Windows resource protection..halfway solved but stuck

maq1982

New Member
Hello everyone!
Must say I stumbled on this forum by luck. And have to admit this has a mine of information and people here are just so friendly!:D Also to let you guys know, I did read up on how to post for an issue:geek:
I was researching on my laptop for a problem thats been bugging me for sometime. (hp dv4-1114nr laptop, 32xVista home premium).It started all of a sudden while I was browsing. My firefox browser hung up and the vista hourglass (blue circle) was going on and on. I couldn't exit it.The vista hourglass (blue circle) kept on running non stop. Had to shut down using the power button. It started happening the moment I power up my laptop. It goes to the desktop screen and within a few secs it freezes everything i.e. start menu,IE,any program.Had to use safe mode to browse. Then I went into msconfig in safe mode and disabled all the startup services and it didn't freeze after restarting and was working fine. So, I figured my issue is now with the startup programs. I made a note of all the programs and started enabling them 5 at a time. Finally only the Microsoft windows operating system programs were left and one MS Office OneNote. When I enable any of the MS windows OS programs, it freezes within a few minutes of restarting in normal mode. So its definitely these that are causing the problem. Also there is another program in the startup which says manufacturer unknown. Its name is '94593131'. I think this is a virus. I have it left unchecked and unenabled. I'm too scared to delete it from the registry unless I know for sure its a virus. I am now at a roadblock. Dont quite know what to do now. For the moment, I have these 6 unenabled and the system is working fine. But the mute quickstart button is now red. I think if I download the audio drivers it might go away but didn't try it sofar. I had this red button issue a year ago too. I also ran sfc /scannow and got Windows resource protection sayings some files are corrupt and that it couldn't fix it. I saw something about settings.ini in the log file. I read up in a thread what Richard said about how its a non issue. But there is a bunch of other stuff in that file that I couldn't make sense of. I didn't want to trouble you guys unless I couldn't troubleshoot no more. Funny thing is just before I posted this, it froze again even with those 6 programs turned off. I had maybe 11 tabs in mozilla firefox open so don't know whether that is the problem?
Sorry about the long post but after reading the rules, I didn't want to take a risk.
Please find the log file attached from the sfc /scannow cmd.
Any help would be really appreciated very much. I'm having a very hard time figuring this out.
Thanks in advance!
 

My Computer

System One

  • Manufacturer/Model
    HP Pavilion dv4-1114nr Entertainment Notebook PC
    CPU
    Intel Core 2 Duo [email protected] GHz
    Memory
    3 GB
Good day to you, and welcome to the Vista Forums! I hope you enjoy your stay!

Thank you for taking the time to research, post well, and be polite. It makes such a massive difference for us!

Just out of interest, was it me Richard, or the other Richard, anyway, for more information about settings.ini reported in SFC, see here: The SFC.exe command reports Settings.ini file errors in the CBS.log file after you add gadgets to the Windows Vista Sidebar by using the Sysprep tool and an Autounattend.xml file

The only corruption showing is settings.ini, and nothing else, so we can rule that out.

You mentioned about OneNote at one point. As far as I am aware, you do not, and have never believed OneNote to be responsible. Please can you just confirm that enabling OneNote does not immediately break the computer.

Right, onto the main point, the freezing: It could be caused by faulty hardware, and we will check that, but it could also be caused by a virus. We will go down the virus/software issue route first.

Please actually use your computer for a lengthy period of time in Safe Mode, and see whether this problem ever occurs in Safe Mode and report back.

Right, let us check for malware:

mbam.png
Malwarebytes' Anti-Malware a.k.a. MBAM - Download Free Version (freeware) - Homepage
Why? Malwarebytes' Anti-Malware is very good at removing the zlob trojan, virtumonde, and most other current infections. This single tool has replaced multiple tools that have been required in the past.

  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, confirm a check mark is placed next to the following:
    • Update Malwarebytes' Anti-Malware
    • Launch Malwarebytes' Anti-Malware
  • Then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select Perform quick scan, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected.
  • When completed, a log will open in Notepad. The rogue application should now be gone.
When completed, a log will open in Notepad. If you need to create a new topic, please paste this log with it.

Note: Some infections will prevent MBAM from running. If MBAM won't run, try renaming the file mbam-setup.exe to a random name, and then try again.

But the mute quickstart button is now red.
Is this the volume icon, with a red circle over it, with a white cross in the red circle?

Thanks!

Richard

P.S. Here is what I want from you: MBAM report. Safe Mode test result. OneNote quick confirmation. Red icon issue explanation. Age (approximately - in years) of computer. Laptop or Desktop. Thanks!
 

My Computer

System One

  • Manufacturer/Model
    Dell XPS 420
    CPU
    Intel Core 2 Quad Q9300 2.50GHz
    Motherboard
    Stock Dell 0TP406
    Memory
    4 gb (DDR2 800) 400MHz
    Graphics Card(s)
    ATI Radeon HD 3870 (512 MBytes)
    Sound Card
    Onboard
    Monitor(s) Displays
    1 x Dell 2007FP and 1 x (old) Sonic flat screen
    Screen Resolution
    1600 x 1200 and 1280 x 1204
    Hard Drives
    1 x 640Gb (SATA 300)
    Western Digital: WDC WD6400AAKS-75A7B0

    1 x 1Tb (SATA 600)
    Western Digital: Caviar Black, SATA 6GB/S, 64Mb cache, 8ms
    Western Digital: WDC WD1002FAEX-00Z3A0 ATA Device
    PSU
    Stock PSU - 375W
    Case
    Dell XPS 420
    Cooling
    Stock Fan
    Keyboard
    Dell Bluetooth
    Mouse
    Advent Optical ADE-WG01 (colour change light up)
    Internet Speed
    120 kb/s
    Other Info
    ASUS USB 3.0 5Gbps/SATA 6Gbps - PCI-Express Combo Controller Card (U3S6)
Hi Richard,
Thanks so much for your quick reply. The Richard that I was referring to in my last post was you! I did follow up on the steps you mentioned. Just so that it might be easier, I have them listed down one by one.

1) MBAM Report- Please see attached report. It did remove 2 bugs!:D
2) Safe Mode- I have been running this laptop for some days now in safe mode. And I never experienced the freezing in safe mode for extended hours even after leaving it on overnight.
3) I ran (checked it in startup) the OneNote and it doesn't cause any problems.
4)Red Icon- The quick launch volume mute button on the hp laptop I was referring to is the volume button with a circle and a line across the circle. It's now always red instead of blue on the top of the keyboard. When I hit it, it does mute/unmute the volume icon on the desktop tray (bottom right near the time but it stays red. And I cant hear anything when I play audio no matter what the tray volume icon shows. This happened to me last year also when troubleshooting with HP for an audio issue (speakers weren't playing when headset was unplugged but could hear it in the headset if I plugged it back in).They asked me to install I guess the audio drivers and it worked. I will try to find that driver and install it and report back once I do it.

Age- Exactly 2 years
Type-It's a HP dv4-1114nr Laptop.

Some other things I noticed which might/might not help-
-Today when I logged in to another user account, It said something about dll but I dont remember what exactly. Sorry. I got this for the first time.
-It takes alot of time for any of the browsers (chrome, firefox, IE) to open in normal mode now since this issue started. If I double-click them again, my screen fades out (as in I can see the icons on my desktop but the screen is now shaded, I can't click on anything and that vista blue circle keeps circling.
-Also after deleting the 2 bugs when I went back to msconfig startup, that program '94593131' was still there. I didnt restart my sys though after removing the virus though.

Thanks alot Richard for your time and help! Really do appreciate you helping me out!:D:D
 

Attachments

  • mbam-log-2010-11-09 (18-42-52).txt
    1.1 KB · Views: 40

My Computer

System One

  • Manufacturer/Model
    HP Pavilion dv4-1114nr Entertainment Notebook PC
    CPU
    Intel Core 2 Duo [email protected] GHz
    Memory
    3 GB
Hello!

Please re-run MBAM Full Scan now, just to check that those two are actually gone, and to see if there is anything else hiding in less common location. Thanks!
 

My Computer

System One

  • Manufacturer/Model
    Dell XPS 420
    CPU
    Intel Core 2 Quad Q9300 2.50GHz
    Motherboard
    Stock Dell 0TP406
    Memory
    4 gb (DDR2 800) 400MHz
    Graphics Card(s)
    ATI Radeon HD 3870 (512 MBytes)
    Sound Card
    Onboard
    Monitor(s) Displays
    1 x Dell 2007FP and 1 x (old) Sonic flat screen
    Screen Resolution
    1600 x 1200 and 1280 x 1204
    Hard Drives
    1 x 640Gb (SATA 300)
    Western Digital: WDC WD6400AAKS-75A7B0

    1 x 1Tb (SATA 600)
    Western Digital: Caviar Black, SATA 6GB/S, 64Mb cache, 8ms
    Western Digital: WDC WD1002FAEX-00Z3A0 ATA Device
    PSU
    Stock PSU - 375W
    Case
    Dell XPS 420
    Cooling
    Stock Fan
    Keyboard
    Dell Bluetooth
    Mouse
    Advent Optical ADE-WG01 (colour change light up)
    Internet Speed
    120 kb/s
    Other Info
    ASUS USB 3.0 5Gbps/SATA 6Gbps - PCI-Express Combo Controller Card (U3S6)
Hi Richard,
Please find the report attached for the complete scan. It didn't find any bugs so looks like we are in the clear on the virus front.Like I had mentioned in my last post, if I open a program in the normal mode by double clicking and it takes sometime to respond, the moment I double-click it again, the laptop hangs and then I have to do a manual power down to use my laptop again.

Thank you for your time!
 

Attachments

  • mbam-log-2010-11-10 (20-33-02)-2nd report.txt
    921 bytes · Views: 37

My Computer

System One

  • Manufacturer/Model
    HP Pavilion dv4-1114nr Entertainment Notebook PC
    CPU
    Intel Core 2 Duo [email protected] GHz
    Memory
    3 GB
Back
Top