Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: XP PC Hanging, Freezing  (Read 44018 times)

0 Members and 1 Guest are viewing this topic.

SuperDave

  • Malware Removal Specialist


  • Genius
  • Thanked: 1020
  • Certifications: List
  • Experience: Expert
  • OS: Windows 10
Re: XP PC Hanging, Freezing
« Reply #30 on: January 19, 2012, 11:18:39 AM »
I don't need to see HiJackThis log.
Windows 8 and Windows 10 dual boot with two SSD's

dc4580

    Topic Starter


    Beginner
    • Experience: Beginner
    • OS: Windows XP
    Re: XP PC Hanging, Freezing
    « Reply #31 on: January 19, 2012, 07:24:14 PM »
    The link http://www.kaspersky.com/kos/eng/partner/default/kavwebscan.html didn't work.  Got a 404.  So, I went to the Kaspersky site and hit the free virus scan link.  The custom scan ran and produced no detected threats, no malicious objects and no applications that showed vulnerabilities, adware or " other " anomalies.  It doesn't create a report, just a display.

    SuperDave

    • Malware Removal Specialist


    • Genius
    • Thanked: 1020
    • Certifications: List
    • Experience: Expert
    • OS: Windows 10
    Re: XP PC Hanging, Freezing
    « Reply #32 on: January 20, 2012, 11:49:13 AM »
    Ok. How's your computer working now? Any other issues?
    Windows 8 and Windows 10 dual boot with two SSD's

    dc4580

      Topic Starter


      Beginner
      • Experience: Beginner
      • OS: Windows XP
      Re: XP PC Hanging, Freezing
      « Reply #33 on: January 20, 2012, 11:59:16 AM »
      The freezing and hanging are still occurring.  Is there anything to the number of svchost.exe running at the same time?  When I look at Task Manager, I can see six executing at the same time.

      SuperDave

      • Malware Removal Specialist


      • Genius
      • Thanked: 1020
      • Certifications: List
      • Experience: Expert
      • OS: Windows 10
      Re: XP PC Hanging, Freezing
      « Reply #34 on: January 21, 2012, 11:50:08 AM »
      Download Process Explorer: http://technet.microsoft.com/en-us/sysinternals/bb896653.aspx
      Unzip ProcessExplorer.zip, and double click on procexp.exe to run the program.
      Click on View > Select Colunms.
      In addition to already pre-selected options, make sure, the Command Line is selected, and press OK.
      Go File>Save As, and save the report as Procexp.txt.
      Attach the file to your next reply.
      Windows 8 and Windows 10 dual boot with two SSD's

      dc4580

        Topic Starter


        Beginner
        • Experience: Beginner
        • OS: Windows XP
        Re: XP PC Hanging, Freezing
        « Reply #35 on: January 21, 2012, 04:40:45 PM »
        Process   PID   CPU   Description   Company Name   Command Line
        System Idle Process   0   100.00         
        System   4            
         Interrupts   n/a   < 0.01   Hardware Interrupts and DPCs      
         smss.exe   768      Windows NT Session Manager   Microsoft Corporation   \SystemRoot\System32\smss.exe
          csrss.exe   824      Client Server Runtime Process   Microsoft Corporation   C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
          winlogon.exe   848      Windows NT Logon Application   Microsoft Corporation   winlogon.exe
           services.exe   892      Services and Controller app   Microsoft Corporation   C:\WINDOWS\system32\services.exe
            svchost.exe   1112      Generic Host Process for Win32 Services   Microsoft Corporation   C:\WINDOWS\system32\svchost.exe -k DcomLaunch
             wfcrun32.exe   1816      Citrix   Citrix Systems, Inc.   "C:\Program Files\Citrix\ICA Client\wfcrun32.exe" -Embedding
             wmiprvse.exe   2492      WMI   Microsoft Corporation   C:\WINDOWS\system32\wbem\wmiprvse.exe
            svchost.exe   1200      Generic Host Process for Win32 Services   Microsoft Corporation   C:\WINDOWS\system32\svchost.exe -k rpcss
            svchost.exe   1848      Generic Host Process for Win32 Services   Microsoft Corporation   C:\WINDOWS\System32\svchost.exe -k netsvcs
            svchost.exe   204      Generic Host Process for Win32 Services   Microsoft Corporation   C:\WINDOWS\System32\svchost.exe -k NetworkService
            svchost.exe   600      Generic Host Process for Win32 Services   Microsoft Corporation   C:\WINDOWS\system32\svchost.exe -k LocalService
            spoolsv.exe   760      Spooler SubSystem App   Microsoft Corporation   C:\WINDOWS\system32\spoolsv.exe
            svchost.exe   1644      Generic Host Process for Win32 Services   Microsoft Corporation   C:\WINDOWS\System32\svchost.exe -k LocalService
            SASCore.exe   1728      Core Service   SUPERAntiSpyware.com   "C:\Program Files\SUPERAntiSpyware\SASCORE.EXE"
            jqs.exe   312      Java(TM) Quick Starter Service   Sun Microsystems, Inc.   "C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf"
            LSSrvc.exe   420      LightScribe Service   Hewlett-Packard Company   "C:\Program Files\Common Files\LightScribe\LSSrvc.exe"
            LinksysUpdater.exe   536            "C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe" -s "C:\Program Files\Linksys\Linksys Updater\conf\wrapper.conf"
             java.exe   1980      Java(TM) Platform SE binary   Oracle Corporation   "C:\WINDOWS\system32\java.exe" -Xmx100m -Djava.library.path="../lib" -classpath "../lib/agent-2.5.8318.2077.jar;../lib/wrapper.jar;../lib/commons-lang-2.3.jar;../lib/commons-logging-1.1.jar;../lib/spring-2.0.6.jar;../lib/spring-ws-core-1.0.2.jar;../lib/spring-xml-1.0.2.jar;../lib/jdom-1.0.jar;../lib/jaxen-1.1.1.jar;../lib/xpp3_min-1.1.3.4.O.jar;../lib/xstream-1.2.2.jar" -Dwrapper.key="KXkElE5tty3F0CbB" -Dwrapper.port=32000 -Dwrapper.jvm.port.min=31000 -Dwrapper.jvm.port.max=31999 -Dwrapper.pid=536 -Dwrapper.version="3.2.3" -Dwrapper.native_library="wrapper" -Dwrapper.service="TRUE" -Dwrapper.cpu.timeout="10" -Dwrapper.jvmid=1 com.linksys.agent.Main
            ccSvcHst.exe   1940      Symantec Service Framework   Symantec Corporation   "C:\Program Files\Norton 360\Engine\5.1.0.29\ccSvcHst.exe" /s "N360" /m "C:\Program Files\Norton 360\Engine\5.1.0.29\diMaster.dll" /prefetch:1
             ccSvcHst.exe   2308      Symantec Service Framework   Symantec Corporation   "C:\Program Files\Norton 360\Engine\5.1.0.29\ccSvcHst.exe" /c /a /s UserSession
            RichVideo.exe   2148      RichVideo Module      "C:\Program Files\CyberLink\Shared Files\RichVideo.exe"
            vmware-usbarbitrator.exe   2916      VMware USB Arbitration Service   VMware, Inc.   "C:\Program Files\Common Files\VMware\USB\vmware-usbarbitrator.exe"
            searchindexer.exe   3080      Microsoft Windows Search Indexer   Microsoft Corporation   C:\WINDOWS\system32\SearchIndexer.exe /Embedding
            nmsrvc.exe   3188      Pure Networks Platform Service   Cisco Systems, Inc.   "C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe"
            vmware-authd.exe   3452      VMware Authorization Service   VMware, Inc.   "C:\Program Files\VMware\VMware Player\vmware-authd.exe"
            alg.exe   3120      Application Layer Gateway Service   Microsoft Corporation   C:\WINDOWS\System32\alg.exe
           lsass.exe   904      LSA Shell (Export Version)   Microsoft Corporation   C:\WINDOWS\system32\lsass.exe
           taskmgr.exe   3868      Windows TaskManager   Microsoft Corporation   taskmgr.exe
        explorer.exe   1560      Windows Explorer   Microsoft Corporation   C:\WINDOWS\Explorer.EXE
         RTHDCPL.EXE   1304      Realtek HD Audio Control Panel   Realtek Semiconductor Corp.   "C:\WINDOWS\RTHDCPL.EXE"
         RoxWatchTray10.exe   1452      RoxMMTrayApp Module   Sonic Solutions   "C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe"
          CPSHelpRunner10.exe   1148      ROXHelpRunner Module   Sonic Solutions   "C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSHelpRunner10.exe" Local\{B5C5AE51-F57E-48B4-ADD8-1F440EF4FD87}
         PDVDServ.exe   1460      PowerDVD RC Service   Cyberlink Corp.   "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
         nmctxth.exe   1284      Pure Networks Platform Assistant   Cisco Systems, Inc.   "C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe"
         IBurn.exe   1544      InstantBurn UDF Tool   CyberLink Corporation.   "C:\PROGRA~1\CYBERL~1\INSTAN~1\Win2K\IBurn.exe"
         DMXLauncher.exe   868            "C:\Program Files\Roxio\CinePlayer\DMXLauncher.exe"
         concentr.exe   1500      Citrix online plug-in Connection Center   Citrix Systems, Inc.   "C:\Program Files\Citrix\ICA Client\concentr.exe" /startup
         CLMLSvc.exe   1724      CyberLink MediaLibray Service   CyberLink   "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
         jusched.exe   1964      Java(TM) Update Scheduler   Sun Microsystems, Inc.   "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
         ctfmon.exe   1988      CTF Loader   Microsoft Corporation   "C:\WINDOWS\system32\ctfmon.exe"
         WindowsSearch.exe   2432      Windows Search System Tray   Microsoft Corporation   "C:\Program Files\Windows Desktop Search\WindowsSearch.exe"  /startup
         iexplore.exe   3964      Internet Explorer   Microsoft Corporation   "C:\Program Files\Internet Explorer\iexplore.exe"
          iexplore.exe   1008      Internet Explorer   Microsoft Corporation   "C:\Program Files\Internet Explorer\iexplore.exe" SCODEF:3964 CREDAT:79889
         procexp.exe   2472      Sysinternals Process Explorer   Sysinternals - www.sysinternals.com   "C:\Documents and Settings\david cox\Local Settings\Temporary Internet Files\Content.IE5\5BDKUUF3\ProcessExplorer[1]\procexp.exe"


        SuperDave

        • Malware Removal Specialist


        • Genius
        • Thanked: 1020
        • Certifications: List
        • Experience: Expert
        • OS: Windows 10
        Re: XP PC Hanging, Freezing
        « Reply #36 on: January 21, 2012, 08:01:47 PM »
        Quote
        svchost.exe   1112      Generic Host Process for Win32 Services   Microsoft Corporation   C:\WINDOWS\system32\svchost.exe -k DcomLaunch
        svchost.exe   1200      Generic Host Process for Win32 Services   Microsoft Corporation   C:\WINDOWS\system32\svchost.exe -k rpcss
        svchost.exe   1848      Generic Host Process for Win32 Services   Microsoft Corporation   C:\WINDOWS\System32\svchost.exe -k netsvcs
        svchost.exe   204      Generic Host Process for Win32 Services   Microsoft Corporation   C:\WINDOWS\System32\svchost.exe -k NetworkService
        svchost.exe   600      Generic Host Process for Win32 Services   Microsoft Corporation   C:\WINDOWS\system32\svchost.exe -k LocalService
        svchost.exe   1644      Generic Host Process for Win32 Services   Microsoft Corporation   C:\WINDOWS\System32\svchost.exe -k LocalService

        As you can see all the svchost.exe are running legit processes. I noticed this is your DDS log.

        Code: [Select]
        1/6/2012 8:48:55 AM, error: Service Control Manager [7001]  - The DHCP Client service depends on the NetBios over Tcpip service which failed to start because of the following error:  A device attached to the system is not functioning.This has occurred a number of times. Could you check your Device Manager to see if there are any yellow alerts? How much RAM do you have?
        Windows 8 and Windows 10 dual boot with two SSD's

        dc4580

          Topic Starter


          Beginner
          • Experience: Beginner
          • OS: Windows XP
          Re: XP PC Hanging, Freezing
          « Reply #37 on: January 21, 2012, 09:18:01 PM »
          448M of RAM.

          Device manager showed Display Adapter in disabled state.  I enabled it.  Checked for more current drivers, but said was current.  I will be going to ati.com later in the morning to see if there is anything out on  their website that would reference hanging or freezing.

          Problem happening occasionally tonight.  Page file usage is up to 1.25 G and climbing.  I will have to get off here soon and reboot.  Let you know tomorrow if I find anything on ati.com. 

          Thanks again for your help.

          dc4580

            Topic Starter


            Beginner
            • Experience: Beginner
            • OS: Windows XP
            Re: XP PC Hanging, Freezing
            « Reply #38 on: January 23, 2012, 09:32:48 AM »
            Ran Driver Detective and found some out-of-date drivers.  I am in the process of completing these updates which I will probably complete when I get home tonight.

            dc4580

              Topic Starter


              Beginner
              • Experience: Beginner
              • OS: Windows XP
              Re: XP PC Hanging, Freezing
              « Reply #39 on: January 24, 2012, 07:51:22 AM »
              Installed the drivers.  The original problem still exists.

              SuperDave

              • Malware Removal Specialist


              • Genius
              • Thanked: 1020
              • Certifications: List
              • Experience: Expert
              • OS: Windows 10
              Re: XP PC Hanging, Freezing
              « Reply #40 on: January 24, 2012, 04:44:38 PM »
              Please try this: While you're operating the computer start the Task Manager and leave it on. CTRL, ALT, Delete will start it. You will notice a small dark green screen in the bottom, right corner of the screen. When the usuage gets close to 100% it will turn a bright green color. That's usually when it will hang. Check the process which is causing the highest usuage. You can toggle between the least and the most by clicking Mem usuage. Please make note of the process. Do this over a period of days and see if it's the same process each time.
              Windows 8 and Windows 10 dual boot with two SSD's

              dc4580

                Topic Starter


                Beginner
                • Experience: Beginner
                • OS: Windows XP
                Re: XP PC Hanging, Freezing
                « Reply #41 on: January 24, 2012, 05:16:42 PM »
                Thanks Dave.  Yes, I have been using Task Manager since the start of this problem. Sometimes, if I start it, the startup of it will cause the PC to un-freeze.  The app that is usually with the most mem usage is IE.  Times I can see Page File usage from this display at over 1 Gig.  Sometimes, the Norton executables will be up high on the mem usage display, usually just under IE.  This is IE 8 by the way.  I will track and see if there are any differences to what I am used to seeing.

                dc4580

                  Topic Starter


                  Beginner
                  • Experience: Beginner
                  • OS: Windows XP
                  Re: XP PC Hanging, Freezing
                  « Reply #42 on: January 27, 2012, 09:09:06 PM »
                  I have been monitoring through Task Manager.  Here's the short list ( no order here ):

                  RTHDCPL.EXE - Realtek
                  IEXPLORE.EXE
                  CCSVCHST.EXE - Norton
                  SVCHOST.EXE
                  WUAUCLT.EXE - Win Update
                  The three searchindex tasks.  I turned off WSEARCH.

                  Do I need to have a Windows Update task running ?

                  I sent an email to Realtek Support regarding their executable.   

                  SuperDave

                  • Malware Removal Specialist


                  • Genius
                  • Thanked: 1020
                  • Certifications: List
                  • Experience: Expert
                  • OS: Windows 10
                  Re: XP PC Hanging, Freezing
                  « Reply #43 on: January 28, 2012, 12:00:25 PM »
                  Quote
                  Do I need to have a Windows Update task running ?
                  Not necessarily but you will have to set yourself a schedule to go and check for your updates.

                  Please download MBRCheck.exe by a_d_13 from one of the links provided below and save it to your desktop.

                  Link 1
                  Link 2
                  Link 3

                  •Double-click on MBRCheck.exe to run it.

                  •It will open a black window...please do not fix anything (if it gives you an option).

                  •When complete, you should see Done! Press ENTER to exit.... Press Enter on the keyboard.

                  •A log named MBRCheck_date_time.txt (i.e. MBRCheck_07.21.10_10.22.51.txt) will appear on the desktop.
                  •Please copy and paste the contents of that log in your next reply.
                  Windows 8 and Windows 10 dual boot with two SSD's

                  dc4580

                    Topic Starter


                    Beginner
                    • Experience: Beginner
                    • OS: Windows XP
                    Re: XP PC Hanging, Freezing
                    « Reply #44 on: January 28, 2012, 07:35:34 PM »
                    MBRCheck, version 1.2.3
                    (c) 2010, AD

                    Command-line:         
                    Windows Version:      Windows XP Professional
                    Windows Information:      Service Pack 3 (build 2600)
                    Logical Drives Mask:      0x0000000c

                    Kernel Drivers (total 142):
                      0x804D7000 \WINDOWS\system32\ntkrnlpa.exe
                      0x806D1000 \WINDOWS\system32\hal.dll
                      0xF7B76000 \WINDOWS\system32\KDCOM.DLL
                      0xF7A86000 \WINDOWS\system32\BOOTVID.dll
                      0xF7547000 ACPI.sys
                      0xF7B78000 \WINDOWS\System32\DRIVERS\WMILIB.SYS
                      0xF7536000 pci.sys
                      0xF7676000 isapnp.sys
                      0xF7C3E000 pciide.sys
                      0xF78F6000 \WINDOWS\System32\DRIVERS\PCIIDEX.SYS
                      0xF7686000 MountMgr.sys
                      0xF7517000 ftdisk.sys
                      0xF7B7A000 dmload.sys
                      0xF74F1000 dmio.sys
                      0xF78FE000 PartMgr.sys
                      0xF7696000 VolSnap.sys
                      0xF74D9000 atapi.sys
                      0xF76A6000 disk.sys
                      0xF76B6000 \WINDOWS\System32\DRIVERS\CLASSPNP.SYS
                      0xF74B9000 fltmgr.sys
                      0xF7462000 SYMDS.SYS
                      0xF7450000 sr.sys
                      0xF7395000 SYMEFA.SYS
                      0xF76C6000 PxHelp20.sys
                      0xF737E000 KSecDD.sys
                      0xF72F1000 Ntfs.sys
                      0xF72C4000 NDIS.sys
                      0xF72AA000 Mup.sys
                      0xF7736000 \SystemRoot\System32\DRIVERS\intelppm.sys
                      0xF4EAC000 \SystemRoot\system32\DRIVERS\ati2mtag.sys
                      0xF4E98000 \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
                      0xF793E000 \SystemRoot\System32\DRIVERS\usbohci.sys
                      0xF4E74000 \SystemRoot\System32\DRIVERS\USBPORT.SYS
                      0xF7946000 \SystemRoot\System32\DRIVERS\usbehci.sys
                      0xF7756000 \SystemRoot\System32\DRIVERS\imapi.sys
                      0xF7766000 \SystemRoot\System32\DRIVERS\cdrom.sys
                      0xF7776000 \SystemRoot\System32\DRIVERS\redbook.sys
                      0xF4E51000 \SystemRoot\System32\DRIVERS\ks.sys
                      0xF795E000 \SystemRoot\system32\DRIVERS\GEARAspiWDM.sys
                      0xF4E29000 \SystemRoot\system32\DRIVERS\HDAudBus.sys
                      0xF7786000 \SystemRoot\System32\DRIVERS\i8042prt.sys
                      0xF796E000 \SystemRoot\System32\DRIVERS\kbdclass.sys
                      0xF797E000 \??\C:\WINDOWS\system32\drivers\VMkbd.sys
                      0xF7986000 \SystemRoot\System32\DRIVERS\mouclass.sys
                      0xF4DF3000 \SystemRoot\system32\DRIVERS\HSFHWBS2.sys
                      0xF4CF5000 \SystemRoot\system32\DRIVERS\HSF_DP.sys
                      0xF4C49000 \SystemRoot\system32\DRIVERS\HSF_CNXT.sys
                      0xF79A6000 \SystemRoot\System32\Drivers\Modem.SYS
                      0xF4C29000 \SystemRoot\system32\DRIVERS\Rtnicxp.sys
                      0xF7D68000 \SystemRoot\System32\DRIVERS\audstub.sys
                      0xF7796000 \SystemRoot\System32\DRIVERS\rasl2tp.sys
                      0xF7B22000 \SystemRoot\System32\DRIVERS\ndistapi.sys
                      0xF4C12000 \SystemRoot\System32\DRIVERS\ndiswan.sys
                      0xF77A6000 \SystemRoot\System32\DRIVERS\raspppoe.sys
                      0xF77B6000 \SystemRoot\System32\DRIVERS\raspptp.sys
                      0xF79CE000 \SystemRoot\System32\DRIVERS\TDI.SYS
                      0xF4C01000 \SystemRoot\System32\DRIVERS\psched.sys
                      0xF77C6000 \SystemRoot\System32\DRIVERS\msgpc.sys
                      0xF79DE000 \SystemRoot\System32\DRIVERS\ptilink.sys
                      0xF79EE000 \SystemRoot\System32\DRIVERS\raspti.sys
                      0xF4B31000 \SystemRoot\System32\DRIVERS\rdpdr.sys
                      0xF77D6000 \SystemRoot\System32\DRIVERS\termdd.sys
                      0xF7B8A000 \SystemRoot\System32\DRIVERS\swenum.sys
                      0xF4AD3000 \SystemRoot\System32\DRIVERS\update.sys
                      0xF7B46000 \SystemRoot\System32\DRIVERS\mssmbios.sys
                      0xF7B4A000 \SystemRoot\system32\DRIVERS\vmnetadapter.sys
                      0xF7B4E000 \SystemRoot\system32\DRIVERS\VMNET.SYS
                      0xF77E6000 \SystemRoot\System32\Drivers\NDProxy.SYS
                      0xF7816000 \SystemRoot\System32\DRIVERS\usbhub.sys
                      0xF7B90000 \SystemRoot\System32\DRIVERS\USBD.SYS
                      0xF037C000 \SystemRoot\system32\drivers\RtkHDAud.sys
                      0xF0330000 \SystemRoot\system32\drivers\portcls.sys
                      0xF7836000 \SystemRoot\system32\drivers\drmk.sys
                      0xF4AC7000 \SystemRoot\System32\Drivers\CLBStor.SYS
                      0xF7B96000 \SystemRoot\System32\Drivers\Fs_Rec.SYS
                      0xF7DBB000 \SystemRoot\System32\Drivers\Null.SYS
                      0xF7B9A000 \SystemRoot\System32\Drivers\Beep.SYS
                      0xF7A6E000 \SystemRoot\System32\drivers\vga.sys
                      0xF7B9E000 \SystemRoot\System32\Drivers\mnmdd.SYS
                      0xF7BA2000 \SystemRoot\System32\DRIVERS\RDPCDD.sys
                      0xF7A7E000 \SystemRoot\System32\Drivers\Msfs.SYS
                      0xF7936000 \SystemRoot\System32\Drivers\Npfs.SYS
                      0xF4ABF000 \SystemRoot\System32\DRIVERS\rasacd.sys
                      0xF02D5000 \SystemRoot\system32\DRIVERS\ipsec.sys
                      0xF027C000 \SystemRoot\System32\DRIVERS\tcpip.sys
                      0xF01FB000 \SystemRoot\system32\drivers\N360\0501000.01D\SYMTDI.SYS
                      0xF01D5000 \SystemRoot\System32\DRIVERS\ipnat.sys
                      0xF7846000 \SystemRoot\System32\DRIVERS\wanarp.sys
                      0xF01AF000 \??\C:\WINDOWS\system32\Drivers\SYMEVENT.SYS
                      0xF0154000 \??\C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\IPSDefs\20120126.003\IDSxpx86.sys
                      0xF012C000 \SystemRoot\System32\DRIVERS\netbt.sys
                      0xF0378000 \SystemRoot\System32\drivers\ws2ifsl.sys
                      0xF010A000 \SystemRoot\System32\drivers\afd.sys
                      0xF7856000 \SystemRoot\System32\DRIVERS\netbios.sys
                      0xF0046000 \SystemRoot\system32\drivers\N360\0501000.01D\Ironx86.SYS
                      0xF7876000 \SystemRoot\system32\drivers\N360\0501000.01D\SRTSPX.SYS
                      0xF0024000 \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
                      0xF798E000 \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
                      0xEFFF9000 \SystemRoot\System32\DRIVERS\rdbss.sys
                      0xEFF89000 \SystemRoot\System32\DRIVERS\mrxsmb.sys
                      0xF7886000 \SystemRoot\System32\Drivers\Fips.SYS
                      0xEFF2B000 \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys
                      0xEFF0D000 \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
                      0xEFEF9000 \SystemRoot\system32\DRIVERS\ctxusbm.sys
                      0xEFE2D000 \??\C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\BASHDefs\20120121.002\BHDrvx86.sys
                      0xF78C6000 \SystemRoot\System32\Drivers\Cdfs.SYS
                      0xEFDB5000 \SystemRoot\System32\Drivers\dump_atapi.sys
                      0xF7BB6000 \SystemRoot\System32\Drivers\dump_WMILIB.SYS
                      0xBF800000 \SystemRoot\System32\win32k.sys
                      0xF7B2A000 \SystemRoot\System32\drivers\Dxapi.sys
                      0xF79C6000 \SystemRoot\System32\watchdog.sys
                      0xBF000000 \SystemRoot\System32\drivers\dxg.sys
                      0xF7D67000 \SystemRoot\System32\drivers\dxgthk.sys
                      0xBF012000 \SystemRoot\System32\ati2dvag.dll
                      0xBF065000 \SystemRoot\System32\ati2cqag.dll
                      0xBF0FE000 \SystemRoot\System32\atikvmag.dll
                      0xBF182000 \SystemRoot\System32\atiok3x2.dll
                      0xBF1CD000 \SystemRoot\System32\ati3duag.dll
                      0xBF572000 \SystemRoot\System32\ativvaxx.dll
                      0xBF9C6000 \SystemRoot\System32\ATMFD.DLL
                      0xED86C000 \SystemRoot\System32\Drivers\CLBUDF.SYS
                      0xED85B000 \SystemRoot\System32\Drivers\Udfs.SYS
                      0xF79FE000 \SystemRoot\system32\DRIVERS\vmnetbridge.sys
                      0xED8AB000 \SystemRoot\System32\DRIVERS\ndisuio.sys
                      0xF7A06000 \SystemRoot\system32\DRIVERS\pnarp.sys
                      0xF7A0E000 \SystemRoot\system32\DRIVERS\purendis.sys
                      0xED526000 \SystemRoot\system32\drivers\wdmaud.sys
                      0xF007A000 \SystemRoot\system32\drivers\sysaudio.sys
                      0xED2C9000 \SystemRoot\System32\DRIVERS\mrxdav.sys
                      0xED37E000 \??\C:\WINDOWS\system32\drivers\hcmon.sys
                      0xED35E000 \??\C:\WINDOWS\system32\Drivers\vmci.sys
                      0xED1FA000 \??\C:\WINDOWS\system32\Drivers\vmx86.sys
                      0xF7A36000 \??\C:\Program Files\ASTRA32\ASTRA32.sys
                      0xECEAA000 \SystemRoot\System32\DRIVERS\srv.sys
                      0xED1B2000 \SystemRoot\system32\DRIVERS\mdmxsdk.sys
                      0xF7A66000 \??\C:\WINDOWS\system32\drivers\vmnetuserif.sys
                      0xECD21000 \??\C:\Program Files\VMware\VMware Player\vstor2-ws60.sys
                      0xEC5D4000 \SystemRoot\system32\drivers\N360\0501000.01D\SRTSP.SYS
                      0xEBF9A000 \??\C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\VirusDefs\20120128.009\NAVEX15.SYS
                      0xEBF86000 \??\C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\VirusDefs\20120128.009\NAVENG.SYS
                      0xEBF5B000 \SystemRoot\system32\drivers\kmixer.sys
                      0x7C900000 \WINDOWS\system32\ntdll.dll

                    Processes (total 42):
                           0 System Idle Process
                           4 System
                         764 C:\WINDOWS\system32\smss.exe
                         812 csrss.exe
                         844 C:\WINDOWS\system32\winlogon.exe
                         888 C:\WINDOWS\system32\services.exe
                         900 C:\WINDOWS\system32\lsass.exe
                        1072 C:\WINDOWS\system32\ati2evxx.exe
                        1092 C:\WINDOWS\system32\svchost.exe
                        1180 svchost.exe
                        1844 C:\WINDOWS\system32\svchost.exe
                         184 C:\WINDOWS\system32\ati2evxx.exe
                         296 svchost.exe
                         620 svchost.exe
                         804 C:\WINDOWS\system32\spoolsv.exe
                        1588 C:\WINDOWS\explorer.exe
                        1780 svchost.exe
                        1904 C:\Program Files\SUPERAntiSpyware\SASCore.exe
                         508 C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe
                         516 C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
                         572 C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe
                         644 C:\Program Files\Roxio\CinePlayer\DMXLauncher.exe
                        1264 C:\Program Files\Citrix\ICA Client\concentr.exe
                        1348 C:\Program Files\Java\jre6\bin\jqs.exe
                        1540 C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
                         316 C:\Program Files\Citrix\ICA Client\wfcrun32.exe
                        1256 C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe
                        2008 C:\WINDOWS\system32\java.exe
                        2012 C:\Program Files\Norton 360\Engine\5.1.0.29\ccSvcHst.exe
                         432 C:\Program Files\Common Files\Java\Java Update\jusched.exe
                         632 C:\WINDOWS\RTHDCPL.EXE
                        1816 C:\Program Files\CyberLink\Shared Files\RichVideo.exe
                        2088 C:\WINDOWS\system32\ctfmon.exe
                        2592 C:\Program Files\Common Files\VMware\USB\vmware-usbarbitrator.exe
                        2780 C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
                        3756 C:\Program Files\VMware\VMware Player\vmware-authd.exe
                        3368 C:\Program Files\Norton 360\Engine\5.1.0.29\ccSvcHst.exe
                        2472 alg.exe
                        1988 C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\CPSHelpRunner10.exe
                        4048 C:\Program Files\Internet Explorer\iexplore.exe
                        3776 C:\Program Files\Internet Explorer\iexplore.exe
                        2352 C:\Documents and Settings\david cox\Desktop\MBRCheck.exe

                    \\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`00007e00  (NTFS)

                    PhysicalDrive0 Model Number: ST3120213AS, Rev: 3.AHL   

                          Size  Device Name          MBR Status
                      --------------------------------------------
                        111 GB  \\.\PhysicalDrive0   Windows XP MBR code detected
                                SHA1: DA38B874B7713D1B51CBC449F4EF809B0DEC644 A


                    Done!