extremely slow reboot

Anonymous
2011-10-05T04:46:40+00:00

I use a dell laptop with windows xp and am having extremely slow reboots.

specs:

MS Windows XP Home SP3

Intel CPU T2060 @ 1.60 GHz

2.0GB RAM

ATI Mobility Radeon X1400

Dell Inspiron 9400

Using Windows task manager I click on shutdown then restart

Once it restarts the first thing I notice on the screen is

Dell

then Windows XP

then a full black screen

Welcome on a blue screen appears at 1 minute 45 seconds

It takes more than 3 minutes for the day of the week, time and date to appear in the right lower corner

It takes more than 5 minutes for the start button to become responsive to a click

It takes more then 7 minutes to open Mozilla Firefox

How do I troubleshoot and get a faster reboot?

Using msconfig  services, hide all microsoft services the only item are my lexmark printer and Microsoft Automated troubleshooting service

under the startup tab the only item to start with reboot is ctfmon

With most software off on reboot how come it is taking so long?  Also I use Mcafee antivirus plus and I had the Mcafee boxes unchecked with reboot.  That is no evident active antivirus system load with reboot

i have checked for malware using Malwarebytes full scan approximately 8 hours and no malware

I have checked for malware also using Kapersky free download and it too found no malware

I use Ccleaner, Privacy Mantra and Glary utilities regularly

Windows for home | Previous Windows versions | Performance and system failures

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments

52 answers

Sort by: Most helpful
  1. Anonymous
    2011-10-06T05:25:23+00:00

    It seems easy to blame things on malware and it seems hard to disprove.  But here are the results of different companies that either provide free software or sell their software to detect malware

    The first is today' s result of Trend Micro Hijackthis:  This is the log file:

    Logfile of Trend Micro HijackThis v2.0.2

    Scan saved at 12:02:01 AM, on 10/6/2011

    Platform: Windows XP SP3 (WinNT 5.01.2600)

    MSIE: Internet Explorer v8.00 (8.00.6001.18702)

    Boot mode: Normal

    Running processes:

    C:\WINDOWS\System32\smss.exe

    C:\WINDOWS\system32\winlogon.exe

    C:\WINDOWS\system32\services.exe

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\system32\LEXBCES.EXE

    C:\WINDOWS\system32\spoolsv.exe

    C:\WINDOWS\system32\LEXPPS.EXE

    C:\Program Files\Soluto\soluto.exe

    C:\WINDOWS\Explorer.EXE

    C:\WINDOWS\system32\ctfmon.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\system32\wuauclt.exe

    C:\Program Files\Soluto\SolutoService.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe

    C:\WINDOWS\system32\rundll32.exe

    C:\Program Files\Safari\Safari.exe

    C:\Program Files\Soluto\SolutoConsole.exe

    C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe

    C:\Program Files\Mozilla Firefox\firefox.exe

    C:\Program Files\AOL 9.5\waol.exe

    C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe

    C:\Program Files\AOL 9.5\shellmon.exe

    C:\Program Files\Common Files\AOL\1270149381\ee\aolsoftware.exe

    C:\Program Files\Common Files\AOL\1270149381\ee\aolsoftware.exe

    C:\Program Files\Common Files\AOL\1270149381\ee\anotify.exe

    C:\Program Files\Mozilla Firefox\plugin-container.exe

    C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe

    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=6070517

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=6070517

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll

    F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\Program Files\Soluto\soluto.exe /userinit

    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll

    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll

    O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20101025031505.dll

    O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll

    O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll

    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

    O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll

    O4 - HKCU..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000

    O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL

    O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)

    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O15 - Trusted Zone: http://*.mcafee.com

    O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} (Microsoft Data Collection Control) - https://support.microsoft.com/Dcode/ActiveX/MSDcode.cab

    O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://utilities.pcpitstop.com/Nirvana/controls/pcmatic.cab

    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

    O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase8942.cab

    O16 - DPF: {6824D897-F7E1-4E41-B84B-B1D3FA4BF1BD} (PCPitstop AntiVirus) - http://utilities.pcpitstop.com/Exterminate2/pcpitstopAntiVirus.dll

    O16 - DPF: {A3256902-51FA-45A0-8A97-FC1143C169D9} (Diagnostics ActiveX WebControl) - http://support.microsoft.com/mats/DiagWebControl.cab

    O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} -

    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

    O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,5865/mcfscan.cab

    O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll

    O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll

    O20 - Winlogon Notify: GoToAssist - C:\Program Files\Citrix\GoToAssist\615\G2AWinLogon.dll

    O23 - Service: McAfee Application Installer Cleanup (0132241317856773) (0132241317856773mcinstcleanup) - McAfee, Inc. - C:\WINDOWS\TEMP\013224~1.EXE

    O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE

    O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe

    O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe

    O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

    O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

    O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

    O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe

    O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

    O23 - Service: McShield - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe

    O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe

    O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - McAfee, Inc. - C:\WINDOWS\system32\mfevtps.exe

    O23 - Service: Soluto PCGenome Core Service (SolutoService) - Soluto - C:\Program Files\Soluto\SolutoService.exe

    O24 - Desktop Component 0: (no name) - (no file)

    --

    End of file - 8158 bytes

    The following malware tests have been done on my system and none have found malware:

    1. McAfee Security Scan Plus

    http://home.mcafee.com/downloads/free-virus-scan?ctst=1

    1. Kaspersky Virus Removal Tool

    http://www.kaspersky.com/virusscanner

    1. Microsoft Malicious Software Removal Tool

    http://download.cnet.com/Microsoft-Windows-Malicious-Software-Removal-Tool/3000-2239\_4-76849.html

    1. Malwarebytes

    http://www.malwarebytes.org/

    1. I used to run PC Pitstop PcMatic daily which has their low and high threat detectors and provided system performance results, comparisons with similar systems that ran their studies, and options to improve performance
    2. Today I also ran Microsoft Safety Scanner

    http://www.microsoft.com/security/scanner/en-us/default.aspx

    Summary

    The following 6 software products have determined from their updated definitions that as of 10/3 to 10/6/2011 there is no malware on my computer:

    Trend Micro Hijackthis

    Microsoft Malicious Software Removal Tool

    Microsoft Safety Scanner

    Kapersky Virus Removal Tool

    McAfee Security Scan Plus

    Malwarebytes

    Within the past 48 hours 4 of the above were used twice.

    You will notice that many of my threads are old.  They were likely written when I was using PC Pitstop PC Matic daily.

    Was this answer helpful?

    0 comments No comments
  2. Anonymous
    2011-10-06T01:04:20+00:00

    Yeah, I gotta agree with the others.

    Malwarebytes may or may not have removed the entire infection. (It would have been helpful to know its name!)

    Also, you are unclear about McAfee. It sounds as if you believe you are still able to receive ongoing updates even though the subsciption has expired (and presumably the program version is not current). At any rate, that doesn't inspire confidence! I really think there is a strong chance you have malware.

    Was this answer helpful?

    0 comments No comments
  3. Anonymous
    2011-10-06T00:46:54+00:00

    Would you go to a doctor who'd lost his license to practice medicine?

    Would you still deposit your hard-earned money in a bank that had gone under?

    I don't think so...

    The following applies to ALL of your threads:

    You have been seeing the effects of an ongoing hijackware infection, most likely compounded by a W32/Alureon-variant rootkit infection (or worse).  See...

       • Cleaning a Compromised System

          http://technet.microsoft.com/en-us/library/cc700813.aspx

    Follow the instructions in this post of mine in another forum (to-the-letter &in order! ) to return your computer to a secure & functional state: http://aumha.net/viewtopic.php?f=62&t=44636

    If you need additional assistance with the clean install, please begin a new thread in this forum: http://answers.microsoft.com/en-us/windows/forum/windows_xp-system

    Note: The computer should not be connected to the internet or any local networks (i.e., other computers) in its current state. All of your personal data (e.g., online banking & credit-card passwords) should be considered at-risk, if not already compromised.

    Wish I'd had better news for you.  Good luck!

    Yup!!

    +1

    Was this answer helpful?

    0 comments No comments
  4. Anonymous
    2011-10-06T00:25:58+00:00

    Would you go to a doctor who'd lost his license to practice medicine?

    Would you still deposit your hard-earned money in a bank that had gone under?

    I don't think so...

    The following applies to ALL of your threads:

    You have been seeing the effects of an ongoing hijackware infection, most likely compounded by a W32/Alureon-variant rootkit infection (or worse).  See...

       • Cleaning a Compromised System

          http://technet.microsoft.com/en-us/library/cc700813.aspx

    Follow the instructions in this post of mine in another forum (to-the-letter &in order! ) to return your computer to a secure & functional state: http://aumha.net/viewtopic.php?f=62&t=44636

    If you need additional assistance with the clean install, please begin a new thread in this forum: http://answers.microsoft.com/en-us/windows/forum/windows_xp-system

    Note: The computer should not be connected to the internet or any local networks (i.e., other computers) in its current state. All of your personal data (e.g., online banking & credit-card passwords) should be considered at-risk, if not already compromised.

    Wish I'd had better news for you.  Good luck!

    Was this answer helpful?

    0 comments No comments
  5. Anonymous
    2011-10-05T23:24:51+00:00

    Earlier in the winter I spoke with McAfee before my subscription expired and they told me that no matter what I did that McAfee would run with its definitions up to the last update.  They told me that if I uninstalled McAfee and then used the CD to reinstall it without an active subscription I would be using very outdated definitions.  I have had one virus issue by downloading a bug from the aol email that mcafee can not block if I accept the download.  This was removed with malwarebytes.  Other than this I have had no malware issues.  In the past week I ran microsoft malicious removal, kapersky, malwarebytes, and today I ran microsoft safety scanner.  All scans report no malware.

    I have not yet decided whether to uninstall mcafee.  This new program let me prevent mcafee from being part of the boot.  No program prior to this had allowed this to be done.

    The most recent boot time has been reduced wit the soluto from 8:25 to 7:14 to 5:02

    I will continue to lern how to tweak the soluto to see what can be done to reduce the boot time.

    I would like to turn off windows update.  What are the steps to turn off windows update.  By turning off windows update it will reduce the boot time by 21 sec.

    Was this answer helpful?

    0 comments No comments