Comper is slowing down and system 32 folder opens at bootup
anonymous_at_discussions.microsoft.com
Date: 06/08/04
- Next message: Carey Frisch [MVP]: "Re: Making folders private?"
- Previous message: Jeff: "Making folders private?"
- In reply to: Mary: "Comper is slowing down and system 32 folder opens at bootup"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Tue, 8 Jun 2004 10:22:16 -0700
Could it be in the autoexec or startup routine. if you
type -> msconfig at your run in the start menu
(command promt) then you will be able to see your boot
options.
If you would like continued discusion to resolve this feel
open to email me at w_ashley@sympatico.ca
>-----Original Message-----
>When I start Windows XP the system folder pops up. I
>downloaded Kelly's Korner #260 but I get the message "the
>script cannot repair your issue, the expected registery
>value was not found." I also tried 170086 from Microsoft
>and followed the instructions, but can't find any
>values with single quotes. I have Norton Internet
>Security 2004/NAV, Ad-Aware and run Spybot Search and
>Destroy daily. HELP!!! See registry and start up items
>below:
>
>
>-- Registry --
>HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersi
>on\RunOnce
>
>No Items Found
>
>-- Registry --
>HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersi
>on\Run
>
>} el c:\WINDOWS\System32\} else {
>window.onload = SymOnL c:\WINDOWS\System32
>\window.onload = SymOnLoad;
>var SymRealOnUnl c:\WINDOWS\System32\var
>SymRealOnUnload;
>var SymRealOnL c:\WINDOWS\System32\var
>SymRealOnLoad;
>URLLSTCK.exe C:\Program Files\Norton
>Internet Security Professional\UrlLstCk.exe
>SymRealOnLoad = window.onl c:\WINDOWS\System32
>\SymRealOnLoad = window.onload;
>Recguard
>C:\WINDOWS\SMINST\RECGUARD.EXE
>QuickTime Task "C:\Program
>Files\QuickTime\qttask.exe" -atboottime
>PS2 C:\WINDOWS\system32\ps2.exe
>nwiz nwiz.exe /install
>NvCplDaemon RUNDLL32.EXE
>C:\WINDOWS\System32\NvCpl.dll,NvStartup
>IgfxTray C:\WINDOWS\System32
>\igfxtray.exe
>if (screen.widt c:\WINDOWS\System32\if
>(screen.width) {
>if (location.hos c:\WINDOWS\System32\if
>(location.host) {
>hpsysdrv
>c:\windows\system\hpsysdrv.exe
>HotKeysCmds C:\WINDOWS\System32
>\hkcmd.exe
>function SymWinOpen(url, name,c:\WINDOWS\System32
>\function SymWinOpen(url, name, attributes)
>ccApp "C:\Program Files\Common
>Files\Symantec Shared\ccApp.exe"
>Advanced Tools Check C:\PROGRA~1\NORTON~2
>\NORTON~1\AdvTools\ADVCHK.EXE
>window.open = SymWinO
>window.onunload = SymOnUnl
>return t
>return (new Object
>if(SymRealOnUnload != n
>SymRealOnUnloa
>NvMediaCenter RUNDLL32.EXE
>C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
>
>-- Registry --
>HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersio
>n\RunOnce
>
>No Items Found
>
>-- Start Menu - Current User --
>CorelCENTRAL Alarms.LNK
>
>-- Start Menu - All Users --
>Corel Registration.lnk
>NkvMon.exe.lnk
>Norton System Doctor.lnk
>
>-- Disabled Items --
>winnet
>
>-- Registry - Shell Value -
>HKLM\SOFTWARE\Microsoft\Windows
>NT\CurrentVersion\Winlogon --
> May indicate virus-like activity
>
>-- Running Processes --
>System Idle Process
>System
>smss.exe \SystemRoot\System32\smss.exe
>csrss.exe
>winlogon.exe winlogon.exe
>services.exe C:\WINDOWS\system32\services.exe
>lsass.exe C:\WINDOWS\system32\lsass.exe
>svchost.exe C:\WINDOWS\system32\svchost -k rpcss
>svchost.exe C:\WINDOWS\System32\svchost.exe -k
>netsvcs
>svchost.exe
>svchost.exe
>CCSETMGR.EXE "C:\Program Files\Common
>Files\Symantec Shared\ccSetMgr.exe"
>CCEVTMGR.EXE "C:\Program Files\Common
>Files\Symantec Shared\ccEvtMgr.exe"
>spoolsv.exe C:\WINDOWS\system32\spoolsv.exe
>explorer.exe C:\WINDOWS\Explorer.EXE
>alg.exe
>CDAC11BA.EXE C:\WINDOWS\System32
>\drivers\CDAC11BA.EXE
>CCPROXY.EXE "C:\Program Files\Common
>Files\Symantec Shared\ccProxy.exe"
>cisvc.exe C:\WINDOWS\System32\cisvc.exe
>NAVAPSVC.EXE "C:\Program Files\Norton Internet
>Security Professional\Norton AntiVirus\navapsvc.exe"
>qttask.exe "C:\Program
>Files\QuickTime\qttask.exe" -atboottime
>ps2.EXE "C:\WINDOWS\system32\ps2.exe"
>hpsysdrv.exe "C:\windows\system\hpsysdrv.exe"
>CCAPP.EXE "C:\Program Files\Common
>Files\Symantec Shared\ccApp.exe"
>NPROTECT.EXE "C:\Program Files\Norton
>Utilities\NPROTECT.EXE"
>nvsvc32.exe C:\WINDOWS\System32\nvsvc32.exe
>SAVSCAN.EXE "C:\Program Files\Norton Internet
>Security Professional\Norton AntiVirus\SAVScan.exe"
>tcpsvcs.exe C:\WINDOWS\System32\tcpsvcs.exe
>snmp.exe C:\WINDOWS\System32\snmp.exe
>NOPDB.EXE "C:\Program Files\Speed
>Disk\nopdb.exe"
>symlcsvc.exe "C:\Program Files\Common
>Files\Symantec Shared\CCPD-LC\symlcsvc.exe"
>msmsgs.exe "C:\Program
>Files\Messenger\msmsgs.exe" -Embedding
>ctfmon.exe "C:\WINDOWS\System32\ctfmon.exe"
>PCHButton.exe "C:\PROGRA~1\HPINST~1
>\plugin\bin\PCHButton.exe"
>Remind32.exe "C:\Program Files\Corel\WordPerfect
>Office 2000\Register\Remind32.exe"
>NkvMon.exe "C:\Program Files\Nikon\NkView6
>\NkvMon.exe"
>SYSDOC32.EXE "C:\Program Files\Norton
>Utilities\SYSDOC32.EXE" /STARTUP
>alarm.exe "C:\Program Files\Corel\WordPerfect
>Office 2000\programs\alarm.exe"
>svchost.exe C:\WINDOWS\System32\svchost.exe -k
>imgsvc
>SpybotSD.exe "C:\Program Files\Spybot - Search &
>Destroy\SpybotSD.exe"
>iexplore.exe "C:\Program Files\Internet
>Explorer\iexplore.exe"
>cidaemon.exe cidaemon.exe
>DownLevelDaemon "c:\system volume
>information\catalog.wci" 196672l 700l
>StartupTracker3.exe "C:\Documents and
>Settings\Owner\Local Settings\Temp\Temporary Directory 1
>for StartupTracker3.zip\StartupTracker3.exe"
>wmiprvse.exe
>
>-- Running Services --
>
>Name: ALG
>Description: Provides support for 3rd party protocol plug-
>ins for Internet Connection Sharing and the Internet
>Connection Firewall
>Startup Mode: Manual
>Run from: C:\WINDOWS\System32\alg.exe
>
>Name: AudioSrv
>Description: Manages audio devices for Windows-based
>programs. If this service is stopped, audio devices and
>effects will not function properly. If this service is
>disabled, any services that explicitly depend on it will
>fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: Browser
>Description: Maintains an updated list of computers on
>the network and supplies this list to computers
>designated as browsers. If this service is stopped, this
>list will not be updated or maintained. If this service
>is disabled, any services that explicitly depend on it
>will fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: C-DillaCdaC11BA
>Description:
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\drivers\CDAC11BA.EXE
>
>Name: ccEvtMgr
>Description: Symantec Event Manager
>Startup Mode: Auto
>Run from: "C:\Program Files\Common Files\Symantec
>Shared\ccEvtMgr.exe"
>
>Name: ccProxy
>Description: Symantec Network Proxy Service
>Startup Mode: Auto
>Run from: "C:\Program Files\Common Files\Symantec
>Shared\ccProxy.exe"
>
>Name: ccSetMgr
>Description: Symantec Settings Manager
>Startup Mode: Auto
>Run from: "C:\Program Files\Common Files\Symantec
>Shared\ccSetMgr.exe"
>
>Name: cisvc
>Description: Indexes contents and properties of files on
>local and remote computers; provides rapid access to
>files through flexible querying language.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\cisvc.exe
>
>Name: CryptSvc
>Description: Provides three management services: Catalog
>Database Service, which confirms the signatures of
>Windows files; Protected Root Service, which adds and
>removes Trusted Root Certification Authority certificates
>from this computer; and Key Service, which helps enroll
>this computer for certificates. If this service is
>stopped, these management services will not function
>properly. If this service is disabled, any services that
>explicitly depend on it will fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\system32\svchost.exe -k netsvcs
>
>Name: Dhcp
>Description: Manages network configuration by registering
>and updating IP addresses and DNS names.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: Dnscache
>Description: Resolves and caches Domain Name System (DNS)
>names for this computer. If this service is stopped, this
>computer will not be able to resolve DNS names and locate
>Active Directory domain controllers. If this service is
>disabled, any services that explicitly depend on it will
>fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k
>NetworkService
>
>Name: ERSvc
>Description: Allows error reporting for services and
>applictions running in non-standard environments.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: Eventlog
>Description: Enables event log messages issued by Windows-
>based programs and components to be viewed in Event
>Viewer. This service cannot be stopped.
>Startup Mode: Auto
>Run from: C:\WINDOWS\system32\services.exe
>
>Name: EventSystem
>Description: Supports System Event Notification Service
>(SENS), which provides automatic distribution of events
>to subscribing Component Object Model (COM) components.
>If the service is stopped, SENS will close and will not
>be able to provide logon and logoff notifications. If
>this service is disabled, any services that explicitly
>depend on it will fail to start.
>Startup Mode: Manual
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: FastUserSwitchingCompatibility
>Description: Provides management for applications that
>require assistance in a multiple user environment.
>Startup Mode: Manual
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: helpsvc
>Description: Enables Help and Support Center to run on
>this computer. If this service is stopped, Help and
>Support Center will be unavailable. If this service is
>disabled, any services that explicitly depend on it will
>fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: HidServ
>Description: Enables generic input access to Human
>Interface Devices (HID), which activates and maintains
>the use of predefined hot buttons on keyboards, remote
>controls, and other multimedia devices. If this service
>is stopped, hot buttons controlled by this service will
>no longer function. If this service is disabled, any
>services that explicitly depend on it will fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: Iprip
>Description: Listens for route updates sent by routers
>that use the Routing Information Protocol version 1
>(RIPv1).
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: lanmanserver
>Description: Supports file, print, and named-pipe sharing
>over the network for this computer. If this service is
>stopped, these functions will be unavailable. If this
>service is disabled, any services that explicitly depend
>on it will fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: lanmanworkstation
>Description: Creates and maintains client network
>connections to remote servers. If this service is
>stopped, these connections will be unavailable. If this
>service is disabled, any services that explicitly depend
>on it will fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: LmHosts
>Description: Enables support for NetBIOS over TCP/IP
>(NetBT) service and NetBIOS name resolution.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k LocalService
>
>Name: navapsvc
>Description: Handles Norton AntiVirus Auto-Protect events.
>Startup Mode: Auto
>Run from: "C:\Program Files\Norton Internet Security
>Professional\Norton AntiVirus\navapsvc.exe"
>
>Name: Netman
>Description: Manages objects in the Network and Dial-Up
>Connections folder, in which you can view both local area
>network and remote connections.
>Startup Mode: Manual
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: Nla
>Description: Collects and stores network configuration
>and location information, and notifies applications when
>this information changes.
>Startup Mode: Manual
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: NProtectService
>Description:
>Startup Mode: Auto
>Run from: C:\Program Files\Norton Utilities\NPROTECT.EXE
>
>Name: NVSvc
>Description: Provides system and desktop level support to
>the NVIDIA display driver
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\nvsvc32.exe
>
>Name: PlugPlay
>Description: Enables a computer to recognize and adapt to
>hardware changes with little or no user input. Stopping
>or disabling this service will result in system
>instability.
>Startup Mode: Auto
>Run from: C:\WINDOWS\system32\services.exe
>
>Name: PolicyAgent
>Description: Manages IP security policy and starts the
>ISAKMP/Oakley (IKE) and the IP security driver.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\lsass.exe
>
>Name: ProtectedStorage
>Description: Provides protected storage for sensitive
>data, such as private keys, to prevent access by
>unauthorized services, processes, or users.
>Startup Mode: Auto
>Run from: C:\WINDOWS\system32\lsass.exe
>
>Name: RasMan
>Description: Creates a network connection.
>Startup Mode: Manual
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: RpcSs
>Description: Provides the endpoint mapper and other
>miscellaneous RPC services.
>Startup Mode: Auto
>Run from: C:\WINDOWS\system32\svchost -k rpcss
>
>Name: SamSs
>Description: Stores security information for local user
>accounts.
>Startup Mode: Auto
>Run from: C:\WINDOWS\system32\lsass.exe
>
>Name: SAVScan
>Description: Handles Norton AntiVirus Auto-Protect
>Archive Scanning
>Startup Mode: Auto
>Run from: C:\Program Files\Norton Internet Security
>Professional\Norton AntiVirus\SAVScan.exe
>
>Name: Schedule
>Description: Enables a user to configure and schedule
>automated tasks on this computer. If this service is
>stopped, these tasks will not be run at their scheduled
>times. If this service is disabled, any services that
>explicitly depend on it will fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: seclogon
>Description: Enables starting processes under alternate
>credentials. If this service is stopped, this type of
>logon access will be unavailable. If this service is
>disabled, any services that explicitly depend on it will
>fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: SENS
>Description: Tracks system events such as Windows logon,
>network, and power events. Notifies COM+ Event System
>subscribers of these events.
>Startup Mode: Auto
>Run from: C:\WINDOWS\system32\svchost.exe -k netsvcs
>
>Name: SharedAccess
>Description: Provides network address translation,
>addressing, name resolution and/or intrusion prevention
>services for a home or small office network.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: ShellHWDetection
>Description:
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: SimpTcp
>Description: Supports the following TCP/IP services:
>Character Generator, Daytime, Discard, Echo, and Quote of
>the Day.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\tcpsvcs.exe
>
>Name: SNMP
>Description: Includes agents that monitor the activity in
>network devices and report to the network console
>workstation.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\snmp.exe
>
>Name: Speed Disk service
>Description:
>Startup Mode: Auto
>Run from: C:\Program Files\Speed Disk\nopdb.exe
>
>Name: Spooler
>Description: Loads files to memory for later printing.
>Startup Mode: Auto
>Run from: C:\WINDOWS\system32\spoolsv.exe
>
>Name: srservice
>Description: Performs system restore functions. To stop
>service, turn off System Restore from the System Restore
>tab in My Computer->Properties
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: SSDPSRV
>Description: Enables discovery of UPnP devices on your
>home network.
>Startup Mode: Manual
>Run from: C:\WINDOWS\System32\svchost.exe -k LocalService
>
>Name: stisvc
>Description: Provides image acquisition services for
>scanners and cameras.
>Startup Mode: Manual
>Run from: C:\WINDOWS\System32\svchost.exe -k imgsvc
>
>Name: Symantec Core LC
>Description: Symantec Core LC
>Startup Mode: Auto
>Run from: C:\Program Files\Common Files\Symantec
>Shared\CCPD-LC\symlcsvc.exe
>
>Name: TapiSrv
>Description: Provides Telephony API (TAPI) support for
>programs that control telephony devices and IP based
>voice connections on the local computer and, through the
>LAN, on servers that are also running the service.
>Startup Mode: Manual
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: TermService
>Description: Allows multiple users to be connected
>interactively to a machine as well as the display of
>desktops and applications to remote computers. The
>underpinning of Remote Desktop (including RD for
>Administrators), Fast User Switching, Remote Assistance,
>and Terminal Server.
>Startup Mode: Manual
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: Themes
>Description: Provides user experience theme management.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: TrkWks
>Description: Maintains links between NTFS files within a
>computer or across computers in a network domain.
>Startup Mode: Auto
>Run from: C:\WINDOWS\system32\svchost.exe -k netsvcs
>
>Name: uploadmgr
>Description: Manages synchronous and asynchronous file
>transfers between clients and servers on the network. If
>this service is stopped, synchronous and asynchronous
>file transfers between clients and servers on the network
>will not occur. If this service is disabled, any services
>that explicitly depend on it will fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: W32Time
>Description: Maintains date and time synchronization on
>all clients and servers in the network. If this service
>is stopped, date and time synchronization will be
>unavailable. If this service is disabled, any services
>that explicitly depend on it will fail to start.
>
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>Name: WebClient
>Description: Enables Windows-based programs to create,
>access, and modify Internet-based files. If this service
>is stopped, these functions will not be available. If
>this service is disabled, any services that explicitly
>depend on it will fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k LocalService
>
>Name: winmgmt
>Description: Provides a common interface and object model
>to access management information about operating system,
>devices, applications and services. If this service is
>stopped, most Windows-based software will not function
>properly. If this service is disabled, any services that
>explicitly depend on it will fail to start.
>Startup Mode: Auto
>Run from: C:\WINDOWS\system32\svchost.exe -k netsvcs
>
>Name: wuauserv
>Description: Enables the download and installation of
>critical Windows updates. If the service is disabled, the
>operating system can be manually updated at the Windows
>Update Web site.
>Startup Mode: Auto
>Run from: C:\WINDOWS\system32\svchost.exe -k netsvcs
>
>Name: WZCSVC
>Description: Provides automatic configuration for the
>802.11 adapters
>Startup Mode: Auto
>Run from: C:\WINDOWS\System32\svchost.exe -k netsvcs
>
>.
>
- Next message: Carey Frisch [MVP]: "Re: Making folders private?"
- Previous message: Jeff: "Making folders private?"
- In reply to: Mary: "Comper is slowing down and system 32 folder opens at bootup"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]