ddsen
asked on
runddl32.exe crashes
Hi,
I have just installed Internet Connection sharing. My Windows XP is the host (server) connected by DSL to the internet. My laptop is the client. The two computers can see each other, file sharing, printer sharing, pinging all work. Buts the ICS Client on the Windows 98SE computer fails to start since the icsdclt.dll wont start due to rundll32.exe crashing. I have tried to start it by using the communications tab in the program menu but it ends with rundll.exe doing an illegal ops. Any ideas on how to fix this will be greatly appreciated.
Thanks
Dev
I have just installed Internet Connection sharing. My Windows XP is the host (server) connected by DSL to the internet. My laptop is the client. The two computers can see each other, file sharing, printer sharing, pinging all work. Buts the ICS Client on the Windows 98SE computer fails to start since the icsdclt.dll wont start due to rundll32.exe crashing. I have tried to start it by using the communications tab in the program menu but it ends with rundll.exe doing an illegal ops. Any ideas on how to fix this will be greatly appreciated.
Thanks
Dev
ASKER
Hi Find below log. I can't see what the problem could be?
-------------------------- ---------- ---------- ---------- ---------- ---------- ----
Logfile of HijackThis v1.97.7
Scan saved at 16:49:03, on 16/08/04
Platform: Windows 98 SE (Win9x 4.10.2222A)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32 .DLL
C:\WINDOWS\SYSTEM\MSGSRV32 .EXE
C:\WINDOWS\SYSTEM\MPREXE.E XE
C:\WINDOWS\SYSTEM\mmtask.t sk
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\SPOOL32. EXE
C:\WINDOWS\SYSTEM\SYSTRAY. EXE
C:\PROGRAM FILES\CREATIVE\USB SBAUDIGY2 NX\DVDAUDIO\CTDVDDET.EXE
C:\PROGRAM FILES\CREATIVE\USB SBAUDIGY2 NX\SURROUND MIXER\CTSYSVOL.EXE
C:\NET2PLUG\TOOLS\WAIT4IP. EXE
C:\PROGRAM FILES\RFA\RFAGENT.EXE
C:\PROGRAM FILES\PANDA SOFTWARE\PANDA PLATINUM INTERNET SECURITY\APVXDWIN.EXE
C:\PROGRAM FILES\TWEAKMASTER\TWMASTER .EXE
C:\PROGRAM FILES\ACELOGIX\STARTUPGUAR D\SG.EXE
C:\PROGRAM FILES\CREATIVE\MEDIASOURCE \REMOTECON TROL\RCMAN .EXE
C:\PROGRAM FILES\FREEMEM PROFESSIONAL\FMEMPRO.EXE
C:\WINDOWS\SYSTEM\WMIEXE.E XE
F:\DOWNLOADS\HIJACKTHIS.EX E
R1 - HKCU\Software\Microsoft\Wi ndows\Curr entVersion \Internet Settings,ProxyServer = 192.168.0.1:80
R0 - HKCU\Software\Microsoft\In ternet Explorer\Main,Local Page = c:\WINDOWS\SYSTEM\OOBE\BLA NK.HTM
R0 - HKLM\Software\Microsoft\In ternet Explorer\Main,Local Page = c:\WINDOWS\SYSTEM\OOBE\BLA NK.HTM
F0 - system.ini: Shell=C:\PROGRA~1\ASTON\SH ELLSWP.EXE
O1 - Hosts: 194.66.135.16 open.ac.uk
O1 - Hosts: 66.111.4.62 fastmail.fm
O1 - Hosts: 137.108.144.69 oufcnt1.open.ac.uk
O1 - Hosts: 216.239.57.99 google.com
O1 - Hosts: 207.46.144.222 www.microsoft.com
O1 - Hosts: 207.46.249.57 windowsupdate.microsoft.co m
O1 - Hosts: 64.4.20.220 v4.windowsupdate.microsoft .com
O1 - Hosts: 66.161.33.37 www.srswowcast.com
O1 - Hosts: 66.161.33.38 www.srs-store.com
O1 - Hosts: 209.150.1.147 www.beethoven.com
O1 - Hosts: 205.180.85.85 media45.fastclick.net
O1 - Hosts: 205.180.85.40 205.180.85.40
O1 - Hosts: 194.205.119.100 www.pocruises.co.uk
O1 - Hosts: 194.66.147.15 msds.open.ac.uk
O1 - Hosts: 194.66.147.115 css3.open.ac.uk
O1 - Hosts: 194.70.58.130 www.classicgold.co.uk
O1 - Hosts: 216.239.59.104 www.google.com
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-7 84B7D6BE0B 3} - C:\PROGRAM FILES\ADOBE\ACROBAT 6.0\READER\ACTIVEX\ACROIEH ELPER.DLL
O2 - BHO: (no name) - {7DAAC7DE-9EF0-4FF0-BFA5-A FF3E899054 C} - C:\PROGRA~1\TWEAKM~1\TWEAK BHO.DLL
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-0 0A0C908246 7} - C:\WINDOWS\SYSTEM\MSDXM.OC X
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [CTDVDDet] C:\Program Files\Creative\USB SBAudigy2 NX\DVDAudio\CTDVDDet.EXE
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\USB SBAudigy2 NX\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [wait4ip] c:\net2plug\tools\wait4IP. exe
O4 - HKLM\..\Run: [rfagent] C:\PROGRAM FILES\RFA\rfagent.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\SYSTEM\hpztsb05 .exe
O4 - HKLM\..\Run: [SCANINICIO] "C:\Program Files\Panda Software\Panda Platinum Internet Security\Inicio.exe"
O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files\Panda Software\Panda Platinum Internet Security\APVXDWIN.EXE" /s
O4 - HKLM\..\Run: [TweakMASTER] "C:\PROGRAM FILES\TWEAKMASTER\TWMASTER .EXE" /auto
O4 - HKLM\..\Run: [autoclk] autoclk.exe
O4 - HKLM\..\Run: [ICSDCLT] C:\WINDOWS\rundll32.exe C:\WINDOWS\SYSTEM\icsdclt. dll,ICSCli ent
O4 - HKLM\..\RunServices: [PavProc] C:\Program Files\Common Files\Panda Software\PavShld\PavPrS9x. exe
O4 - HKLM\..\RunServices: [PANDASCHEDULER] "C:\Program Files\Panda Software\Panda Platinum Internet Security\Pavsched.exe"
O4 - HKLM\..\RunServices: [PAVFIRES] C:\Program Files\Panda Software\Panda Platinum Internet Security\Firewall\PavFires .exe
O4 - HKLM\..\RunServices: [AstonShellDoctor] shDoctor.exe check
O4 - HKLM\..\RunServices: [SSDPSRV] C:\WINDOWS\SYSTEM\ssdpsrv. exe
O4 - HKCU\..\Run: [Startup Guard] C:\Program Files\AceLogix\StartupGuar d\sg.exe
O4 - HKCU\..\Run: [RemoteCenter] C:\Program Files\Creative\MediaSource \RemoteCon trol\RCMan .EXE
O4 - HKCU\..\Run: [FreeMem Pro] "C:\PROGRAM FILES\FREEMEM PROFESSIONAL\FMEMPRO.EXE" Startup
O4 - Startup: Webshots.lnk.disabled
O9 - Extra button: Related (HKLM)
O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O10 - Broken Internet access because of LSP provider 'wglsp.dll' missing
O16 - DPF: {9F1C11AA-197B-4942-BA54-4 7A8489BB47 F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?38145.2754398148
O16 - DPF: {CC05BC12-2AA2-4AC7-AC81-0 E40F83B1AD F} (Live365Player Class) - http://www.live365.com/players/play365.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-4 4455354000 0} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 - DPF: {4E62C4DE-627D-4604-B157-4 B7D6B09F02 E} (AccountTracking Profile Manager Class) - https://moneymanager.egg.com/Pinsafe/accounttracking.cab
O16 - DPF: {E7DBFB6C-113A-47CF-B278-F 5C6AF4DE1B D} - http://download.abacast.com/download/files/abasetup151.cab
O16 - DPF: {40272BF7-4FF5-4D6F-9BAD-3 C1D3CB3298 2} (Live365PlayerVIP Class) - http://www.live365.com/players/p365vip.cab
--------------------------
Logfile of HijackThis v1.97.7
Scan saved at 16:49:03, on 16/08/04
Platform: Windows 98 SE (Win9x 4.10.2222A)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32
C:\WINDOWS\SYSTEM\MSGSRV32
C:\WINDOWS\SYSTEM\MPREXE.E
C:\WINDOWS\SYSTEM\mmtask.t
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\SPOOL32.
C:\WINDOWS\SYSTEM\SYSTRAY.
C:\PROGRAM FILES\CREATIVE\USB SBAUDIGY2 NX\DVDAUDIO\CTDVDDET.EXE
C:\PROGRAM FILES\CREATIVE\USB SBAUDIGY2 NX\SURROUND MIXER\CTSYSVOL.EXE
C:\NET2PLUG\TOOLS\WAIT4IP.
C:\PROGRAM FILES\RFA\RFAGENT.EXE
C:\PROGRAM FILES\PANDA SOFTWARE\PANDA PLATINUM INTERNET SECURITY\APVXDWIN.EXE
C:\PROGRAM FILES\TWEAKMASTER\TWMASTER
C:\PROGRAM FILES\ACELOGIX\STARTUPGUAR
C:\PROGRAM FILES\CREATIVE\MEDIASOURCE
C:\PROGRAM FILES\FREEMEM PROFESSIONAL\FMEMPRO.EXE
C:\WINDOWS\SYSTEM\WMIEXE.E
F:\DOWNLOADS\HIJACKTHIS.EX
R1 - HKCU\Software\Microsoft\Wi
R0 - HKCU\Software\Microsoft\In
R0 - HKLM\Software\Microsoft\In
F0 - system.ini: Shell=C:\PROGRA~1\ASTON\SH
O1 - Hosts: 194.66.135.16 open.ac.uk
O1 - Hosts: 66.111.4.62 fastmail.fm
O1 - Hosts: 137.108.144.69 oufcnt1.open.ac.uk
O1 - Hosts: 216.239.57.99 google.com
O1 - Hosts: 207.46.144.222 www.microsoft.com
O1 - Hosts: 207.46.249.57 windowsupdate.microsoft.co
O1 - Hosts: 64.4.20.220 v4.windowsupdate.microsoft
O1 - Hosts: 66.161.33.37 www.srswowcast.com
O1 - Hosts: 66.161.33.38 www.srs-store.com
O1 - Hosts: 209.150.1.147 www.beethoven.com
O1 - Hosts: 205.180.85.85 media45.fastclick.net
O1 - Hosts: 205.180.85.40 205.180.85.40
O1 - Hosts: 194.205.119.100 www.pocruises.co.uk
O1 - Hosts: 194.66.147.15 msds.open.ac.uk
O1 - Hosts: 194.66.147.115 css3.open.ac.uk
O1 - Hosts: 194.70.58.130 www.classicgold.co.uk
O1 - Hosts: 216.239.59.104 www.google.com
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-7
O2 - BHO: (no name) - {7DAAC7DE-9EF0-4FF0-BFA5-A
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-0
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [CTDVDDet] C:\Program Files\Creative\USB SBAudigy2 NX\DVDAudio\CTDVDDet.EXE
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\USB SBAudigy2 NX\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [wait4ip] c:\net2plug\tools\wait4IP.
O4 - HKLM\..\Run: [rfagent] C:\PROGRAM FILES\RFA\rfagent.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\SYSTEM\hpztsb05
O4 - HKLM\..\Run: [SCANINICIO] "C:\Program Files\Panda Software\Panda Platinum Internet Security\Inicio.exe"
O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files\Panda Software\Panda Platinum Internet Security\APVXDWIN.EXE" /s
O4 - HKLM\..\Run: [TweakMASTER] "C:\PROGRAM FILES\TWEAKMASTER\TWMASTER
O4 - HKLM\..\Run: [autoclk] autoclk.exe
O4 - HKLM\..\Run: [ICSDCLT] C:\WINDOWS\rundll32.exe C:\WINDOWS\SYSTEM\icsdclt.
O4 - HKLM\..\RunServices: [PavProc] C:\Program Files\Common Files\Panda Software\PavShld\PavPrS9x.
O4 - HKLM\..\RunServices: [PANDASCHEDULER] "C:\Program Files\Panda Software\Panda Platinum Internet Security\Pavsched.exe"
O4 - HKLM\..\RunServices: [PAVFIRES] C:\Program Files\Panda Software\Panda Platinum Internet Security\Firewall\PavFires
O4 - HKLM\..\RunServices: [AstonShellDoctor] shDoctor.exe check
O4 - HKLM\..\RunServices: [SSDPSRV] C:\WINDOWS\SYSTEM\ssdpsrv.
O4 - HKCU\..\Run: [Startup Guard] C:\Program Files\AceLogix\StartupGuar
O4 - HKCU\..\Run: [RemoteCenter] C:\Program Files\Creative\MediaSource
O4 - HKCU\..\Run: [FreeMem Pro] "C:\PROGRAM FILES\FREEMEM PROFESSIONAL\FMEMPRO.EXE" Startup
O4 - Startup: Webshots.lnk.disabled
O9 - Extra button: Related (HKLM)
O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O10 - Broken Internet access because of LSP provider 'wglsp.dll' missing
O16 - DPF: {9F1C11AA-197B-4942-BA54-4
O16 - DPF: {CC05BC12-2AA2-4AC7-AC81-0
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-4
O16 - DPF: {4E62C4DE-627D-4604-B157-4
O16 - DPF: {E7DBFB6C-113A-47CF-B278-F
O16 - DPF: {40272BF7-4FF5-4D6F-9BAD-3
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Well most of your programs seem to be 3rd party things you have installed and want.
Is it possible for you to Uninstall "Panda Platinum Internet Security" and test your problem with that program not running? It seems that there are several refrences to it. Along with "FreeMem Pro" , "Startup Guard" , and "wait4ip" All these can cause software conflicts and if you possibly can uninstall them (and have the program to reinstall) That would be a great step in troubleshooting this problem . I had noticed several refrences in the HOSTS file also. Did you put those there or do you know why they were added? They don't seem like a threat for any reason since they seem to to be correct.
If you do have the install files then I would Uninstall all of those in Add/Remove programs then run hijackthis again and see if any refrences are still there (u can post another log i'll point out exaclty what to remove once they're uninstalled) and we can test your ICS. If it works we know thats the issue and u can install 1 at a time and test it to see which was the culprit. That would be where I would start. Sorry I'm not posting what to remove yet but if you do remove some and try to uninstall any of those it could cause a problem. I'll be waiting for a response
Is it possible for you to Uninstall "Panda Platinum Internet Security" and test your problem with that program not running? It seems that there are several refrences to it. Along with "FreeMem Pro" , "Startup Guard" , and "wait4ip" All these can cause software conflicts and if you possibly can uninstall them (and have the program to reinstall) That would be a great step in troubleshooting this problem . I had noticed several refrences in the HOSTS file also. Did you put those there or do you know why they were added? They don't seem like a threat for any reason since they seem to to be correct.
If you do have the install files then I would Uninstall all of those in Add/Remove programs then run hijackthis again and see if any refrences are still there (u can post another log i'll point out exaclty what to remove once they're uninstalled) and we can test your ICS. If it works we know thats the issue and u can install 1 at a time and test it to see which was the culprit. That would be where I would start. Sorry I'm not posting what to remove yet but if you do remove some and try to uninstall any of those it could cause a problem. I'll be waiting for a response
ASKER
Hi,
I have founf that my rundll32.exe was corrupted and have now managed to reinstall with SFC and the problem is gone now. For some it reason although corrupt it seemed to work with the other applets in the control panel :-/
Thanks for your help
Dev
I have founf that my rundll32.exe was corrupted and have now managed to reinstall with SFC and the problem is gone now. For some it reason although corrupt it seemed to work with the other applets in the control panel :-/
Thanks for your help
Dev
I am new to experts-exchange does that therefore mean I get the points as it was my answer that lead to the solution?
Regards,
Jacob
Regards,
Jacob
Yup Jacob, your answer should be accepted and you should get an email congratulating you. Good work!!!! I overlooked the simple things, I was thinkin WinXP not Win98. OOPPPS. Great work Jacob, welcome aboard!
Download:
http://www.spychecker.com/program/hijackthis.html