I have problems with IE and it all started with some virus I believe. I made the mistake of deleteing something that I didn't know what it was, I think. I couldn't use IE due to the pop-ups that kept popping up like about 16 in about 30 secs and I would close them and they would pop back up right away. Now my IE just locks up when ever I open it. I found IE7 (I had 6) and I thought it might fix my problems but it didn't. Here is my hijackthis log. I hope someone can help. By the way I know I have things on this computer that I don't need or even use but some of them I can't get rid of. Thanks for any help that I receive. I also have ewido so if you all want that also just let me know.
Logfile of HijackThis v1.99.1
Scan saved at 11:37:00 PM, on 6/21/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5346.0005)
_____________________________________________________________________
I was doing some more reading on other post and this is my Rapport log if it would help anyone
SmitFraudFix v2.63
Scan done at 1:49:07.66, Thu 06/22/2006
Run from C:\Documents and Settings\HP_Administrator\My Documents\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Fix ran in normal mode
So ok you running an hp pavillion w/ media center, a dlink usb wifi adapter and your protection is mcaffee and hijack this ...ok.
First off you need to shut That internet connection if you haven't already.Next go into your firewall and deny the suspects access next boot into safe mode and scan for viruses if any viruses are found Quaranteen them reboot ...then tell me what happens...
The reason you do it in safe mode is because it only runs the nessesary files for your computer to run.Scanning in regular mode aint gonna do jack because the processes may be in use or the virus could be in memory.
a few potential problems I noticed as well some of these could be legit though:
C:\WINDOWS\system32\LVCOMSX.EXE
C:\WINDOWS\RTHDCPL.EXE
O2 - BHO: WCNetMon Class - {3BE313C3-DAD6-4da6-801D-75860118A0B5} - C:\Program Files\blcorp\WCCSC\WCPStop\wcpstop.dll
Well buddy next time you surf porn(or whatever). Make sure it's with mozilla firefox and java disabled.If java had not been enabled this would not have happened.To disable it go into options on firefox and then content now uncheck the enable java box.If you need java sometime later you can enable it at anytime.It could have also been messenger.I don't know because I don't know what you were doing when you were infected.
Next get ad-aware and or spybot if you don't already.Hijack this is lame.
well, I did that and i didn't find any viruses only about 14 more adware. My one big problem I have is IE. I can't update my programs due to the fact that everything uses IE to update. It locks up everytime I try to use it, Update or get online. I updated to IE7 thinking it might work but it didn't. Let me know what you need to help further and thanks for the help so far.
ok no viruses...that's a surprise! It's probably malware.It's still good you did it because now we know there not in memory or hiding in another active process.Let me ask do you have warez on your pc?This registry entry worries me.
warez(p2p) can quickly lead to viruses and spyware from downloaded apps.Actually warez it's self contains spyware too and uses it's p2p protocol to download more..But it's mostly adware NOT viruses.
as well as these processes.
C:\WINDOWS\RTHDCPL.EXE (this one bugs me the most)
C:\WINDOWS\system32\LVCOMSX.EXE
C:\WINDOWS\arservice.exe
Quote:well, I did that and i didn't find any viruses only about 14 more adware.
That's not good.I know it has hijacked your browser.I wonder how your posting now you must be using IE right now.You can download mozilla ff here : http://www.mozilla.com/firefox/
Updating will do nothing.
The only thing that will be helpful is this :
When you went into the firwall did you see anything that isn't supposed to be there?Any entry that you don't know what it is?
What were some of the adwares?It should have a log somewhere that would tell you if you forgot.
What site were you on(beleive me Ive seen it all lol So I don't really care)when this happened...
Do you yourself see any processes running and other crap you don't recognize?
also If you need me to email you mozilla,anti-spyware apps... etc because you can't use the net easily.I can but send me a private message with your email address and what you want...And I will send it.
When I bought my computer it had aol internet browser on it but I have never used it till now. I have always heard that aol products have a mind of its own. I'll do some checking on my processess and let you know. A while back I found the ultimate trouble shooter and it kinda tells me what my processes are to a point. I got tired of looking them up online and still not really knowing what they are. This program isn't bad but there are things that are running that the program states there are many uses for the processes and I can't tell what they are for. The other thing is since all my anti- virus, asware, and spyware update useing IE they are out of date by like at least a month and I know with all this a month is kinda the same as years. Mcaffee told me that I have to have IE working in order to update. I don't know really when or were I picked up my problems at but I wish I did. I'll get the other information and post it on here shortly. Thanks
Yeah I dont use mcaffee I use avast antivirus,sunbelt kerio firewall,and adaware/trend micro anti-spyware.The only one that's not free is trend micro anti-spyware.
Hey thanks for the help!! I think I got most of everything taken care of at least my IE so I can update everything. Whatever it is that I had it wiped out some of my mcaffee. I loaded an older version of mcaffee but for some reason it had a conflict with my newer verson of my virus scan. I deleted it and now my IE works. I don't know why but it does. I had to load it and then uninstall it and now IE works. I did load fire fox and another program that you suggested Mainly for the malware scan. You said something in one post about sending you a private mess and maybe getting me a link to your virus scan that you use but I have been on this site long enough to know how to send a private mess yet. I might be interested in a couple of them but i think the avast(????) virus scan might be helpful. I did just find a trojon but i forgot what is was. It was z-bot or something close that nothing will get rid of but when I find out what it is I might have better luck with it lol. But like I said thanks for the help. If it wasn't for people like the ones on this site helping others out alot of people would be lost. Thanks again