My computer was slowing down and I was getting freeze ups and "not reponding" messages until some days i couldn't use it at all. It was like my whole computer had a demented mind of it's own and everything i tried to do it would block me. Sometimes it would just go crazy. I had a feeling it was a virus of some kind do I started trying to download anti-virus software--I swear it knew! It was like it was doing everything in it's power to block the downloads or if I did get it to download it wouldn't install. Finally I did manage to get one program to work and it did away with nearly 1,000 beagle worms. But the computer was still nuts. So I used spybot and caught several adware and a few spy programs. Hell's lil spy??? The computer was still crazy and I lost my desktop and start menu. Did a system restore, but didn't do any good. I cleaned out my documents, picture files, old programs, and the recycle bin and now the computer is better --it no longer seems crazed and it isn't as slow--but i'm still getting too many "not responding" messages and my desktop and start menu are still gone. It flashes on just before the computer shuts down. The only way I get on is by turning off the computer and if I'm fast enough and lucky enough to click the start menu when it flashes on just before everything shuts down I can get on. How can I get my desktop back? Keep in mind I know very little about technical stuff.
Dani AI
The HijackThis output that posted shows multiple unknown services and DLLs loading from System32 and several Run/RunServices entries — those are classic causes for Explorer to be killed, preventing the desktop and Start menu from remaining visible. Back up personal data before attempting repairs (copy Documents, Desktop, Favorites to an external drive or another PC while the disk is accessible).
Boot diagnostic: restart and choose Safe Mode (press F8). If the desktop and Start menu appear in Safe Mode the problem is almost certainly a startup item or shell extension; if they do not appear, system files or Winlogon settings may be damaged. In Safe Mode try these targeted checks (export the registry key first as a backup):
Reg key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
Shell = explorer.exe
Userinit = C:\WINDOWS\system32\userinit.exe, If either value is different, restore it (export the key first). Use msconfig to disable non‑Microsoft services and all startup items, reboot, then re-enable groups of items to isolate the offender. If the user profile looks corrupted, create a temporary admin account from an elevated prompt:
net user TempAdmin Pa$$w0rd /add
net localgroup Administrators TempAdmin /add Run an offline repair sweep if Explorer crashes or the machine still shuts down: boot to Safe Mode or Recovery Console and run chkdsk /r, then run sfc /scannow from Windows (Windows XP will require the original CD). A repair (in‑place) install of Windows XP is often the fastest way to restore a working Explorer and keep data and programs; as pointed out, a full reinstall is the cleanest last resort when many RunServices/processes are compromised. Always keep a verified backup of personal files before a repair or reinstall, and after recovery run a current, reputable offline scanner (rescue CD) to remove any persistent rootkit/service that caused the problem.
Recommended Answers
Jump to Post— dlh6213 27As bad as your system sounds, I would recommend reinstalling your Operating System.
If you would prefer to try to fix it, follow the suggestions in this thread and let us know what OS you have:
http://www.daniweb.com/techtalkforums/thread5690.htmlGet HijackThis from here:
…
Jump to Post— dlh6213 27Before fixing anything with hijackthis, please move it into it's own permanent folder (like c:\HJT\hijackthis.exe) so it doesn't get deleted and so the backups it will create don't get deleted either. Right now you have it in a Temp folder.
Also, I added a link to my first post …
All 8 Replies
As bad as your system sounds, I would recommend reinstalling your Operating System.
If you would prefer to try to fix it, follow the suggestions in this thread and let us know what OS you have:
http://www.daniweb.com/techtalkforums/thread5690.html
Get HijackThis from here:
Close all browser windows, scan with hijackthis, save the log, copy and paste it here.
Logfile of HijackThis v1.99.1
Scan saved at 9:48:46 AM, on 2/21/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\dcidld.exe
C:\PROGRA~1\EARTHL~1\TaskPanl.exe
C:\WINDOWS\System32\msiexec.exe
C:\WINDOWS\dcidld.exe
C:\WINDOWS\System32\MDN.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\System32\MsiExec.exe
C:\PROGRA~1\Netscape\NETSCA~1\netscp6.exe
C:\WINDOWS\System32\wuauclt.exe
C:\DOCUME~1\D\LOCALS~1\Temp\TEA0EE~1.ZIP\HIJACK~1.EXE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.earthlink.net/partner/more/msie/button/search.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.emachines.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {5D60FF48-95BE-4956-B4C6-6BB168A70310} - (no file)
R3 - URLSearchHook: SrchHook Class - {44F9B173-041C-4825-A9B9-D914BD9DCBB3} - C:\Program Files\EarthLink TotalAccess\ElnIE.dll
N2 - Netscape 6: user_pref("browser.search.defaultengine", "engine://C%3A%5CPROGRA%7E1%5CNETSCAPE%5CNETSCA%7E1%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\D\Application Data\Mozilla\Profiles\default\3jklsu5v.slt\)
O1 - Hosts: search.netscape.com
O1 - Hosts: ar.atwola.com avp.com avp.ru ca.com dispatch.mcafee.com download.mcafee.com download.microsoft.com f-secure.com go.microsoft.com liveupdate.symantec.com mcafee.com msdn.microsoft.com my-etrust.com office.microsoft.com secure.nai.com securityresponse.symantec.com sophos.com support.microsoft.com symantec.com us.mcafee.com windowsupdate.microsoft.com www.avp.com www.avp.ru www.ca.com www.f-secure.com www.kaspersky.ru www.my-etrust.com www.nai.com www.sophos.com www.symantec.com www.trendmicro.com
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - C:\Program Files\Microsoft Money\System\mnyside.dll
O2 - BHO: Setup.Setup1 - {2E65A557-173C-4DE9-860B-28FC5CACA542} - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Setup\Setup.dll
O2 - BHO: Microsoft Configuration - {40205287-E793-41AC-B95C-D8D064BA33CA} - C:\WINDOWS\system32\mscfg.dll
O2 - BHO: EarthLink Popup Blocker - {4B5F2E08-6F39-479a-B547-B2026E4C7EDF} - C:\Program Files\EarthLink TotalAccess\PnEL.dll
O2 - BHO: EarthLink ScamBlocker V2 - {66252F33-BE30-4188-9199-63F2AC8BA137} - C:\Program Files\EarthLink TotalAccess\EScamBlk.dll
O2 - BHO: (no name) - {87766247-311C-43B4-8499-3D5FEC94A183} - C:\PROGRA~1\COMMON~1\WinTools\WToolsB.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll (file missing)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: EarthLink Toolbar - {D7F30B62-8269-41AF-9539-B2697FA7D77E} - C:\Program Files\EarthLink TotalAccess\PnEL.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll (file missing)
O4 - HKLM\..\RunServices: [Microsoft Update Machine] snss.exe
O4 - HKLM\..\RunServices: [Microsoft Virual Machine] sms.exe
O4 - HKLM\..\RunServices: [e[zqbu_wWaPm]qkjuVhWgP] C:\WINDOWS\System32\nabyjl.exe
O4 - HKLM\..\RunServices: [Microsoft Update] sghost.exe
O4 - HKLM\..\RunServices: [MONPluginSrIvcs] n3monap23.exe
O4 - HKLM\..\RunServices: [MSNPluginSrvcs] p6.exe
O4 - HKLM\..\RunServices: [MSNPluginSrIvcs] n3vasap23.exe
O4 - HKLM\..\RunServices: [MDN] MDN.exe
O4 - HKCU\..\Run: [E6TaskPanel] "C:\PROGRA~1\EARTHL~1\TaskPanl.exe" -winstart
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: Web Rebates - file://C:\Program Files\Web_Rebates\Sy1150\Tp1150\scri1150a.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.emachines.com
O16 - DPF: {01CA75F1-054B-4A63-9221-C6926369EC52} (HS_live Control) - http://install.homestead.com/~site/InstallFiles/SIFiles/lpxlive/HS_live.cab
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) - http://www.ipix.com/download/ipixx.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) -
O16 - DPF: {556DDE35-E955-11D0-A707-000000521957} - http://www.xblock.com/download/xclean_micro.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) -
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.
O16 - DPF: {8C6CED34-E352-4ED2-B405-25E121DECBFF} (PreContrl Class) -
O16 - DPF: {A1B09066-C95C-4EF6-8DFD-3DD0AFE610B6} -
O16 - DPF: {BCBC9371-595D-11D4-A96D-00105A1CEF6C} (View22RTE Class) -
O17 - HKLM\System\CCS\Services\Tcpip\..\{9ED02C70-48EE-4CC6-9F35-9900D1D941A0}: NameServer =
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O21 - SSODL: Microsoft DirectXb - {79FEACFF-FFCE-815E-A900-316290B5B738} - C:\WINDOWS\System32\Hieind32.dll
O21 - SSODL: mtklefa - {0526DEED-8BC8-4FEB-508C-0353A339F1ED} - C:\WINDOWS\System32\ehiyj32.dll
O21 - SSODL: mtklef - {01B7BBF0-950F-4EFD-A097-9BD67111B169} - C:\WINDOWS\System32\hatzx32.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: SCA (Service Control Application) - Unknown owner - C:\WINDOWS\System32\SYSTEM.EXE (file missing)
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: xadz - Unknown owner - C:\WINDOWS\dcidld.exe
Before fixing anything with hijackthis, please move it into it's own permanent folder (like c:\HJT\hijackthis.exe) so it doesn't get deleted and so the backups it will create don't get deleted either. Right now you have it in a Temp folder.
Also, I added a link to my first post that I forgot before; please have a look through that.
Before fixing anything with hijackthis, please move it into it's own permanent folder (like c:\HJT\hijackthis.exe) so it doesn't get deleted and so the backups it will create don't get deleted either. Right now you have it in a Temp folder.
Also, I added a link to my first post that I forgot before; please have a look through that.
Ok, it's in it's own folder.
Ok, it's in it's own folder.
Sorry, I should have asked you to post a new log after you moved it, can you do so now please?
You can go ahead and do this now if you like; go to Add/Remove Programs in your Control Panel and remove WebRebates (or something similar).
Then go to C:\Program Files and delete the Web_Rebates folder
New Log
Logfile of HijackThis v1.98.2
Scan saved at 10:34:08 AM, on 2/23/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\dcidld.exe
C:\WINDOWS\dcidld.exe
C:\PROGRA~1\EARTHL~1\TaskPanl.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\system\Svhost.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\System32\taskmgr.exe
C:\WINDOWS\System32\taskmgr.exe
C:\PROGRA~1\Netscape\NETSCA~1\netscp6.exe
C:\DOCUME~1\D\LOCALS~1\Temp\TE8D2F~1.ZIP\HIJACK~1.EXE
C:\DOCUME~1\D\Desktop\HIJACK~1.EXE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.earthlink.net/partner/more/msie/button/search.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.emachines.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {5D60FF48-95BE-4956-B4C6-6BB168A70310} - (no file)
R3 - URLSearchHook: SrchHook Class - {44F9B173-041C-4825-A9B9-D914BD9DCBB3} - C:\Program Files\EarthLink TotalAccess\ElnIE.dll
N2 - Netscape 6: user_pref("browser.search.defaultengine", "engine://C%3A%5CPROGRA%7E1%5CNETSCAPE%5CNETSCA%7E1%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\D\Application Data\Mozilla\Profiles\default\3jklsu5v.slt\)
O1 - Hosts: search.netscape.com
O1 - Hosts: ar.atwola.com avp.com avp.ru ca.com dispatch.mcafee.com download.mcafee.com download.microsoft.com f-secure.com go.microsoft.com liveupdate.symantec.com mcafee.com msdn.microsoft.com my-etrust.com office.microsoft.com secure.nai.com securityresponse.symantec.com sophos.com support.microsoft.com symantec.com us.mcafee.com windowsupdate.microsoft.com www.avp.com www.avp.ru www.ca.com www.f-secure.com www.kaspersky.ru www.my-etrust.com www.nai.com www.sophos.com www.symantec.com www.trendmicro.com
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - C:\Program Files\Microsoft Money\System\mnyside.dll
O2 - BHO: Setup.Setup1 - {2E65A557-173C-4DE9-860B-28FC5CACA542} - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Setup\Setup.dll
O2 - BHO: Microsoft Configuration - {40205287-E793-41AC-B95C-D8D064BA33CA} - C:\WINDOWS\system32\mscfg.dll
O2 - BHO: EarthLink Popup Blocker - {4B5F2E08-6F39-479a-B547-B2026E4C7EDF} - C:\Program Files\EarthLink TotalAccess\PnEL.dll
O2 - BHO: EarthLink ScamBlocker V2 - {66252F33-BE30-4188-9199-63F2AC8BA137} - C:\Program Files\EarthLink TotalAccess\EScamBlk.dll
O2 - BHO: (no name) - {87766247-311C-43B4-8499-3D5FEC94A183} - C:\PROGRA~1\COMMON~1\WinTools\WToolsB.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll (file missing)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: EarthLink Toolbar - {D7F30B62-8269-41AF-9539-B2697FA7D77E} - C:\Program Files\EarthLink TotalAccess\PnEL.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll (file missing)
O4 - HKLM\..\RunServices: [Microsoft Update Machine] snss.exe
O4 - HKLM\..\RunServices: [Microsoft Virual Machine] sms.exe
O4 - HKLM\..\RunServices: [e[zqbu_wWaPm]qkjuVhWgP] C:\WINDOWS\System32\nabyjl.exe
O4 - HKLM\..\RunServices: [Microsoft Update] sghost.exe
O4 - HKLM\..\RunServices: [MONPluginSrIvcs] n3monap23.exe
O4 - HKLM\..\RunServices: [MSNPluginSrvcs] p6.exe
O4 - HKLM\..\RunServices: [MSNPluginSrIvcs] n3vasap23.exe
O4 - HKLM\..\RunServices: [MDN] MDN.exe
O4 - HKLM\..\RunServices: [PPPOEO] pingppac.exe
O4 - HKCU\..\Run: [E6TaskPanel] "C:\PROGRA~1\EARTHL~1\TaskPanl.exe" -winstart
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: Web Rebates - file://C:\Program Files\Web_Rebates\Sy1150\Tp1150\scri1150a.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.emachines.com
O16 - DPF: {01CA75F1-054B-4A63-9221-C6926369EC52} (HS_live Control) - http://install.homestead.com/~site/InstallFiles/SIFiles/lpxlive/HS_live.cab
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) - http://www.ipix.com/download/ipixx.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) -
O16 - DPF: {556DDE35-E955-11D0-A707-000000521957} - http://www.xblock.com/download/xclean_micro.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) -
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.
O16 - DPF: {8C6CED34-E352-4ED2-B405-25E121DECBFF} (PreContrl Class) -
O16 - DPF: {A1B09066-C95C-4EF6-8DFD-3DD0AFE610B6} -
O16 - DPF: {BCBC9371-595D-11D4-A96D-00105A1CEF6C} (View22RTE Class) -
O17 - HKLM\System\CCS\Services\Tcpip\..\{9ED02C70-48EE-4CC6-9F35-9900D1D941A0}: NameServer =
O21 - SSODL: Microsoft DirectXb - {79FEACFF-FFCE-815E-A900-316290B5B738} - C:\WINDOWS\System32\Hieind32.dll
O21 - SSODL: mtklefa - {0526DEED-8BC8-4FEB-508C-0353A339F1ED} - C:\WINDOWS\System32\ehiyj32.dll
O21 - SSODL: mtklef - {01B7BBF0-950F-4EFD-A097-9BD67111B169} - C:\WINDOWS\System32\hatzx32.dll
im having the same problem but i already got rid of the programs that were causing it but i still got pop-ups so i bought norton and it stopped the pop-ups but i still dont have a desktop or a start menu. can it be fixed without reinstalling windows?
i have lost my desktop and start menu,.
early solution is requested please - at this time
We're a friendly, industry-focused community of developers, IT pros, digital marketers, and technology enthusiasts meeting, networking, learning, and sharing knowledge.