete 2 of the user accts because they froze completely. when I pulled up task manager and clicked on processes there were sooooo many "dr.watson"s running and they seemed to be taking up an awful lot memory.
I have defragged, I ran regvac, spysweeper, adaware, and mcafee virus scan and don't seem to have a virus or adware, but something is not right. any(easy to understand) help would be greatly appreciated!
![]() |
|
|||||||
| Windows XP/2000 - [Answered]virtual memory problem? computer freezing up posted in the Operating Systems forums; I hope someone is willing to bear with me and forgive my lack of computer knowledge, but I'm having problems with windows xp. I keep getting a message that says ... |
|
|
|
#1 |
|
Bronze Member
![]() Join Date: Aug 2005
Posts: 9
|
|
|
|
|
| Advertisement - Register to Remove | |
|
|
|
#2 |
|
PCHF Founder & Owner
![]() ![]() Join Date: Jan 2004
Location: The PCHF Bunker
Posts: 14,085 PC Experience: Microsoft Certified Professional
|
Hi there & welcome to PCHF
The best way to run a Windows XP installation is with the "System Managed Size" option selected. Don't forget to press "Set" before saying OK to that window.
__________________
|
|
|
|
|
|
#3 |
|
Trusted Security Analyst
![]() ![]() ![]() Join Date: Jul 2005
Location: NW Indiana
Posts: 2,891 PC Experience: Comnputers Fear Me..
|
What size hard drive do you have? If it is bigger than 40 gig's, I would suggest putting 1024 in minnumum and 1024 in maximum, only problem I found letting window's handling the page file withing the C drive is it get's so fragmented.. and you cant have a contigious file of the page..(all files in a row) this way having a gig page file you will mostly never need that much but you will nebver get that message..
Also How many dr.watson's do you have running? Would help to download Hijack This from my signature below and save it to "my documents" and run it (make sure all browser's are closed) and click scan and save log.. Copy the log and paste it right back here, we can tell you if you have any spywear, and or..what services and startup programs to disable to save you some memoory!! @Hengis.. No offense in the Windows Managed File.. Just had alot of bad experiences with it..
__________________
UBCD...SpeedFan...PreWork...AfterWork...NukeDisk...Free Online Virus Scanner...Cpu-Z |
|
|
|
|
|
#4 |
|
PCHF Founder & Owner
![]() ![]() Join Date: Jan 2004
Location: The PCHF Bunker
Posts: 14,085 PC Experience: Microsoft Certified Professional
|
It's all about providing a balanced view for our members - your comments are always appreciated
__________________
|
|
|
|
|
|
#5 |
|
Bronze Member
![]() Join Date: Aug 2005
Posts: 9
|
Thanks for the quick replies! I just wanted to add that this is not a new installation of xp, it came on this comp and we've had it almost a year (I don't know if that info would be relevant)
Ijust tried logging on under my user acct (i'm in ds's now) and got a "no available memory" screen after running a tune up. Is it usual for some login accts to be affected and not others? here's the hijack this log: Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe C:\WINDOWS\system32\dla\tfswctrl.exe C:\PROGRA~1\mcafee.com\agent\mcagent.exe C:\Program Files\McAfee.com\VSO\mcvsshld.exe C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe C:\PROGRA~1\mcafee.com\mps\mscifapp.exe c:\progra~1\mcafee.com\vso\mcvsescn.exe C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe C:\Program Files\WildTangent\Apps\CDA\GameDrvr.exe C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe C:\Program Files\McAfee.com\VSO\oasclnt.exe C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe C:\WINDOWS\system32\cisvc.exe C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe c:\program files\mcafee.com\agent\mcdetect.exe c:\PROGRA~1\mcafee.com\vso\mcshield.exe c:\PROGRA~1\mcafee.com\agent\mctskshd.exe C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://bfc.myway.com/search/de_srchlft.html R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://wizards.com/magic R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - (no file) O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: McBrwHelper Class - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - c:\program files\mcafee.com\mps\mcbrhlpr.dll O2 - BHO: McAfee PopupKiller - {3EC8255F-E043-4cae-8B3B-B191550C2A22} - c:\program files\mcafee.com\mps\popupkiller.dll O2 - BHO: McAfee Anti-Phishing Filter - {41D68ED8-4CFF-4115-88A6-6EBB8AF19000} - c:\program files\mcafee\spamkiller\mcapfbho.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe /startup O4 - HKLM\..\Run: [MPSExe] c:\PROGRA~1\mcafee.com\mps\mscifapp.exe /embedding O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe O4 - HKLM\..\Run: [WildTangent CDA] "C:\Program Files\WildTangent\Apps\CDA\GameDrvr.exe" /startup "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0500.dll" O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [DeadAIM] rundll32.exe "C:\PROGRA~1\AIM\\DeadAIM.ocm",ExportedCheckOD Ls O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_06\bin\npjpi142_06.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_06\bin\npjpi142_06.dll O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll O9 - Extra 'Tools' menuitem: McAfee Anti-Phishing Filter - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe O9 - Extra button: Share in Hello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program Files\Hello\PicasaCapture.dll O9 - Extra 'Tools' menuitem: Share in H&ello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program Files\Hello\PicasaCapture.dll O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O15 - Trusted Zone: *.musicmatch.com (HKLM) O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/downloads/k...an_unicode.cab O16 - DPF: {6BEA1C48-1850-486C-8F58-C7354BA3165E} (Install Class) - http://updates.lifescapeinc.com/inst...l/pinstall.cab O16 - DPF: {9059F30F-4EB1-4BD2-9FDC-36F43A218F4A} (Microsoft RDP Client Control (redist)) - http://www.taxsimple.com/TSWeb/msrdp.cab O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://download.games.yahoo.com/game...ploader_v6.cab O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/...ampx_en_dl.cab O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: IAA Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe |
|
|
|
|
|
#6 |
|
Trusted Security Analyst
![]() ![]() ![]() Join Date: Jul 2005
Location: NW Indiana
Posts: 2,891 PC Experience: Comnputers Fear Me..
|
Ok I see you play games on AOL and popcap. Although popcap is not bad? the wild tangent program may be as it is in itself spywaer.. So I leave that up to you to get rid of if you want to.... Here is what I would like you to do..
Have you changed your min and max to custom page file 1024 and 1024? First Before using Hijack This Can you please do this for me: Show hidden files and folders: For XP: 1.On the Tools menu in Windows Explorer, click Folder Options. 2.Click the View tab. 3.Under Hidden files and folders, click Show hidden files and folders. 4.If you see a warning message, click Yes. 5.Click Apply. 6.Click OK. Then disable system restore to prevent re-infection. (if you have/use it.) (you can turn it back on when youre pc is clean). How to disable system restore: WinXP. Click the Start button. Right-click My Computer, and then click Properties. On the System Restore tab, check Turn off System Restore or Turn off System Restore on all drives. And then do some pre-work clean up Download Cleanup In my Signature and run it. It will ask you to log off for a second and that is ok. Then log back on and do the folowing. Please download ewido Security Suite[list] [*]Install ewido security suite [*]When installing, under "Additional Options" uncheck "Install background guard" and "Install scan via context menu." [*]Launch ewido, there should be a big "E" icon on your desktop, double-click it. [*]The program will prompt you to update click the "OK" button [*]The program will now go to the main screen You will need to update ewido to the latest definition files. [*]On the left hand side of the main screen click update [*]Click on Start The update will start and a progress bar will show the updates being installed.? After the updates are installed, exit ewido. Once the updates are installed do the following: [*]If you have an "always on" connection to the internet, physically disconnect that connection until you are finished with Safe Mode and have rebooted back into normal mode. [*]Reboot into Safe Mode, you can do this by restarting your computer, then contiunally tapping F8 until a menu appears. Use your up arrow key to highlight Safe Mode, then hit enter. Then, run ewido. [*]Close all open windows/programs/folders.? Have nothing else open while ewido performs its scan! [*]Click on scanner [*]Click on Settings
[*]If ewido finds anything, it will pop up a notification.? NOTE:? We have been finding some cases of false positives with the new version of Ewido, so we need to step through the fixes one-by-one.? If Ewido finds something that you KNOW is legitimate (for example, parts of AVG Antivirus, AOL, pcAnywhere and the game "Risk" have been flagged.? In particular, watch for alerts that have the word "Heuristic" in them - if you recognize the file name as "friendly," these may actually be false positives) select "none" as the action.? DO NOT check "Perform action with all infections."? If you are unsure of an entry, select "none" for the time being.? I'll see that in the log you will post later and let you know if ewido needs to be run again. Once the scan has completed, there will be a button located on the bottom of the screen named Save report. [*]Click Save report [*]Save the report to your desktop [*]Exit ewido Then please Paste the report right back in the post... We will get ya up and running in no time!!!
__________________
UBCD...SpeedFan...PreWork...AfterWork...NukeDisk...Free Online Virus Scanner...Cpu-Z |
|
|
|
|
|
#7 |
|
Bronze Member
![]() Join Date: Aug 2005
Posts: 9
|
I did everything you said ....however when I clicked on the tools menu there was no folder options tab ?
heres whar ewido found ewido security suite - Scan report --------------------------------------------------------- + Created on: 4:21:17 PM, 8/25/2005 + Report-Checksum: 5F08DC84 + Scan result: HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup C:\Program Files\A1Clean\Undo20050313Temp.zip/C:/DOCUME~1/Mom/LOCALS~1/Temp/Cookies/mom@burstnet[1].txt -> Spyware.Cookie.Burstnet : Cleaned with backup C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Spyware.Wheaterbug : Cleaned without backup C:\WINDOWS\Downloaded Program Files\popcaploader.dll -> Not-A-Virus.PornWare.PopCap.b : Cleaned with backup ::Report End |
|
|
|
![]() |
| Bookmarks |
| Tags |
| answeredvirtual, computer, freezing, memory, problem |
| Thread Tools | |
| Display Modes | |
|
|































Linear Mode

