adobe acrobat problem

  1. #1
    judas is offline Full Member

    adobe acrobat problem

    Hello. I have a problem with adobe acrobat reader. Here it is. The problem is that adobe reader 7.0 is giving me a blue screen when i try to open a pdf file. I also can't uninstall it either. I tried safe mode the whole works. How do i go about uninstalling it? adobe is causing the blue screen. When I went to uninstall adobe you got another blue screen.

    The error says something like this: Page_fault_in_nonpaged_area

    Product: Adobe Reader 7.0 -- Error 1705.A previous installation for this product is in progress. You must undo the changes made by that installation to continue. Do you want to undo those changes?

    thats only when i try to uninstall it
    Last edited by judas; 02-08-2006 at 11:04 PM.


  2. #2
    jephree is offline ¨*·.¸ «.·°·..·°·.» ¸.·*¨
    You might want to finish your HijackThis work first.


    Then:


    Try this tool first off and delete any Adobe entries:

    Description of the Windows Installer CleanUp Utility


    Then:


    Uninstall Programs Manually

    Just because Windows XP has the Add/Remove Programs feature it doesn't mean your application will appear in the list. Furthermore, even if it does appear, it's no guarantee that the uninstall feature will work. When you run across one of these situations the items listed below will help in getting rid of the application. Be aware that these steps may not remove everything associated with the application and can impact other applications on the computer. Have a backup or restore point and use caution.

    *

    Find the directory for the application and delete all the files in the directory. Delete the directory. e.g. click C: under My Computer then Program Files etc.
    *

    Open regedit (start/run regedit) and navigate to HKEY_LOCAL_MACHINE\SOFTWARE and find the folder for the application. Delete the folder.
    *

    Open regedit and navigate to HKEY_CURRENT_USER\SOFTWARE and find the folder for the application. Delete the folder.
    *

    To remove the application entry from Add/Remove Programs (if present) open regedit and navigate to HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Uninstall and find the folder for the application. Delete the folder.
    *

    Some applications have Services attached to them. If this is the case, navigate to HKEY_LOCAL_MACHINE\System\CurrentControlSet\Servic es, locate and delete the service.
    *

    In Windows Explorer, navigate to the individual user settings and delete program references. Common places to check would be:

    C:\Documents and Settings\All Users\Start Menu\Programs and delete relevant entries.
    C:\Documents and Settings\All Users\Start Menu\Programs\Startup and delete relevant entries.
    C:\Documents and Settings\%YourUserID%\Start Menu\Programs and delete relevant entries.
    [Do this for each User ID listed]
    C:\Documents and Settings\%YourUserID%\Start Menu\Programs\Startup and delete relevant entries.
    [Do this for each User ID listed]

    If no entries were found in the previous step and the application launches automatically, navigate to
    HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows
    and delete the entry.
    A good free Registry Cleaner here: RegSeeker

    It is a good idea to backup your Registry before cleaning. This is a good free tool for that:

    [ERUNT] Registry Backup and Restore for Windows
    http://www.larshederer.homepage.t-online.de/erunt/


    [ERUNT Download URLs]
    http://www.aumha.org/downloads/erunt.zip
    http://www.aumha.org/downloads/erunt-setup.exe


    [Installing & Using ERUNT]
    http://www.winxptutor.com/regback.htm
    http://www.silentrunners.org/sr_eruntuse.html
    http://www.larshederer.homepage.t-on...runt/erunt.txt


    ....................................

    Altering system files; & or modifying the registry can be risky and D-A-L.com and its members cannot accept liability for any adverse effects caused by following advice freely given on this site.

  3. #3
    judas is offline Full Member
    Here is the hijack this log as you requested:

    Logfile of HijackThis v1.99.1
    Scan saved at 8:22:52 PM, on 8/2/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\LEXBCES.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\LEXPPS.EXE
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\CTXFIHLP.EXE
    C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
    C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
    C:\WINDOWS\SYSTEM32\CTXFISPI.EXE
    C:\Program Files\Common Files\Network Associates\TalkBack\tbmon.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
    C:\Program Files\Creative\MediaSource\Go\CTCMSGo.exe
    C:\WINDOWS\system32\CTsvcCDA.EXE
    C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    C:\Program Files\Network Associates\VirusScan\mcshield.exe
    C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\Program Files\Ventrilo\Ventrilo.exe
    C:\Program Files\Trillian\trillian.exe
    C:\Program Files\mIRC\mirc.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\DOCUME~1\Mitch\LOCALS~1\Temp\Rar$EX00.281\Hijac kThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    O2 - BHO: (no name) - AutorunsDisabled - (no file)
    O4 - HKLM\..\Run: [razertra] C:\Program Files\Razer\razertra.exe
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
    O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
    O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
    O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\tbmon.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
    O4 - HKCU\..\Run: [Creative Detector] "C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /R
    O4 - HKCU\..\Run: [Creative MediaSource Go] "C:\Program Files\Creative\MediaSource\Go\CTCMSGo.exe" /SCB
    O4 - Global Startup: dlbcserv.lnk = C:\Program Files\Dell Photo Printer 720\dlbcserv.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe
    O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {ADACAA8F-3595-47FE-9C31-9C7471B9BEC7} (OCXDownloadChecker Control) - http://split.dipmap.com/cab/OCXChecker_8000.cab
    O16 - DPF: {D3A7982E-915D-4589-8ECE-249F70D0C941} (Launch Control) - http://aaotracker.4players.de/LaunchGame.cab
    O16 - DPF: {DBAFE6AD-DC14-45DF-A3F7-F8832289A1CD} (DownloadFile Control) - http://split.dipmap.com/cab/DownloadFile_8000.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{965ADB7C-DDA5-42C4-9304-EC4C80C2F1E0}: NameServer = 208.38.65.37,208.38.65.35
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
    O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
    O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\mcshield.exe
    O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

  4. #4
    judas is offline Full Member
    Thanks for the help. The regseeker seemed to fix the problem. My other question to you is if you see anything in my hijack this log that can be deleted or is not needed.

  5. #5
    jephree is offline ¨*·.¸ «.·°·..·°·.» ¸.·*¨
    You must of just had an Adobe registry entry that was stuck. Glad that is sorted.

    I did not mean for you to post a HijackThis log here but for you to finish your work with your thread in the HijackThis section.

    Thanks for the thanks.

+ Reply to Thread