| Forum Home | ||||
| Press F1 | ||||
| Thread ID: 94205 | 2008-10-19 21:36:00 | HJT log - IE7 problem | linw (53) | Press F1 |
| Post ID | Timestamp | Content | User | ||
| 713278 | 2008-10-19 21:36:00 | Sorry to be a nuisance but I have another log from a friend's machine . I have checked the running progs but could not see anything nasty . AVG scans clean as well . The major problem with this setup is that IE7 takes about a minute to load properly but then works OK . It looks like it is looking for something that eventually times out . Probably connected with this is that Tools/Options/Connections has all options greyed out . The Never dial has the selection so this is what it should be . I thought maybe a proxy had been added but not so . Sounds like FF may be a good fix!! Cheers and thanks . Logfile of Trend Micro HijackThis v2 . 0 . 2 Scan saved at 10:56:47 a . m . , on 20/10/2008 Platform: Windows XP SP2 (WinNT 5 . 01 . 2600) MSIE: Internet Explorer v7 . 00 (7 . 00 . 6000 . 16735) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss . exe C:\WINDOWS\system32\winlogon . exe C:\WINDOWS\system32\services . exe C:\WINDOWS\system32\lsass . exe C:\WINDOWS\system32\svchost . exe C:\Program Files\Windows Defender\MsMpEng . exe C:\WINDOWS\System32\svchost . exe C:\WINDOWS\system32\spoolsv . exe C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv . exe C:\PROGRA~1\AVG\AVG8\avgwdsvc . exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService . exe C:\Program Files\LogMeIn\x86\RaMaint . exe C:\Program Files\LogMeIn\x86\LogMeIn . exe C:\Program Files\LogMeIn\x86\LMIGuardian . exe C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer . exe C:\PROGRA~1\AVG\AVG8\avgrsx . exe C:\Program Files\SPAMfighter\sfus . exe C:\WINDOWS\system32\svchost . exe C:\PROGRA~1\AVG\AVG8\avgemc . exe C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer . exe C:\WINDOWS\Explorer . EXE C:\Program Files\Windows Defender\MSASCui . exe C:\Program Files\LogMeIn\x86\LogMeInSystray . exe C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper . exe C:\PROGRA~1\AVG\AVG8\avgtray . exe C:\Program Files\LogMeIn\x86\LMIGuardian . exe C:\Program Files\SPAMfighter\SFAgent . exe C:\Program Files\Skype\Phone\Skype . exe C:\WINDOWS\system32\ctfmon . exe C:\Program Files\Google\Google Updater\GoogleUpdater . exe C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager . exe C:\Program Files\Skype\Plugin Manager\SkypePM . exe C:\WINDOWS\system32\wuauclt . exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService . exe C:\Program Files\zabkat\xplorer2_lite\xplorer2 . exe C:\Program Files\Trend Micro\HijackThis\HijackThis . exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = . microsoft . com/fwlink/?LinkId=69157" target="_blank">go . microsoft . com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = . microsoft . com/fwlink/?LinkId=54896" target="_blank">go . microsoft . com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = . microsoft . com/fwlink/?LinkId=54896" target="_blank">go . microsoft . com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = . microsoft . com/fwlink/?LinkId=69157" target="_blank">go . microsoft . com O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7 . 0\ActiveX\AcroIEHelper . dll O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin . dll O2 - BHO: WormRadar . com IESiteBlocker . NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie . dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1 . 6 . 0_07\bin\ssv . dll O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1 . DLL O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1 . dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3 . 0 . 1225 . 9868\s wg . dll (file missing) O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1 . dll O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1 . DLL O4 - HKLM\ . . \Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui . exe" -hide O4 - HKLM\ . . \Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray . exe" O4 - HKLM\ . . \Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper . exe" O4 - HKLM\ . . \Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam . exe" /hide O4 - HKLM\ . . \Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray . exe O4 - HKLM\ . . \Run: [SPAMfighter Agent] "C:\Program Files\SPAMfighter\SFAgent . exe" update delay 60 O4 - HKCU\ . . \Run: [Skype] "C:\Program Files\Skype\Phone\Skype . exe" /nosplash /minimized O4 - HKCU\ . . \Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier . exe O4 - HKCU\ . . \Run: [ctfmon . exe] C:\WINDOWS\system32\ctfmon . exe O4 - HKUS\S-1-5-19\ . . \Run: [CTFMON . EXE] C:\WINDOWS\system32\CTFMON . EXE (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\ . . \Run: [CTFMON . EXE] C:\WINDOWS\system32\CTFMON . EXE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\ . . \Run: [CTFMON . EXE] C:\WINDOWS\system32\CTFMON . EXE (User 'SYSTEM') O4 - HKUS\ . DEFAULT\ . . \Run: [CTFMON . EXE] C:\WINDOWS\system32\CTFMON . EXE (User 'Default user') O4 - Global Startup: Google Updater . lnk = C:\Program Files\Google\Google Updater\GoogleUpdater . exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL . EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1 . 6 . 0_07\bin\ssv . dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1 . 6 . 0_07\bin\ssv . dll O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin . dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR . DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag . exe O9 - Extra 'Tools' menuitem: @xpsp3res . dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag . exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs . exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs . exe O12 - Plugin for . spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox . dll O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - . photobox . co . uk/sg/common/uploader_uni . cab" target="_blank">static . photobox . co . uk O17 - HKLM\System\CCS\Services\Tcpip\ . . \{8B5943D2-9639-49CD-8C6F-4E91D84BBA4F}: NameServer = 203 . 109 . 252 . 42 O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480 . dll O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp . dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1 . DLL O20 - AppInit_DLLs: avgrsstx . dll O23 - Service: Apple Mobile Device - Apple, Inc . - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService . exe O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s . r . o . - C:\PROGRA~1\AVG\AVG8\avgemc . exe O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s . r . o . - C:\PROGRA~1\AVG\AVG8\avgwdsvc . exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService . exe O23 - Service: iPod Service - Apple Inc . - C:\Program Files\iPod\bin\iPodService . exe O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc . - C:\Program Files\LogMeIn\x86\RaMaint . exe O23 - Service: LogMeIn - LogMeIn, Inc . - C:\Program Files\LogMeIn\x86\LogMeIn . exe O23 - Service: LVCOMSer - Logitech Inc . - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer . exe O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc . - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv . exe O23 - Service: LVSrvLauncher - Logitech Inc . - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch . exe O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus . exe -- End of file - 7904 bytes |
linw (53) | ||
| 713279 | 2008-10-19 21:53:00 | Probably connected with this is that Tools/Options/Connections has all options greyed out. The Never dial has the selection so this is what it should be. I thought maybe a proxy had been added but not so. Same here, altho, it looks like (even tho I've created the dialup, and made the shortcut for it, which is on the desktop). I've just noticed the entry I created (for dialup) is no longer in network connections XP may have disabled it since I'm on BB I would get rid of AVG or Defender, you dont need both Uninstall all versions of Java, its been updated recently Is he on broadband or dialup?? I take it, he's on BB? |
Speedy Gonzales (78) | ||
| 713280 | 2008-10-19 22:04:00 | It is on BB . I forgot to mention that it was originally trying to dial out when IE was loaded so I deleted both the diallers that were there . I was concerned about a malware dialler being installed . When Outlook is fired up it gets to the Internet without a problem so it seems to be an issue with IE7 . Thanks - trying to decide whether to carry on troubleshooting or just install FF!! |
linw (53) | ||
| 713281 | 2008-10-19 22:10:00 | Thats why its ghosted out then. There has to be a dialup entry for you to configure it. I've just re-created my dialup connection, and now I can configure it under tools/options/connections (it wouldnt apply to BB) I dont think it can dial out (even if u get a dialler) using BB. And it probably wont dial out (using dialup) if the (dialup modem) isnt connected to the phone jack anyway It maybe an addon in IE thats causing probs. Disable them under addons (maybe except Java related ones and shockwave (if you have it). |
Speedy Gonzales (78) | ||
| 713282 | 2008-10-19 22:14:00 | OOooops, yes, just noticed my IE doesn't have options enabled if there is no dialler. Red instead of grey herring!! Yea, I'll try heaving add-ons one by one. |
linw (53) | ||
| 713283 | 2008-10-19 22:23:00 | There's a great little app called BHO Captor that removes addon's etc really easily. Give that a shot. :thumbs: | nofam (9009) | ||
| 713284 | 2008-10-19 23:33:00 | Well, I have found the offender and it was one of the last ones I would have picked. Google Toolbar!! No idea what it was doing at startup but I installed the latest beta version and problem has gone away. Thanks for help Speedy and nofam. |
linw (53) | ||
| 713285 | 2008-10-19 23:38:00 | No probs, does it use indexing?? If it does, disable it | Speedy Gonzales (78) | ||
| 1 | |||||