IE blocked

Discussion in 'Computer Security' started by GRL, Apr 2, 2006.

  1. GRL

    GRL Guest

    My IE (6) isn't able to connect to any site: it remains still, without even
    trying to solve the name (only the right-upside flag waves...).
    No virus found (I use NAV), no restriction for IE in the firewall (I use
    Kerio 4), no other malware (run Spybot): I don't undestand how to recover. I
    tried practically everything, found suggestions in IE newsgroups: nothing
    seems to be able to repair my IE.
    Maybe some other suggestions from this newsgroup
    Thanks to all.
    Giovanni
     
    GRL, Apr 2, 2006
    #1
    1. Advertising

  2. GRL wrote:
    > My IE (6) isn't able to connect to any site: it remains still, without even
    > trying to solve the name (only the right-upside flag waves...).


    Are you trying to use IE on the web? Very bad idea. Anyway, beside that
    a real webbrowser also offers way more detailed error messages.

    > No virus found (I use NAV)


    So that doesn't mean anything. Try a serious virus scanner.

    > in the firewall (I use Kerio 4),


    It's no firewall, it's a very lousy host-based packet filter that is
    causing a lot of problems.

    > no other malware (run Spybot)


    Spybot isn't good for concluding such things either. Try HijackThis for
    some useful remote diagnosis.
     
    Sebastian Gottschalk, Apr 2, 2006
    #2
    1. Advertising

  3. GRL

    GRL Guest

    Ok, I've got the log of HijackThis. Where can I post it (or send by mail)?
    I'm not as expert as to undetsand what's bad or not in that log.
    Thanks.
    Giovanni
    "Sebastian Gottschalk" <> ha scritto nel messaggio
    news:...
    > GRL wrote:
    >> My IE (6) isn't able to connect to any site: it remains still, without
    >> even
    >> trying to solve the name (only the right-upside flag waves...).

    >
    > Are you trying to use IE on the web? Very bad idea. Anyway, beside that
    > a real webbrowser also offers way more detailed error messages.
    >
    >> No virus found (I use NAV)

    >
    > So that doesn't mean anything. Try a serious virus scanner.
    >
    >> in the firewall (I use Kerio 4),

    >
    > It's no firewall, it's a very lousy host-based packet filter that is
    > causing a lot of problems.
    >
    >> no other malware (run Spybot)

    >
    > Spybot isn't good for concluding such things either. Try HijackThis for
    > some useful remote diagnosis.
     
    GRL, Apr 2, 2006
    #3
  4. GRL wrote:
    > Ok, I've got the log of HijackThis. Where can I post it (or send by mail)?


    You might post it here.

    > I'm not as expert as to undetsand what's bad or not in that log.


    For some general tests you might take a look at the automated
    analyzation at http://www.hijackthis.de

    BTW, you should also take a look at http://learn.to/quote
     
    Sebastian Gottschalk, Apr 2, 2006
    #4
  5. GRL

    GRL Guest

    I've used the address for the automated analyzation, nothing bad according
    this analysis.
    These are the contents of the log:
    Logfile of HijackThis v1.99.1
    Scan saved at 11.09.42, on 02/04/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Programmi\Ahead\InCD\InCDsrv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
    C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
    C:\Programmi\File comuni\Symantec Shared\ccProxy.exe
    C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
    C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Programmi\File comuni\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\WINDOWS\system32\LEXBCES.EXE
    C:\WINDOWS\system32\LEXPPS.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\bmwebcfg.exe
    C:\WINDOWS\System32\GEARSec.exe
    C:\Programmi\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
    C:\Programmi\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    C:\Programmi\Norton Ghost\Agent\VProSvc.exe
    C:\WINDOWS\System32\SnoopFreeSvc.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Programmi\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
    C:\Programmi\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
    C:\WINDOWS\system32\VTtrayp.exe
    C:\WINDOWS\system32\VTTimer.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\WINDOWS\AGRSMMSG.exe
    C:\Programmi\Apoint2K\Apoint.exe
    C:\Programmi\Power Manager\PM.exe
    C:\WINDOWS\system32\GSICON.EXE
    C:\WINDOWS\system32\dslagent.exe
    C:\Programmi\HighCriteria\TotalRecorder\TotRecSched.exe
    C:\WINDOWS\system32\LXSUPMON.EXE
    C:\WINDOWS\SnoopFreeUI.exe
    C:\Programmi\Lexmark 2200 Series\lxbvbmgr.exe
    C:\Programmi\FreePDF_XP\fpassist.exe
    C:\Programmi\Lexmark 2200 Series\lxbvbmon.exe
    C:\Programmi\File comuni\Symantec Shared\ccApp.exe
    C:\Program Files\Process Lasso\processgovernor.exe
    C:\Programmi\Norton Ghost\Agent\GhostTray.exe
    C:\Programmi\Apoint2K\Apntex.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fpdisp5a.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Programmi\Messenger\msmsgs.exe
    C:\Programmi\iolo\System Mechanic 6\SMSystemAnalyzer.exe
    C:\Programmi\Pinnacle\Shared Files\Programs\Scheduler\PCLEScheduler.exe
    C:\Programmi\Chaos Manager 2\cm2.exe
    C:\Programmi\FastStone Screen Capture\FSCapture.exe
    C:\Programmi\palmOne\HOTSYNC.EXE
    C:\Programmi\OpenOffice.org 2.0\program\soffice.exe
    C:\Programmi\OpenOffice.org 2.0\program\soffice.BIN
    C:\Programmi\File comuni\Symantec Shared\Security Console\NSCSRVCE.EXE
    C:\Programmi\freeCommander2005\freeCommander.exe
    C:\Programmi\Mythicsoft\Agent Ransack\AgentRansack.exe
    C:\Programmi\K-Meleon\k-meleon.exe
    C:\Programmi\Outlook Express\msimn.exe
    C:\Programmi\Internet Explorer\IEXPLORE.EXE
    C:\DATI\MAGIC2\Magic.exe
    C:\DOCUME~1\GRL\IMPOST~1\Temp\freeCommander\2\hijackthis.exe

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
    http://it.yahoo.com/fsc/
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
    http://red.clientapps.yahoo.com/customize/fuji/defaults/su/*http://www.yahoo.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    Collegamenti
    O2 - BHO: Adobe PDF Reader Link Helper -
    {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat
    7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {206E52E0-D52E-11D4-AD54-0000E86C26F6} -
    C:\Programmi\FreshDevices\FreshDownload\fdcatch.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} -
    C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -
    C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: Norton Internet Security 2006 -
    {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programmi\File comuni\Symantec
    Shared\AdBlocking\NISShExt.dll
    O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} -
    C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O2 - BHO: Bridge Class - {E479EDE1-923E-11D3-B82B-00E09871521B} -
    C:\Programmi\Compass\CmpsIE.dll
    O3 - Toolbar: Norton Internet Security 2006 -
    {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programmi\File comuni\Symantec
    Shared\AdBlocking\NISShExt.dll
    O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} -
    C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: FreshDownload Bar - {ED0E8CA5-42FB-4B18-997B-769E0408E79D} -
    C:\Programmi\FreshDevices\FreshDownload\fdiebar.dll
    O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [Apoint] C:\Programmi\Apoint2K\Apoint.exe
    O4 - HKLM\..\Run: [ProgramPath] C:\Programmi\Power Manager\PM.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [GSICONEXE] GSICON.EXE
    O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
    O4 - HKLM\..\Run: [TotalRecorderScheduler]
    "C:\Programmi\HighCriteria\TotalRecorder\TotRecSched.exe"
    O4 - HKLM\..\Run: [LXSUPMON] C:\WINDOWS\system32\LXSUPMON.EXE RUN
    O4 - HKLM\..\Run: [{4FD4C989-FA02-4743-A1FD-7FC2CABB244A}]
    "C:\Programmi\tin.it\Fast\bmoc" -d
    O4 - HKLM\..\Run: [SnoopFreeUI] SnoopFreeUI.exe
    O4 - HKLM\..\Run: [ioloDelayModule] C:\Programmi\iolo\System Mechanic
    6\delay.exe
    O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Programmi\Lexmark 2200
    Series\lxbvbmgr.exe"
    O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
    O4 - HKLM\..\Run: [FreePDF Assistant] C:\Programmi\FreePDF_XP\fpassist.exe
    O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec
    Shared\ccApp.exe"
    O4 - HKLM\..\Run: [ProcessGovernor] C:\Program Files\Process
    Lasso\processgovernor.exe
    O4 - HKLM\..\Run: [Norton Ghost 10.0] "C:\Programmi\Norton
    Ghost\Agent\GhostTray.exe"
    O4 - HKLM\..\Run: [errorkiller] "C:\Program
    Files\errorkiller\errorkiller.exe" -boot
    O4 - HKLM\..\Run: [FinePrint Dispatcher v5]
    "C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fpdisp5a.exe" /source=HKLM
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Programmi\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [SMSystemAnalyzer] "C:\Programmi\iolo\System Mechanic
    6\SMSystemAnalyzer.exe"
    O4 - Startup: Chaos Manager loader.lnk = C:\Programmi\Chaos Manager
    2\cm2.exe
    O4 - Startup: FSCapture.exe.lnk = C:\Programmi\FastStone Screen
    Capture\FSCapture.exe
    O4 - Startup: Manager HotSync.lnk = C:\Programmi\palmOne\HOTSYNC.EXE
    O4 - Startup: OpenOffice.org 2.0.lnk = C:\Programmi\OpenOffice.org
    2.0\program\quickstart.exe
    O4 - Global Startup: Pinnacle Scheduler.lnk = ?
    O8 - Extra context menu item: &NeoTrace It! -
    C:\PROGRA~1\NEOTRA~1\NTXcontext.htm
    O8 - Extra context menu item: E&sporta in Microsoft Excel -
    res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Salva oggetto con Net Transport -
    C:\Programmi\Xi\NetTransport 2\NTAddLink.html
    O8 - Extra context menu item: Salva tutti gli oggetti con Net Transport -
    C:\Programmi\Xi\NetTransport 2\NTAddList.html
    O8 - Extra context menu item: Scarica con Free Download Manager -
    file://C:\Programmi\Free Download Manager\dllink.htm
    O8 - Extra context menu item: Scarica selezionati con Free Download
    Manager - file://C:\Programmi\Free Download Manager\dlselected.htm
    O8 - Extra context menu item: Scarica sito web con Free Download Manager -
    file://C:\Programmi\Free Download Manager\dlpage.htm
    O8 - Extra context menu item: Scarica tutto con Free Download Manager -
    file://C:\Programmi\Free Download Manager\dlall.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
    C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console -
    {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
    C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Run WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} -
    C:\Programmi\WinHTTrack\WinHTTrackIEBar.dll
    O9 - Extra 'Tools' menuitem: Launch WinHTTrack -
    {36ECAF82-3300-8F84-092E-AFF36D6C7040} -
    C:\Programmi\WinHTTrack\WinHTTrackIEBar.dll
    O9 - Extra button: FreshDownload - {7EE9706D-122D-44A7-9F72-79C609933884} -
    C:\Programmi\FreshDevices\FreshDownload\fd.exe
    O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
    C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: @C:\Programmi\Messenger\Msgslang.dll,-61144 -
    {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: @C:\Programmi\Messenger\Msgslang.dll,-61144 -
    {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
    O9 - Extra button: NeoTrace It! - {9885224C-1217-4c5f-83C2-00002E6CEF2B} -
    C:\PROGRA~1\NEOTRA~1\NTXtoolbar.htm (HKCU)
    O10 - Broken Internet access because of LSP provider 'bmnet.dll' missing
    O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) -
    http://www.nullsoft.com/nsv/embed/nsvplayx_vp3_mp3.cab
    O17 -
    HKLM\System\CCS\Services\Tcpip\..\{AC9B0AA9-D84F-4AE8-B1FB-BF6F1C028A30}:
    NameServer = 85.37.17.17 85.38.28.72
    O23 - Service: Bytemobile Web Configurator (bmwebcfg) - Bytemobile, Inc. -
    C:\WINDOWS\system32\bmwebcfg.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation -
    C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) -
    Symantec Corporation - C:\Programmi\Norton Internet Security\ccPwdSvc.exe
    O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation -
    C:\Programmi\File comuni\Symantec Shared\ccProxy.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec
    Corporation - C:\Programmi\File comuni\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation -
    C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
    O23 - Service: COM Host (comHost) - Symantec Corporation -
    C:\Programmi\Norton Internet Security\comHost.exe
    O23 - Service: GEARSecurity - GEAR Software -
    C:\WINDOWS\System32\GEARSec.exe
    O23 - Service: InCD Helper (InCDsrv) - Nero AG -
    C:\Programmi\Ahead\InCD\InCDsrv.exe
    O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software -
    C:\Programmi\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
    O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. -
    C:\WINDOWS\system32\LEXBCES.EXE
    O23 - Service: Servizio Auto-Protect di Norton AntiVirus (navapsvc) -
    Symantec Corporation - C:\Programmi\Norton Internet Security\Norton
    AntiVirus\navapsvc.exe
    O23 - Service: Norton Ghost - Symantec Corporation - C:\Programmi\Norton
    Ghost\Agent\VProSvc.exe
    O23 - Service: Norton Protection Center Service (NSCService) - Symantec
    Corporation - C:\Programmi\File comuni\Symantec Shared\Security
    Console\NSCSRVCE.EXE
    O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) -
    Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f
    "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
    O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation -
    C:\Programmi\Norton Internet Security\Norton AntiVirus\SAVScan.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec
    Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
    O23 - Service: Snoop Free Service (SnoopFreeSvc) - Unknown owner -
    C:\WINDOWS\System32\SnoopFreeSvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation -
    C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programmi\File
    comuni\Symantec Shared\CCPD-LC\symlcsvc.exe

    Thank you.
    Giovanni
    "Sebastian Gottschalk" <> ha scritto nel messaggio
    news:...
    > GRL wrote:
    >> Ok, I've got the log of HijackThis. Where can I post it (or send by
    >> mail)?

    >
    > You might post it here.
    >
    >> I'm not as expert as to undetsand what's bad or not in that log.

    >
    > For some general tests you might take a look at the automated
    > analyzation at http://www.hijackthis.de
    >
    > BTW, you should also take a look at http://learn.to/quote
     
    GRL, Apr 2, 2006
    #5
  6. From: "GRL" <>

    | I've used the address for the automated analyzation, nothing bad according
    | this analysis.
    | These are the contents of the log:
    | Logfile of HijackThis v1.99.1
    | Scan saved at 11.09.42, on 02/04/2006
    | Platform: Windows XP SP2 (WinNT 5.01.2600)
    | MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    This and other News Groups are NOT the right place to post HiJack This logs.

    Forums where you can get expert advice for HiJack This! (HJT) logs.
    NOTE: Registration is REQUIRED before posting a log
    NOTE: Web sites NOT listed in any particular order

    http://aumha.net/viewforum.php?f=30
    http://www.bleepingcomputer.com/forums/forum22.html
    http://www.dslreports.com/forum/security
    http://castlecops.com/forum67.html
    http://www.wilderssecurity.com/forumdisplay.php?f=24
    http://www.cybertechhelp.com/forums/forumdisplay.php?f=25
    http://www.geekstogo.com/forum/Malware_Removal_HiJackThis_Logs_Go_Here-f37.html
    http://gladiator-antivirus.com/forum/index.php?showforum=170
    http://forum.iamnotageek.com/f-130.html
    http://forums.maddoktor2.com/index.php?showforum=17
    http://www.spywarewarrior.com/viewforum.php?f=5
    http://forums.spywareinfo.com/index.php?showforum=18
    http://forums.techguy.org/f54-s.html
    http://forums.tomcoyote.org/index.php?showforum=27
    http://forums.subratam.org/index.php?showforum=7
    http://boards.cexx.org/viewforum.php?f=1
    http://www.malwarebytes.biz/forums/index.php?showforum=5

    { borrowed from the alt.privacy.spyware News Group }

    --
    Dave
    http://www.claymania.com/removal-trojan-adware.html
    http://www.ik-cs.com/got-a-virus.htm
     
    David H. Lipman, Apr 3, 2006
    #6
  7. GRL

    Neon Knight Guest

    "GRL" <> wrote in
    news:-privat.org:

    > My IE (6) isn't able to connect to any site:


    I'm having the same problem. Just started happening. Firefox and Opera
    work fine but IE6 doesn't seem to be doing anything.
     
    Neon Knight, Apr 3, 2006
    #7
  8. GRL

    GRL Guest

    Sebastian said I could do. He tried to help me.
    Giovanni

    "David H. Lipman" <DLipman~nospam~@Verizon.Net> ha scritto nel messaggio
    news:S5%Xf.5519$Up2.707@trnddc07...
    > From: "GRL" <>
    >
    > | I've used the address for the automated analyzation, nothing bad
    > according
    > | this analysis.
    > | These are the contents of the log:
    > | Logfile of HijackThis v1.99.1
    > | Scan saved at 11.09.42, on 02/04/2006
    > | Platform: Windows XP SP2 (WinNT 5.01.2600)
    > | MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    >
    > This and other News Groups are NOT the right place to post HiJack This
    > logs.
    >
    > Forums where you can get expert advice for HiJack This! (HJT) logs.
    > NOTE: Registration is REQUIRED before posting a log
    > NOTE: Web sites NOT listed in any particular order
    >
    > http://aumha.net/viewforum.php?f=30
    > http://www.bleepingcomputer.com/forums/forum22.html
    > http://www.dslreports.com/forum/security
    > http://castlecops.com/forum67.html
    > http://www.wilderssecurity.com/forumdisplay.php?f=24
    > http://www.cybertechhelp.com/forums/forumdisplay.php?f=25
    > http://www.geekstogo.com/forum/Malware_Removal_HiJackThis_Logs_Go_Here-f37.html
    > http://gladiator-antivirus.com/forum/index.php?showforum=170
    > http://forum.iamnotageek.com/f-130.html
    > http://forums.maddoktor2.com/index.php?showforum=17
    > http://www.spywarewarrior.com/viewforum.php?f=5
    > http://forums.spywareinfo.com/index.php?showforum=18
    > http://forums.techguy.org/f54-s.html
    > http://forums.tomcoyote.org/index.php?showforum=27
    > http://forums.subratam.org/index.php?showforum=7
    > http://boards.cexx.org/viewforum.php?f=1
    > http://www.malwarebytes.biz/forums/index.php?showforum=5
    >
    > { borrowed from the alt.privacy.spyware News Group }
    >
    > --
    > Dave
    > http://www.claymania.com/removal-trojan-adware.html
    > http://www.ik-cs.com/got-a-virus.htm
    >
    >
     
    GRL, Apr 3, 2006
    #8
  9. GRL wrote:

    > Sebastian said I could do. He tried to help me. Giovanni


    Sebastian is a notorious net kook. He probably told you to do it just so
    he could GET you in trouble.

    I realize it's not your fault. You didn't know. But there are forums
    specifically designed for posting HijackThis logs. Not only will you get
    better answers there, but you won't pester the readers of other groups and
    fall victim to the bad advice idiots like Gottschalk give you.
     
    George Orwell, Apr 3, 2006
    #9
  10. GRL

    traveler 66 Guest

    "GRL" <> wrote in message
    news:-privat.org...
    > My IE (6) isn't able to connect to any site: it remains still, without

    even
    > trying to solve the name (only the right-upside flag waves...).
    > No virus found (I use NAV), no restriction for IE in the firewall (I use
    > Kerio 4), no other malware (run Spybot): I don't undestand how to recover.

    I
    > tried practically everything, found suggestions in IE newsgroups: nothing
    > seems to be able to repair my IE.
    > Maybe some other suggestions from this newsgroup
    > Thanks to all.
    > Giovanni


    Hi, you could spin your wheels on this one for a while and IE isn't the
    safest browser in any event. Try Mozilla, great rep and performance,
    regards.
     
    traveler 66, Apr 3, 2006
    #10
  11. George Orwell wrote:

    > Sebastian is a notorious net kook. He probably told you to do it just so
    > he could GET you in trouble.


    No, I told him because it's part of the discussion.

    > But there are forums
    > specifically designed for posting HijackThis logs. Not only will you get
    > better answers there,


    Hey, I already pointed him that the automated analyzes.

    > but you won't pester the readers of other groups and
    > fall victim to the bad advice idiots like Gottschalk give you.


    I guess then you can tell us in detail why me advices should be bad and
    why this is not just your personal opinion, but real facts.
     
    Sebastian Gottschalk, Apr 3, 2006
    #11
  12. GRL wrote:

    > C:\WINDOWS\system32\LEXBCES.EXE
    > C:\WINDOWS\system32\LEXPPS.EXE
    > C:\WINDOWS\system32\LXSUPMON.EXE
    > C:\Programmi\Lexmark 2200 Series\lxbvbmgr.exe
    > C:\Programmi\Lexmark 2200 Series\lxbvbmon.exe


    Causes certain problems, but so far I haven't seen any network-related
    problems.

    > C:\Programmi\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
    > C:\Programmi\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
    > C:\Programmi\Sunbelt Software\Personal Firewall 4\kpf4gui.exe


    I already suggested getting rid of that.

    > C:\Programmi\Norton Internet Security\Norton AntiVirus\navapsvc.exe


    That doesn't sound good. NIS, even just when NAV installed, causes a lot
    of network-related problems.

    > C:\WINDOWS\SOUNDMAN.EXE


    This is always fun. It could be the AL650 audio driver configuration
    tool, it could also be a well-known worm.

    > C:\WINDOWS\SnoopFreeUI.exe


    Don't know, does it network stuff?

    > O2 - BHO: Norton Internet Security 2006 -
    > {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programmi\File comuni\Symantec
    > Shared\AdBlocking\NISShExt.dll
    > O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} -
    > C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    > O3 - Toolbar: Norton Internet Security 2006 -
    > {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programmi\File comuni\Symantec
    > Shared\AdBlocking\NISShExt.dll
    > O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} -
    > C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    > O3 - Toolbar: FreshDownload Bar - {ED0E8CA5-42FB-4B18-997B-769E0408E79D} -


    Potentially problematic.

    > O4 - HKLM\..\Run: [ioloDelayModule] C:\Programmi\iolo\System Mechanic
    > 6\delay.exe
    > O4 - HKLM\..\Run: [errorkiller] "C:\Program
    > Files\errorkiller\errorkiller.exe" -boot


    Get this crap away ASAP

    > O10 - Broken Internet access because of LSP provider 'bmnet.dll' missing


    This looks very troublesome, probably the cause.


    Generally it seems you're running a LOT of crappy software. My very own
    log is about a 5th of yours, that only due to driver/management stuff
    and certain false positives.
     
    Sebastian Gottschalk, Apr 3, 2006
    #12
  13. GRL

    donnie Guest

    On Sun, 02 Apr 2006 22:06:42 -0500, Neon Knight <> wrote:

    >"GRL" <> wrote in
    >news:-privat.org:
    >
    >> My IE (6) isn't able to connect to any site:

    >
    >I'm having the same problem. Just started happening. Firefox and Opera
    >work fine but IE6 doesn't seem to be doing anything.

    ###################################
    Don't forget to post your logs.
     
    donnie, Apr 4, 2006
    #13
  14. GRL

    Winged Guest

    donnie wrote:
    > On Sun, 02 Apr 2006 22:06:42 -0500, Neon Knight <> wrote:
    >
    >
    >>"GRL" <> wrote in
    >>news:-privat.org:
    >>
    >>
    >>>My IE (6) isn't able to connect to any site:

    >>
    >>I'm having the same problem. Just started happening. Firefox and Opera
    >>work fine but IE6 doesn't seem to be doing anything.

    >
    > ###################################
    > Don't forget to post your logs.


    I have current patch level. No issues. It sounds like someone has
    finally fixed IE...lol.

    I concur with previous poster that IE history makes it unsafe at any
    speed. I haven't used IE for general browsing in ages.

    It sounds like most recent the most recent patches may have
    hiccuped...curious what you find is the issue though.
    Winged
     
    Winged, Apr 4, 2006
    #14
  15. Winged wrote:

    > I have current patch level. No issues. It sounds like someone has
    > finally fixed IE...lol.


    I'm counting 52 unpatched security holes, 24 being critical. The oldest
    one is from '99, the oldest one without any workaround possibility is
    from '01. Welcome to Trustworthy Computing!

    > I concur with previous poster that IE history makes it unsafe at any
    > speed. I haven't used IE for general browsing in ages.


    IE history documents its design errors. The issues arising from random
    program errors are pretty typical and not a sign of incompetence, but
    leaving the unpatched can't be good either.
     
    Sebastian Gottschalk, Apr 4, 2006
    #15
    1. Advertising

Want to reply to this thread or ask your own question?

It takes just 2 minutes to sign up (and it's free!). Just click the sign up button to choose a username and then you can ask your own questions on the forum.
Similar Threads
  1. Old Ranger

    Blocked Port

    Old Ranger, Feb 27, 2005, in forum: Wireless Networking
    Replies:
    0
    Views:
    516
    Old Ranger
    Feb 27, 2005
  2. J Lunis

    blocked ports

    J Lunis, Jul 26, 2005, in forum: Wireless Networking
    Replies:
    0
    Views:
    538
    J Lunis
    Jul 26, 2005
  3. GCS

    Cookies not blocked...

    GCS, Jul 23, 2003, in forum: Firefox
    Replies:
    0
    Views:
    1,016
  4. joe
    Replies:
    1
    Views:
    564
  5. DR

    Firefox is blocked

    DR, Aug 17, 2005, in forum: Firefox
    Replies:
    8
    Views:
    3,809
    Nikos Chantziaras
    Aug 19, 2005
Loading...

Share This Page