a black screen with progressive bar when I turn on the PC

  • Thread starter Thread starter Lucky Luke
  • Start date Start date
L

Lucky Luke

When I press the button to turn on the pc, after the initial screens
(those before bios), the screen goes black and only a
white bar appears at the bottom of the screen.

http://img504.imageshack.us/img504/6569/4545qs2.jpg

This bar grows from left to right. When it arrives at the end (after about
10 minutes), it appears the
Startup screen of Windows XP, the one with the blue bar flowing.

I run the scandisk. It found some mistakes. Then Windows started, but always
with the black screen and the progressive bar ...

I arrested Avast! and then uninstalled it, but without effect.

I tried the "rootkitrevealer". It found about 250 discrepancies, but
when I try to save the report, the program crashes and closes.

The hard drive has about 50% of free space.

Here below, the report of Hijackthis:
_______________________________________________

Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 11.32.32, on 14/10/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\Alwil Software\Avast4\aswUpdSv.exe
C:\Programmi\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\Java\jre1.5.0_12\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Programmi\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
C:\Programmi\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Programmi\Internet Explorer\iexplore.exe
C:\Programmi\Internet Explorer\iexplore.exe
C:\Programmi\Java\jre1.5.0_12\bin\jucheck.exe
C:\WINDOWS\Explorer.EXE
F:\Luca\COMPUTER\Sicurezza PC\HiJackThis_v2.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
Collegamenti
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} -
C:\Programmi\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper -
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat
7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} -
C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -
C:\Programmi\Java\jre1.5.0_12\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - blank (file missing)
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - blank
(file missing)
O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - blank (file
missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} -
C:\Programmi\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE
C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SunJavaUpdateSched]
"C:\Programmi\Java\jre1.5.0_12\bin\jusched.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programmi\Spybot - Search &
Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User
'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-19\..\Run: [NvMediaCenter] RUNDLL32.EXE
C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User
'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User
'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User
'Default user')
O8 - Extra context menu item: E&sporta in Microsoft Excel -
res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:\Programmi\Java\jre1.5.0_12\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:\Programmi\Java\jre1.5.0_12\bin\ssv.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} -
%windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 -
{e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network
Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Umail - {A925929B-C780-49B2-BB1F-F8DE969111AF} -
http://www.umail.it (file missing) (HKCU)
O9 - Extra button: (no name) - {CEC2A0EB-DBA3-4DA2-B551-97793A7148D6} -
C:\WINDOWS\system32\shdocvw.dll (HKCU)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) -
http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} (Microsoft Data Collection
Control) - https://support.microsoft.com/OAS/ActiveX/MSDcode.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient
Class) -
http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) -
http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class)
- http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus
scanner) -
http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} -
http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
http://fotoluca9.spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) -
http://messenger.zone.msn.com/IT-IT/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety
Center Base Module) -
http://scan.safety.live.com/resource/download/scanner/wlscbase5059.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility
Class) -
http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object)
- http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {6E5A37BF-FD42-463A-877C-4EB7002E68AE} (Housecall ActiveX 6.5) -
http://eu-housecall.trendmicro-europe.com/housecall/applet/html/native/x86/win32/activex/hcImpl.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment
1.5.0) - http://javadl-esd.sun.com/update/1.5.0/jinstall-1_5-windows-i586.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient
Class) -
http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer
Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) -
http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) -
http://ax.emsisoft.com/asquared.cab
O16 - DPF: {BE833F39-1E0C-468C-BA70-25AAEE55775E} (System Requirements Lab)
- http://www.systemrequirementslab.com/sysreqlab.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient
Class) -
http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) -
http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0,4769/mcfscan.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software -
C:\Programmi\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Programmi\Alwil
Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Programmi\Alwil
Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Programmi\Alwil
Software\Avast4\ashWebSv.exe
O23 - Service: HREFLDQ - Sysinternals - www.sysinternals.com -
C:\TEMP\HREFLDQ.exe
O23 - Service: JEK - Sysinternals - www.sysinternals.com - C:\TEMP\JEK.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation -
C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 8512 bytes

__________________________________________________________-

--
Lucky Luke
--
Lucky Luke
 
"Lucky Luke" <LuckyLuke@discussions.microsoft.com> wrote in message
news:06380FE1-59FA-4AA1-8672-64E755EE74F7@microsoft.com...
> When I press the button to turn on the pc, after the initial screens
> (those before bios), the screen goes black and only a
> white bar appears at the bottom of the screen.
>
> http://img504.imageshack.us/img504/6569/4545qs2.jpg
>
> This bar grows from left to right. When it arrives at the end (after about
> 10 minutes), it appears the
> Startup screen of Windows XP, the one with the blue bar flowing.
>
> I run the scandisk. It found some mistakes. Then Windows started, but
> always
> with the black screen and the progressive bar ...
>
> I arrested Avast! and then uninstalled it, but without effect.
>
> I tried the "rootkitrevealer". It found about 250 discrepancies, but
> when I try to save the report, the program crashes and closes.
>
> The hard drive has about 50% of free space.
>
> Here below, the report of Hijackthis:
> _______________________________________________
>
> Logfile of Trend Micro HijackThis v2.0.0 (BETA)
> Scan saved at 11.32.32, on 14/10/2007
> Platform: Windows XP SP2 (WinNT 5.01.2600)
> Boot mode: Normal
>
> Running processes:
> C:\WINDOWS\System32\smss.exe
> C:\WINDOWS\system32\winlogon.exe
> C:\WINDOWS\system32\services.exe
> C:\WINDOWS\system32\lsass.exe
> C:\WINDOWS\system32\svchost.exe
> C:\WINDOWS\System32\svchost.exe
> C:\Programmi\Alwil Software\Avast4\aswUpdSv.exe
> C:\Programmi\Alwil Software\Avast4\ashServ.exe
> C:\WINDOWS\Explorer.EXE
> C:\WINDOWS\system32\spoolsv.exe
> C:\WINDOWS\system32\nvsvc32.exe
> C:\WINDOWS\system32\tcpsvcs.exe
> C:\WINDOWS\System32\snmp.exe
> C:\WINDOWS\System32\svchost.exe
> C:\Programmi\Java\jre1.5.0_12\bin\jusched.exe
> C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
> C:\Programmi\Alwil Software\Avast4\ashMaiSv.exe
> C:\WINDOWS\system32\ctfmon.exe
> C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
> C:\Programmi\Alwil Software\Avast4\ashWebSv.exe
> C:\WINDOWS\system32\wuauclt.exe
> C:\Programmi\Internet Explorer\iexplore.exe
> C:\Programmi\Internet Explorer\iexplore.exe
> C:\Programmi\Java\jre1.5.0_12\bin\jucheck.exe
> C:\WINDOWS\Explorer.EXE
> F:\Luca\COMPUTER\Sicurezza PC\HiJackThis_v2.exe
>
> R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
> http://www.google.it/
> R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
> http://go.microsoft.com/fwlink/?LinkId=69157
> R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
> http://go.microsoft.com/fwlink/?LinkId=54896
> R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
> http://go.microsoft.com/fwlink/?LinkId=54896
> R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
> http://go.microsoft.com/fwlink/?LinkId=69157
> R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
> Collegamenti
> O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} -
> C:\Programmi\Yahoo!\Companion\Installs\cpn0\yt.dll
> O2 - BHO: Adobe PDF Reader Link Helper -
> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat
> 7.0\ActiveX\AcroIEHelper.dll
> O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} -
> C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
> O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -
> C:\Programmi\Java\jre1.5.0_12\bin\ssv.dll
> O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
> O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - blank (file
> missing)
> O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - blank
> (file missing)
> O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
> O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - blank (file
> missing)
> O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} -
> C:\Programmi\Yahoo!\Companion\Installs\cpn0\yt.dll
> O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE
> C:\WINDOWS\system32\NvCpl.dll,NvStartup
> O4 - HKLM\..\Run: [SunJavaUpdateSched]
> "C:\Programmi\Java\jre1.5.0_12\bin\jusched.exe"
> O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
> O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
> O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
> O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programmi\Spybot - Search &
> Destroy\TeaTimer.exe
> O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE
> (User
> 'SERVIZIO LOCALE')
> O4 - HKUS\S-1-5-19\..\Run: [NvMediaCenter] RUNDLL32.EXE
> C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit (User 'SERVIZIO LOCALE')
> O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE
> (User
> 'SERVIZIO DI RETE')
> O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE
> (User
> 'SYSTEM')
> O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE
> (User
> 'Default user')
> O8 - Extra context menu item: E&sporta in Microsoft Excel -
> res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
> O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
> C:\Programmi\Java\jre1.5.0_12\bin\ssv.dll
> O9 - Extra 'Tools' menuitem: Sun Java Console -
> {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
> C:\Programmi\Java\jre1.5.0_12\bin\ssv.dll
> O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} -
> %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
> O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 -
> {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network
> Diagnostic\xpnetdiag.exe (file missing)
> O9 - Extra button: Umail - {A925929B-C780-49B2-BB1F-F8DE969111AF} -
> http://www.umail.it (file missing) (HKCU)
> O9 - Extra button: (no name) - {CEC2A0EB-DBA3-4DA2-B551-97793A7148D6} -
> C:\WINDOWS\system32\shdocvw.dll (HKCU)
> O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) -
> http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
> O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} (Microsoft Data
> Collection
> Control) - https://support.microsoft.com/OAS/ActiveX/MSDcode.cab
> O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient
> Class) -
> http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
> O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) -
> http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
> O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags
> Class)
> - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
> O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus
> scanner) -
> http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
> O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} -
> http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
> O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload
> Tool) -
> http://fotoluca9.spaces.msn.com//PhotoUpload/MsnPUpld.cab
> O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) -
> http://messenger.zone.msn.com/IT-IT/a-UNO1/GAME_UNO1.cab
> O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety
> Center Base Module) -
> http://scan.safety.live.com/resource/download/scanner/wlscbase5059.cab
> O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility
> Class) -
> http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
> O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin
> Object)
> - http://download.divx.com/player/DivXBrowserPlugin.cab
> O16 - DPF: {6E5A37BF-FD42-463A-877C-4EB7002E68AE} (Housecall ActiveX
> 6.5) -
> http://eu-housecall.trendmicro-europe.com/housecall/applet/html/native/x86/win32/activex/hcImpl.cab
> O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime
> Environment
> 1.5.0) -
> http://javadl-esd.sun.com/update/1.5.0/jinstall-1_5-windows-i586.cab
> O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient
> Class) -
> http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
> O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer
> Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
> O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) -
> http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
> O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) -
> http://ax.emsisoft.com/asquared.cab
> O16 - DPF: {BE833F39-1E0C-468C-BA70-25AAEE55775E} (System Requirements
> Lab)
> - http://www.systemrequirementslab.com/sysreqlab.cab
> O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient
> Class) -
> http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
> O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash
> Object) -
> http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
> O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) -
> http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0,4769/mcfscan.cab
> O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software -
> C:\Programmi\Alwil Software\Avast4\aswUpdSv.exe
> O23 - Service: avast! Antivirus - ALWIL Software - C:\Programmi\Alwil
> Software\Avast4\ashServ.exe
> O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Programmi\Alwil
> Software\Avast4\ashMaiSv.exe
> O23 - Service: avast! Web Scanner - ALWIL Software - C:\Programmi\Alwil
> Software\Avast4\ashWebSv.exe
> O23 - Service: HREFLDQ - Sysinternals - www.sysinternals.com -
> C:\TEMP\HREFLDQ.exe
> O23 - Service: JEK - Sysinternals - www.sysinternals.com - C:\TEMP\JEK.exe
> O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA
> Corporation -
> C:\WINDOWS\system32\nvsvc32.exe
>
> --
> End of file - 8512 bytes
>
> __________________________________________________________-


The bar is normal in Windows XP. Though often it's so quick you hardly
notice it. If it's really slow it probably means the hard disk you are
booting from is failing.

--

Brian Gregory. (In the UK)
ng@bgdsv.co.uk
To email me remove the letter vee.
 
Thank you for your reply.
Do you suggest me to format the hard disk? Or should I simply replace it??
--
Lucky Luke


"Brian Gregory [UK]" wrote:

> "Lucky Luke" <LuckyLuke@discussions.microsoft.com> wrote in message
> news:06380FE1-59FA-4AA1-8672-64E755EE74F7@microsoft.com...
> > When I press the button to turn on the pc, after the initial screens
> > (those before bios), the screen goes black and only a
> > white bar appears at the bottom of the screen.
> >
> > http://img504.imageshack.us/img504/6569/4545qs2.jpg
> >
> > This bar grows from left to right. When it arrives at the end (after about
> > 10 minutes), it appears the
> > Startup screen of Windows XP, the one with the blue bar flowing.
> >
> > I run the scandisk. It found some mistakes. Then Windows started, but
> > always
> > with the black screen and the progressive bar ...
> >
> > I arrested Avast! and then uninstalled it, but without effect.
> >
> > I tried the "rootkitrevealer". It found about 250 discrepancies, but
> > when I try to save the report, the program crashes and closes.
> >
> > The hard drive has about 50% of free space.
> >
> > Here below, the report of Hijackthis:
> > _______________________________________________
> >
> > Logfile of Trend Micro HijackThis v2.0.0 (BETA)
> > Scan saved at 11.32.32, on 14/10/2007
> > Platform: Windows XP SP2 (WinNT 5.01.2600)
> > Boot mode: Normal
> >
> > Running processes:
> > C:\WINDOWS\System32\smss.exe
> > C:\WINDOWS\system32\winlogon.exe
> > C:\WINDOWS\system32\services.exe
> > C:\WINDOWS\system32\lsass.exe
> > C:\WINDOWS\system32\svchost.exe
> > C:\WINDOWS\System32\svchost.exe
> > C:\Programmi\Alwil Software\Avast4\aswUpdSv.exe
> > C:\Programmi\Alwil Software\Avast4\ashServ.exe
> > C:\WINDOWS\Explorer.EXE
> > C:\WINDOWS\system32\spoolsv.exe
> > C:\WINDOWS\system32\nvsvc32.exe
> > C:\WINDOWS\system32\tcpsvcs.exe
> > C:\WINDOWS\System32\snmp.exe
> > C:\WINDOWS\System32\svchost.exe
> > C:\Programmi\Java\jre1.5.0_12\bin\jusched.exe
> > C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
> > C:\Programmi\Alwil Software\Avast4\ashMaiSv.exe
> > C:\WINDOWS\system32\ctfmon.exe
> > C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
> > C:\Programmi\Alwil Software\Avast4\ashWebSv.exe
> > C:\WINDOWS\system32\wuauclt.exe
> > C:\Programmi\Internet Explorer\iexplore.exe
> > C:\Programmi\Internet Explorer\iexplore.exe
> > C:\Programmi\Java\jre1.5.0_12\bin\jucheck.exe
> > C:\WINDOWS\Explorer.EXE
> > F:\Luca\COMPUTER\Sicurezza PC\HiJackThis_v2.exe
> >
> > R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
> > http://www.google.it/
> > R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
> > http://go.microsoft.com/fwlink/?LinkId=69157
> > R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
> > http://go.microsoft.com/fwlink/?LinkId=54896
> > R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
> > http://go.microsoft.com/fwlink/?LinkId=54896
> > R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
> > http://go.microsoft.com/fwlink/?LinkId=69157
> > R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
> > Collegamenti
> > O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} -
> > C:\Programmi\Yahoo!\Companion\Installs\cpn0\yt.dll
> > O2 - BHO: Adobe PDF Reader Link Helper -
> > {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat
> > 7.0\ActiveX\AcroIEHelper.dll
> > O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} -
> > C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
> > O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -
> > C:\Programmi\Java\jre1.5.0_12\bin\ssv.dll
> > O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
> > O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - blank (file
> > missing)
> > O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - blank
> > (file missing)
> > O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
> > O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - blank (file
> > missing)
> > O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} -
> > C:\Programmi\Yahoo!\Companion\Installs\cpn0\yt.dll
> > O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE
> > C:\WINDOWS\system32\NvCpl.dll,NvStartup
> > O4 - HKLM\..\Run: [SunJavaUpdateSched]
> > "C:\Programmi\Java\jre1.5.0_12\bin\jusched.exe"
> > O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
> > O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
> > O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
> > O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programmi\Spybot - Search &
> > Destroy\TeaTimer.exe
> > O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE
> > (User
> > 'SERVIZIO LOCALE')
> > O4 - HKUS\S-1-5-19\..\Run: [NvMediaCenter] RUNDLL32.EXE
> > C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit (User 'SERVIZIO LOCALE')
> > O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE
> > (User
> > 'SERVIZIO DI RETE')
> > O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE
> > (User
> > 'SYSTEM')
> > O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE
> > (User
> > 'Default user')
> > O8 - Extra context menu item: E&sporta in Microsoft Excel -
> > res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
> > O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
> > C:\Programmi\Java\jre1.5.0_12\bin\ssv.dll
> > O9 - Extra 'Tools' menuitem: Sun Java Console -
> > {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
> > C:\Programmi\Java\jre1.5.0_12\bin\ssv.dll
> > O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} -
> > %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
> > O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 -
> > {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network
> > Diagnostic\xpnetdiag.exe (file missing)
> > O9 - Extra button: Umail - {A925929B-C780-49B2-BB1F-F8DE969111AF} -
> > http://www.umail.it (file missing) (HKCU)
> > O9 - Extra button: (no name) - {CEC2A0EB-DBA3-4DA2-B551-97793A7148D6} -
> > C:\WINDOWS\system32\shdocvw.dll (HKCU)
> > O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) -
> > http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
> > O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} (Microsoft Data
> > Collection
> > Control) - https://support.microsoft.com/OAS/ActiveX/MSDcode.cab
> > O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient
> > Class) -
> > http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
> > O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) -
> > http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
> > O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags
> > Class)
> > - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
> > O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus
> > scanner) -
> > http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
> > O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} -
> > http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
> > O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload
> > Tool) -
> > http://fotoluca9.spaces.msn.com//PhotoUpload/MsnPUpld.cab
> > O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) -
> > http://messenger.zone.msn.com/IT-IT/a-UNO1/GAME_UNO1.cab
> > O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety
> > Center Base Module) -
> > http://scan.safety.live.com/resource/download/scanner/wlscbase5059.cab
> > O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility
> > Class) -
> > http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
> > O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin
> > Object)
> > - http://download.divx.com/player/DivXBrowserPlugin.cab
> > O16 - DPF: {6E5A37BF-FD42-463A-877C-4EB7002E68AE} (Housecall ActiveX
> > 6.5) -
> > http://eu-housecall.trendmicro-europe.com/housecall/applet/html/native/x86/win32/activex/hcImpl.cab
> > O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime
> > Environment
> > 1.5.0) -
> > http://javadl-esd.sun.com/update/1.5.0/jinstall-1_5-windows-i586.cab
> > O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient
> > Class) -
> > http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
> > O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer
> > Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
> > O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) -
> > http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
> > O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) -
> > http://ax.emsisoft.com/asquared.cab
> > O16 - DPF: {BE833F39-1E0C-468C-BA70-25AAEE55775E} (System Requirements
> > Lab)
> > - http://www.systemrequirementslab.com/sysreqlab.cab
> > O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient
> > Class) -
> > http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
> > O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash
> > Object) -
> > http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
> > O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) -
> > http://download.mcafee.com/molbin/iss-loc/mcfscan/2,1,0,4769/mcfscan.cab
> > O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software -
> > C:\Programmi\Alwil Software\Avast4\aswUpdSv.exe
> > O23 - Service: avast! Antivirus - ALWIL Software - C:\Programmi\Alwil
> > Software\Avast4\ashServ.exe
> > O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Programmi\Alwil
> > Software\Avast4\ashMaiSv.exe
> > O23 - Service: avast! Web Scanner - ALWIL Software - C:\Programmi\Alwil
> > Software\Avast4\ashWebSv.exe
> > O23 - Service: HREFLDQ - Sysinternals - www.sysinternals.com -
> > C:\TEMP\HREFLDQ.exe
> > O23 - Service: JEK - Sysinternals - www.sysinternals.com - C:\TEMP\JEK.exe
> > O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA
> > Corporation -
> > C:\WINDOWS\system32\nvsvc32.exe
> >
> > --
> > End of file - 8512 bytes
> >
> > __________________________________________________________-

>
> The bar is normal in Windows XP. Though often it's so quick you hardly
> notice it. If it's really slow it probably means the hard disk you are
> booting from is failing.
>
> --
>
> Brian Gregory. (In the UK)
> ng@bgdsv.co.uk
> To email me remove the letter vee.
>
>
>
 
"Lucky Luke" <LuckyLuke@discussions.microsoft.com> wrote in message
news:F0DF8070-B556-478F-9704-A6B9C784CB4E@microsoft.com...
> Thank you for your reply.
> Do you suggest me to format the hard disk? Or should I simply replace it??


I think it probably needs to be replaced.

--

Brian Gregory. (In the UK)
ng@bgdsv.co.uk
To email me remove the letter vee.
 
Back
Top