Hi guys, I have a weird problem. I was saving pictures from Firefox and opening them in Photoshop, when suddenly Firefox totally disappeared. Then a minute or so later, Photoshop disappeared. After that, Explorer closed and said:
"The instruction at '0x7c910f29' referenced memory at '0xb7b7c6c6'. The memory could not be 'read'."
Any time I restarted Explorer it would say this, and now any time I try to browse for a file in Firefox (for instance, to upload something) it freezes the program.
I've tried restoring my PC to an earlier date, but each time it shows the progress bar and then at about halfway the screen goes black and leaves the cursor locked in the middle of the screen. After a while I decided to manually turn off the computer, and when it came back on it said it couldn't be restored to that date. I've tried a few others but to no avail. Now that I think of it, though, this computer has never been able to restart itself - it always goes black at some point and stays that way.
Any way I can fix this? I've looked all over the place and can't find any answers... just lots of questions about the same thing!
Thanks in advance!
![]() |
|
|||||||
| Windows XP/2000 - Memory Reference Error? posted in the Operating Systems forums; Hi guys, I have a weird problem. I was saving pictures from Firefox and opening them in Photoshop, when suddenly Firefox totally disappeared. Then a minute or so later, Photoshop ... |
|
|
|
#1 |
|
Bronze Member
![]() Join Date: Oct 2008
Posts: 10 PC Experience: Some Experience
|
|
|
|
|
| Advertisement - Register to Remove | |
|
|
|
#2 |
|
PCHF Founder & Owner
![]() ![]() Join Date: Jan 2004
Location: The PCHF Bunker
Posts: 14,085 PC Experience: Microsoft Certified Professional
|
Welcome to PC Help Forum
I am suspecting a RAM problem. Can you please download and run this: Memtest86.com - Memory Diagnostic - upon boot, from floppy disk. It will take a long time but please let it complete...then post back the results here.
__________________
|
|
|
|
|
|
#3 |
|
Bronze Member
![]() Join Date: Oct 2008
Posts: 10 PC Experience: Some Experience
|
Hi, thanks for the reply. I'm having another problem - I found a problem called RegCure or something, and every time I try to download it in Firefox, it freezes. Then I told the Download window not to open when I download something, and it didn't freeze - then I opened the download box manually and it looked as if the file had been downloaded. But when I went into Task Manager to run the file through there, it said it couldn't be found. I then put the file on a CD using my Mac and I can't figure how to get it to run from there either.
As far as the floppy goes, I can't seem to do anything so I don't think I could even get it onto the floppy in the first place
|
|
|
|
|
|
#4 |
|
PCHF Founder & Owner
![]() ![]() Join Date: Jan 2004
Location: The PCHF Bunker
Posts: 14,085 PC Experience: Microsoft Certified Professional
|
Hmmm...ok, let's put you thru the Pre-Work first..just to make sure we're working with a "clean" PC.
http://www.pchelpforum.com/hijackthi...r-hjt-log.html
__________________
|
|
|
|
|
|
#5 |
|
Bronze Member
![]() Join Date: Oct 2008
Posts: 10 PC Experience: Some Experience
|
Hi there, I ran MalwareBytes and HijackThis and here are my results. MalwareBytes found a bunch of infections the first time I ran it, but because of my problem I wasn't able to save a logfile. Now I just ran it again and it found no malicious items. I also ran RegSeeker and fixed the Registry Errors it found.
Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 10:58:40 AM, on 10/12/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Unable to get Internet Explorer version! Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Program Files\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE C:\WINDOWS\System32\svchost.exe C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\taskmgr.exe G:\Firefox Downloads\HiJackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *.local R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) O2 - BHO: Trecker Class - {39C78B50-7E98-4aa0-B007-D83114EA6E0F} - C:\PROGRA~1\Jalmp\jalmp.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O4 - HKLM\..\Run: [00kk03qo.dll] RUNDLL32.EXE 00kk03qo.dll,b 168110906 O4 - HKLM\..\Run: [System Files Updater] C:\WINDOWS\FlyakiteOSX\System Files Updater.exe /S O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [winsync] C:\WINDOWS\system32\ppiakc.exe reg_run O4 - HKLM\..\RunServices: [winlog] winlog.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe (User 'Default user') O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ? O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O16 - DPF: {02CF1781-EA91-4FA5-A200-646E8241987C} - http://esupport.sony.com/VaioInfo.CAB O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1136305099514 O18 - Filter hijack: text/html - {2F6E85DC-8D2D-4896-8A4F-7DF8A7B1749D} - C:\PROGRA~1\Jalmp\jalmp.dll O20 - Winlogon Notify: s - C:\WINDOWS\ O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe -- |
|
|
|
|
|
#6 |
|
Bronze Member
![]() Join Date: Oct 2008
Posts: 10 PC Experience: Some Experience
|
Hey guys, MalwareBytes and RegSeeker are now showing no problems. What would be my next step? Would it be to delete malicious lines in the HijackThis report?
|
|
|
|
|
|
#7 |
|
PCHF Founder & Owner
![]() ![]() Join Date: Jan 2004
Location: The PCHF Bunker
Posts: 14,085 PC Experience: Microsoft Certified Professional
|
Moved to the HJT forum for Security Team advice.
__________________
|
|
|
|
![]() |
| Bookmarks |
| Tags |
| error, memory, memory reference error, question, Question:, reference |
| Thread Tools | |
| Display Modes | |
|
|













As far as the floppy goes, I can't seem to do anything so I don't think I could even get it onto the floppy in the first place














Linear Mode

