Tom's Guide | Tom's Hardware | Tom's Games
![]() |
![]() |
![]() |
I am running windows XPSP1 on my P3 633MHz machine with
1152MB 133MHz SDRAM. My computer has a really strange problem
about crashing for no reason at all. And randomly resetting intself in
the middle of use. I have tried cleaning registry and scanning for
viruses and found no infected files yet a lot of bad registry keys. I
also keep noticing the error messages after in shuts down and they
have said stuff like "could not open NvMCTray.dll" and I am not
running an Nvidia card. I am needing help to figure out why it keeps
restarting. Thanks here is a copy of my hijackthis.log.
Logfile of HijackThis v1.97.2
Scan saved at 11:35:54 PM, on 10/14/2003
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TZO\TZO_NT_Service.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\System32\mqsvc.exe
C:\WINDOWS\System32\mqtgsvc.exe
C:\WINDOWS\Explorer.exe
C:\Program Files\Common Files\Nokia\NCLTools\NclTray.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Microsoft Hardware\Keyboard\type32.exe
C:\Program Files\Microsoft Hardware\Mouse\point32.exe
C:\Program Files\TZO\TZOClient.exe
C:\WINDOWS\System32\BtUsrBdg.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Creative\SBLive\Launcher\CTLauncher.exe
C:\PROGRA~1\LEXMAR~1\ACMonitor_X73.exe
C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X73.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.exe
C:\Program Files\Adobe\Acrobat 4.0\Distillr\AcroTray.exe
C:\Program Files\Common Files\Nokia\Services\ServiceLayer.exe
C:\WINDOWS\System32\devldr32.exe
D:\Program Files\Fellowes\MediaFACE 4.0\MediaFace.exe
C:\Program Files\Creative\SBLive\Launcher\TaskGuide\updtray.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Paris\MyDocuments\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.comcast.net/
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {00000EF1-0786-4633-87C6-1AA7A44296DA} - C:\WINDOWS\System32\aess3.dll
O2 - BHO: (no name) - {029CA12C-89C1-46a7-A3C7-82F2F98635CB} - C:\Program Files\Kontiki\bin\bh304181.dll
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0
\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {F7F808F0-6F7D-442C-93E3-4A4827C2E4C8} - C:\WINDOWS\nem212.dll
O3 - Toolbar: Teoma Bar - {4194307F-65BB-454A-81D4-9E8A9D7CBAEA} - C:\WINDOWS\System32\teomabAB.dll
O3 - Toolbar: PopUpCop - {DB43E4E6-FF8A-4018-8C8E-F68587A44A73} - C:\PROGRA~1\PopUpCop\PopUpCop.dll
O4 - HKLM\..\Run: [Nokia Tray Application] C:\ProgramFiles\Common Files\Nokia\NCLTools\NclTray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\ProgramFiles\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exeirprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [IntelliType] "C:\Program Files\MicrosoftHardware\Keyboard\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\MicrosoftHardware\Mouse\point32.exe"
O4 - HKLM\..\Run: [TZOClient] C:\Program Files\TZO\TZOClient.exe
O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll
O4 - HKLM\..\Run: [BTUSRBDG] BtUsrBdg.exe
O4 - HKLM\..\Run: [ATIPTA] atiptaxx.exe
O4 - HKLM\..\Run: [Creative Launcher] C:\ProgramFiles\Creative\SBLive\Launcher\CTLauncher.exe
O4 - HKLM\..\Run: [Lexmark X73 Button Monitor] C:\PROGRA~1\LEXMAR~1\ACMonitor_X73.exe
O4 - HKLM\..\Run: [Lexmark X73 Button Manager] C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X73.exe
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKCU\..\Run: [STYLEXP] C:\ProgramFiles\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\ProgramFiles\Microsoft ActiveSync\WCESCOMM.exe"
O4 - Startup: Drempels Desktop.lnk = C:\WINDOWS\drempels.exe
O4 - Global Startup: Acrobat Assistant.lnk = C:\ProgramFiles\Adobe\Acrobat 4.0\Distillr\AcroTray.exe
O4 - Global Startup: MediaFACE 4.0 Calibration Wizard.lnk = ?
O4 - Global Startup: MediaFACE 4.0 Design Wizard.lnk = D:\Program Files\Fellowes\MediaFACE 4.0\MfRunWiz.exe
O4 - Global Startup: MediaFACE 4.0 Help.lnk = D:\ProgramFiles\Fellowes\MediaFACE 4.0\MediaFACE4.chm
O4 - Global Startup: MediaFACE 4.0.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\ProgramFiles\Microsoft Office\Office10\OSA.exe
O8 - Extra context menu item: &Add animation to IncrediMail StyleBox - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O8 - Extra context menu item: Dictionary Search - javascript:external.menuArguments.location.href="javascript:
TeomaBarcommand='cmd-search-selection-word'"
O8 - Extra context menu item: Open Image in New Window - res://C:\PROGRA~1\PopUpCop\popupcop.dll/imagenew
O8 - Extra context menu item: Teoma Search - javascript:external.menuArguments.location.href="javascript:TeomaBarcommand=
'cmd-search-selection'"
O9 - Extra button: Create Mobile Favorite (HKLM)
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... (HKLM)
O9 - Extra button: AIM (HKLM)
O9 - Extra button: Related (HKLM)
O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
O12 - Plugin for .spop: C:\Program Files\InternetExplorer\Plugins\NPDocBox.dll
O16 - DPF: {00000EF1-0786-4633-87C6-1AA7A44296DA} (F1Organizer Class) - http://www.netpaloffers.net/NetpalOffers/DMO1/
aess3.cab
O16 - DPF: {01FE8D0A-51AD-459B-B62B-85E135128B32} (DD_v4.DDv4) - http://www.drivershq.com/DD_v4.CAB
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://www.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://download.yahoo.com/dl/installs/yinst
0309.cab
O16 - DPF: {4357546F-0000-0000-0000-000000000000} - http://codingworkshop.com/ringtones/download/cwrtinst_4_5_6_cab.cab
O16 - DPF: {470A6E01-15A3-49B3-B8B9-8EDF4AC1A480} (TeomaInstaller Control) - http://sp.ask.com/docs/teoma/toolbar/download
/teomab-inst.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.installengine.
com/engine/isetup.cab
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (UpdateClass) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/
iuctl.CAB?37839.1170601852
O16 - DPF: {CF392BE0-B84F-46E9-BDA9-845119819119} (IPAQSelfHelp Class) - http://isupport4.hp.com/awebui/jsp/
answerweb/applets/ISPEIPAQTool.CAB
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/
shockwave/cabs/flash/swflash.cab
O16 - DPF: {ED6D016A-12F8-4871-BEDC-CE13AAAB4F0B} (DD_v4_Member.DDv4) - http://www.drivershq.com/members/DD_v4
_Member.CAB
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSNChat Control 4.5) - http://fdl.msn.com/public/chat/msnchat45.cab

Two essential programs that seem to be missing--antivirus program and firewall. What have you used to scan for a virus/trojan/worm?(http://housecall.trendmicro.com/) What programs do you use to scan for spyware?(Adaware/Spybot http://www.wilders.org/)

LEXBCES.EXE try disabling that in your
start runtype msconfig.exe
make sure selective start up is ticked. Then go to start up tab and untick that one.
Reboot and See if that helps any ....
That software for printer has known issues to cause start up problems and hog resources.
Good Place to start....
Also how is your memory array? How many chips what size and how is it placed in pc?

Mine use to do the same thing.This may be your problem and maybe not. shut your computer down and disconect your power cable.Then remove one at a time for 5 seconds all cards,ram and power cables.Static electricty can build up and cause this. Hope it helps

![]() |
Problem with installing p...
|
older pc with fat32/winxp
|

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.
| Ads by Google |