problems with IE6

F

FelixR

hi, im' having problems with the internet explorer, i run winxp pro with all
updates from microsoft, also AVG 6, ad-aware and spybot programs, my IE
works only when i reboot and then only for 3 or 4 web sites then is shows
the "cannot display ....." page, i cannot enable windows firewall, it is
installed, and downloaded zonelabs firewall but doesn't work either, i run
hijackthis but don't know what to do with the log.
help will be welcome, here is the log:
Logfile of HijackThis v1.97.7
Scan saved at 10:07:39 AM, on 7/6/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Grisoft\AVG6\avgcc32.exe
C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
C:\PROGRA~1\Grisoft\AVG6\avgserv.exe
C:\WINDOWS\System32\CTHELPER.EXE
C:\Program Files\Norton Utilities\NPROTECT.EXE
C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Speed Disk\nopdb.exe
C:\Program Files\SECRETMAKER\secretmaker.exe
C:\Documents and Settings\Boris\My Documents\My Received
Files\HijackThis.exe
C:\WINDOWS\System32\svchost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://g.msn.com/0SEENUS/SAOS01
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
res://C:\WINDOWS\system32\hcyrb.dll/sp.html#37049
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.ca/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
res://C:\WINDOWS\system32\hcyrb.dll/sp.html#37049
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
res://C:\WINDOWS\system32\hcyrb.dll/sp.html#37049
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft
Internet Explorer provided by Shaw High Speed Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet
Settings,ProxyServer = proxy:8080
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program
Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control
Panel\atiptaxx.exe
O4 - HKLM\..\Run: [AVG_CC] C:\Program Files\Grisoft\AVG6\avgcc32.exe
/startup
O4 - HKLM\..\Run: [HPDJ Taskbar Utility]
C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [Jet Detection] "C:\Program
Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] C:\Program Files\Adaptec\Easy CD Creator
5\DirectCD\DirectCD.exe
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common
Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
Office\Office10\OSA.EXE
O4 - Global Startup: SECRETMAKER.lnk = C:\Program
Files\SECRETMAKER\secretmaker.exe
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Messenger (HKLM)
O9 - Extra button: Shaw Help (HKCU)
O14 - IERESET.INF: START_PAGE_URL=http://home.excite.ca
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX
Control) -
http://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab
O16 - DPF: {19E28AFC-EAE3-4CE5-AC83-2407B42F57C9} (MSSecurityAdvisor
Class) -
http://download.microsoft.com/downl...-a3de-373c3e5552fc/msSecAdv.cab?1083685113147
O16 - DPF: {2B36F775-8CF5-4489-B454-2D1B80984CF2} (FXPluginCtl Object) -
http://www.powerflasher.de/plugin/powerres.cab
O16 - DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} (Office Update
Installation Engine) -
http://office.microsoft.com/officeupdate/content/opuc.cab
O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} (AcDcToday Control) -
file://C:\Program Files\AutoCAD 2000i\AcDcToday.ocx
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient
Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer
Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) -
http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37654.7399652778
O16 - DPF: {C6637286-300D-11D4-AE0A-0010830243BD} (InstaFred Control) -
file://C:\Program Files\AutoCAD 2000i\InstFred.ocx
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) -
http://h30043.www3.hp.com/hpdj/en/check/qdiagh.cab?319
O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} (AcPreview Control) -
file://C:\Program Files\AutoCAD 2000i\AcPreview.ocx
 
C

Carey Frisch [MVP]

For Internet Explorer assistance:

Please visit the Internet Explorer newsgroup experts:
news://msnews.microsoft.com/microsoft.public.windows.inetexplorer.ie6.browser

--
Carey Frisch
Microsoft MVP
Windows XP - Shell/User

Be Smart! Protect your PC!
http://www.microsoft.com/security/protect/

--------------------------------------------------------------------------------------


| hi, im' having problems with the internet explorer, i run winxp pro with all
| updates from microsoft, also AVG 6, ad-aware and spybot programs, my IE
| works only when i reboot and then only for 3 or 4 web sites then is shows
| the "cannot display ....." page, i cannot enable windows firewall, it is
| installed, and downloaded zonelabs firewall but doesn't work either, i run
| hijackthis but don't know what to do with the log.
| help will be welcome, here is the log:
| Logfile of HijackThis v1.97.7
| Scan saved at 10:07:39 AM, on 7/6/2004
| Platform: Windows XP SP1 (WinNT 5.01.2600)
| MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
|
| Running processes:
| C:\WINDOWS\System32\smss.exe
| C:\WINDOWS\system32\services.exe
| C:\WINDOWS\system32\lsass.exe
| C:\WINDOWS\system32\svchost.exe
| C:\WINDOWS\System32\svchost.exe
| C:\WINDOWS\system32\spoolsv.exe
| C:\WINDOWS\Explorer.EXE
| C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
| C:\Program Files\Grisoft\AVG6\avgcc32.exe
| C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
| C:\PROGRA~1\Grisoft\AVG6\avgserv.exe
| C:\WINDOWS\System32\CTHELPER.EXE
| C:\Program Files\Norton Utilities\NPROTECT.EXE
| C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe
| C:\Program Files\Speed Disk\nopdb.exe
| C:\Program Files\SECRETMAKER\secretmaker.exe
| C:\Documents and Settings\Boris\My Documents\My Received
| Files\HijackThis.exe
| C:\WINDOWS\System32\svchost.exe
|
| R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
| http://g.msn.com/0SEENUS/SAOS01
| R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
| res://C:\WINDOWS\system32\hcyrb.dll/sp.html#37049
| R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
| http://www.google.ca/
| R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
| res://C:\WINDOWS\system32\hcyrb.dll/sp.html#37049
| R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
| res://C:\WINDOWS\system32\hcyrb.dll/sp.html#37049
| R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft
| Internet Explorer provided by Shaw High Speed Internet
| R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet
| Settings,ProxyServer = proxy:8080
| O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program
| Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
| O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
| O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
| C:\WINDOWS\System32\msdxm.ocx
| O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control
| Panel\atiptaxx.exe
| O4 - HKLM\..\Run: [AVG_CC] C:\Program Files\Grisoft\AVG6\avgcc32.exe
| /startup
| O4 - HKLM\..\Run: [HPDJ Taskbar Utility]
| C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
| O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
| O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
| O4 - HKLM\..\Run: [Jet Detection] "C:\Program
| Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
| O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe
| O4 - HKLM\..\Run: [AdaptecDirectCD] C:\Program Files\Adaptec\Easy CD Creator
| 5\DirectCD\DirectCD.exe
| O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common
| Files\Adobe\Calibration\Adobe Gamma Loader.exe
| O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
| Office\Office10\OSA.EXE
| O4 - Global Startup: SECRETMAKER.lnk = C:\Program
| Files\SECRETMAKER\secretmaker.exe
| O8 - Extra context menu item: E&xport to Microsoft Excel -
| res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
| O9 - Extra button: Messenger (HKLM)
| O9 - Extra 'Tools' menuitem: Messenger (HKLM)
| O9 - Extra button: Shaw Help (HKCU)
| O14 - IERESET.INF: START_PAGE_URL=http://home.excite.ca
| O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX
| Control) -
| http://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab
| O16 - DPF: {19E28AFC-EAE3-4CE5-AC83-2407B42F57C9} (MSSecurityAdvisor
| Class) -
| http://download.microsoft.com/downl...-a3de-373c3e5552fc/msSecAdv.cab?1083685113147
| O16 - DPF: {2B36F775-8CF5-4489-B454-2D1B80984CF2} (FXPluginCtl Object) -
| http://www.powerflasher.de/plugin/powerres.cab
| O16 - DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} (Office Update
| Installation Engine) -
| http://office.microsoft.com/officeupdate/content/opuc.cab
| O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} (AcDcToday Control) -
| file://C:\Program Files\AutoCAD 2000i\AcDcToday.ocx
| O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient
| Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
| O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer
| Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
| O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) -
| http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37654.7399652778
| O16 - DPF: {C6637286-300D-11D4-AE0A-0010830243BD} (InstaFred Control) -
| file://C:\Program Files\AutoCAD 2000i\InstFred.ocx
| O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
| http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
| O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) -
| http://h30043.www3.hp.com/hpdj/en/check/qdiagh.cab?319
| O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} (AcPreview Control) -
| file://C:\Program Files\AutoCAD 2000i\AcPreview.ocx
|
|
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Similar Threads

Can't reboot-Plz analyze HJT Log 1
I need Serious Help! 4
Hijack This Log File, Can Anyone help? 1
computer sending emails 17
Hijacker 2
HJT Log 3
problems with IE6 2
Windows Vista Essearch redirecting my broswer 1

Top