Jump to content


startup error


14 replies to this topic

#1 OFFLINE   PS3

    Advanced Member

  • Members
  • PipPipPip
  • 215 posts
  • Location:Melbourne, Australia
  • Interests:Technology

Posted 19 July 2006 - 12:53 AM

gday everyone,

every time when i startup my computer and its finished loading to the windows screen i have this error message coming up. i have no idea what it means and i have run all the spyware and virus programs but that doesnt seem to work.

what shall i do?

i have attached a picture to what it says.

thanks

Attached Files



#2 OFFLINE   Eldmannen

    Annoyance

  • Banned
  • PipPipPipPipPip
  • 2,198 posts
  • Location:Internet
  • Interests:Free software, open-source, GNU GPL, Linux, security, encryption, privacy, anonymity.

Posted 19 July 2006 - 01:37 AM

Maybe it is from some software that is set to autostart...



#3 OFFLINE   TheFiresInTheSky

    aka "neighberaaron"

  • Members
  • PipPipPipPip
  • 1,738 posts
  • Gender:Male
  • Location:somewhere in the glove
  • Interests:computers, myspace, website building, skating, ITG, DDR, summers, hanging out at the mall.

Posted 19 July 2006 - 03:53 AM

whats the message say? its kinda hard to read it.

#4 OFFLINE   PS3

    Advanced Member

  • Members
  • PipPipPip
  • 215 posts
  • Location:Melbourne, Australia
  • Interests:Technology

Posted 19 July 2006 - 04:03 AM

you should be able to magnify it.

it says "Could not authenticate to server"

#5 OFFLINE   TheFiresInTheSky

    aka "neighberaaron"

  • Members
  • PipPipPipPip
  • 1,738 posts
  • Gender:Male
  • Location:somewhere in the glove
  • Interests:computers, myspace, website building, skating, ITG, DDR, summers, hanging out at the mall.

Posted 19 July 2006 - 04:07 AM

ah, i see that now.
theres no way of telling really, id say if you dont figure it out, post a log.

EDIT: and let them know of your problem. they may be able to find the program thats doing this to you.

#6 OFFLINE   PS3

    Advanced Member

  • Members
  • PipPipPip
  • 215 posts
  • Location:Melbourne, Australia
  • Interests:Technology

Posted 19 July 2006 - 04:40 AM

post a log? how do i do that?

#7 OFFLINE   JohnDemolition

    Power Member

  • Members
  • PipPipPipPip
  • 924 posts
  • Gender:Not Telling

Posted 19 July 2006 - 04:49 AM

i believe he means a HijackThis log

#8 OFFLINE   PS3

    Advanced Member

  • Members
  • PipPipPip
  • 215 posts
  • Location:Melbourne, Australia
  • Interests:Technology

Posted 19 July 2006 - 06:07 AM

ok.....

what is it?

#9 OFFLINE   TheFiresInTheSky

    aka "neighberaaron"

  • Members
  • PipPipPipPip
  • 1,738 posts
  • Gender:Male
  • Location:somewhere in the glove
  • Interests:computers, myspace, website building, skating, ITG, DDR, summers, hanging out at the mall.

Posted 19 July 2006 - 06:14 AM

Ka-Blam! the guide to using HiJackThis.

#10 OFFLINE   PS3

    Advanced Member

  • Members
  • PipPipPip
  • 215 posts
  • Location:Melbourne, Australia
  • Interests:Technology

Posted 19 July 2006 - 08:03 AM

thanks for that.

is this what you wanted?

Logfile of HijackThis v1.99.1
Scan saved at 6:03:20 PM, on 19/07/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5450.0004)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\CNNIC\Cdn\cdnup.exe
C:\Program Files\baigoo\bgoomain.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\Google Talk\googletalk.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\NTService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\iTunes\iTunes.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Bruiza\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.177a.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.177a.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.177a.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.msn.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.acer.com.au/
O2 - BHO: CdnForIE Class - {5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} - C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll
O2 - BHO: bg - {7BDAF75A-0D6F-4F50-AFE9-333D08DF4005} - (no file)
O4 - HKLM\..\Run: [CdnCtr] C:\Program Files\CNNIC\Cdn\cdnup.exe
O4 - HKLM\..\Run: [bgoomain.exe] C:\Program Files\baigoo\bgoomain.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [googletalk] "C:\Program Files\Google\Google Talk\googletalk.exe" /autostart
O4 - HKCU\..\Run: [caishowmanage] C:\Program Files\CaiShow Tech\CaiShow\UpdateManager.EXE
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O8 - Extra context menu item: >>²ÊÐÅ·¢ËÍ<< - res://C:\Program Files\MMSAssist\Mmsass~1.dll/mms.htm
O8 - Extra context menu item: Access Internet Keyword - C:\Program Files\CNNIC\Cdn\cnnic.htm
O8 - Extra context menu item: Add to QQ Customized Panel - C:\Program Files\Tencent\QQ\AddPanel.htm
O8 - Extra context menu item: Add to QQ Emoticons - C:\Program Files\Tencent\QQ\AddEmotion.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Send picture by MMS - C:\Program Files\Tencent\QQ\SendMMS.htm
O8 - Extra context menu item: Send the Picture by QQ MMS - C:\Program Files\Tencent\QQ\SendMMS.htm
O9 - Extra button: Chinese Navigation - {5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} - C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll
O9 - Extra 'Tools' menuitem: Chinese Navigation - {5C3853CF-C7E0-4946-B3FA-1ABDB6F48108} - C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\cdnns.dll
O11 - Options group: [CDNCLIENT] Chinese Navigation
O17 - HKLM\System\CCS\Services\Tcpip\..\{0ED293F3-3B6C-4BB1-98F3-9FEC9BEAA9A9}: NameServer = 203.194.56.150 203.194.27.57
O17 - HKLM\System\CS3\Services\Tcpip\..\{0ED293F3-3B6C-4BB1-98F3-9FEC9BEAA9A9}: NameServer = 203.194.56.150 203.194.27.57
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Sample NT Service (SampleService) - Ceramiche Ariostea - C:\WINDOWS\NTService.exe
O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Vet Antivirus\VetMsg.exe

#11 OFFLINE   TheFiresInTheSky

    aka "neighberaaron"

  • Members
  • PipPipPipPip
  • 1,738 posts
  • Gender:Male
  • Location:somewhere in the glove
  • Interests:computers, myspace, website building, skating, ITG, DDR, summers, hanging out at the mall.

Posted 19 July 2006 - 08:50 AM

ya, usually those go in the hijackthis log section.
thanks!

#12 OFFLINE   JDPower

    Cydonian Knight

  • Members
  • PipPipPipPipPip
  • 2,952 posts
  • Gender:Male
  • Location:England

Posted 19 July 2006 - 06:39 PM

View PostPS3, on Jul 19 2006, 09:03 AM, said:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.177a.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.177a.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.177a.com
I'm far from an expert on HJT logs but that appears to be at least part of the problem. 177a is a browser hijacker. You should run a full virus scan and dowload and run Ewido (ideally run both in safe mode with system restore turned off) see if they remove it. Then post a new HJT log in the Hijack This thread HERE

I'll let the more knowledgeable members analyze the log a little more fully.

#13 OFFLINE   DjLizard

    Dial-a-fix author

  • Members
  • PipPipPipPip
  • 1,339 posts

Posted 19 July 2006 - 07:32 PM

You should hit CTRL+ALT+DEL (Task Manager) and see if it's listed under the Applications tab. (Is that Skype in the tray? That's my first guess.)

#14 OFFLINE   JDPower

    Cydonian Knight

  • Members
  • PipPipPipPipPip
  • 2,952 posts
  • Gender:Male
  • Location:England

Posted 20 July 2006 - 02:08 AM

Also, slightly unrelated but, just noticed your version of AdAware is out of date. You're desktop pic shows AdAware 6 which is no longer supported, you should download the latest version here: AdAware SE Personal

#15 OFFLINE   PS3

    Advanced Member

  • Members
  • PipPipPip
  • 215 posts
  • Location:Melbourne, Australia
  • Interests:Technology

Posted 20 July 2006 - 02:35 AM

yeah, thanks for that.

i do have the AdAware SE Personal. and i also have Adware 6. Adware 6 was just on the desktop.