Jump to content

Recommended Posts

Hi im having this weird probably connecting to the internet. Im knowledgeable about computers but this problem has baffled me. I have been working on this problem for over a month now and went nowhere. i have 2 other computers wired to a router and they both work fine and 2 laptops connected via wireless and they all work fine. The computer thats not working had mcafee antivirus installed..subscription expired and did not renew and i uninstalled it. I thought mcafee was stopping my connection to the internet but it wasn't. Found traces of mcafee stuff still installed but removed it through the registry and with use of a program called perfect uninstaller. After all that still no internet working. The internet first stopped working when my dad installed cisco vpn client. I deleted and uninstalled that but still no use. I also called my isp..was told to go to command prompt and do flushdns..release and renew..all that did not work either. They said from there end everything looks fine and its probably something taking my connection. I tried all tools like winsock fix... registry cleaners tc/ip connection fixes ip stack configuration fixes..you name it i tried it..i even deleted the ethernet card drivers and reinstalled and updated it. Today i bought a usb wirless dongle to see if maybe the eithernet card is bad and that didnt work either. Im all out of ideas now and seeking a professional take on this. Here is my hijackthis log.

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 2:47:50 PM, on 5/13/2011

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe

C:\Program Files\Creative\SBAudigy2ZS\Surround Mixer\CTSysVol.exe

C:\Program Files\Creative\SBAudigy2ZS\DVDAudio\CTDVDDET.EXE

C:\WINDOWS\system32\CTHELPER.EXE

C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe

C:\Program Files\Logitech\MouseWare\system\em_exec.exe

C:\WINDOWS\system32\dla\tfswctrl.exe

C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe

C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe

C:\Program Files\Dell Support Center\bin\sprtcmd.exe

C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe

C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

C:\Program Files\Common Files\Java\Java Update\jusched.exe

C:\Program Files\QuickTime\qttask.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\Program Files\DellSupport\DSAgnt.exe

C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

C:\Program Files\Microsoft ActiveSync\wcescomm.exe

C:\Program Files\Windows Media Player\WMPNSCFG.exe

C:\PROGRA~1\MI3AA1~1\rapimgr.exe

C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\WINDOWS\system32\CTsvcCDA.EXE

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe

C:\WINDOWS\system32\inetsrv\inetinfo.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe

C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

C:\Program Files\Dell Support Center\bin\sprtsvc.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Viewpoint\Common\ViewpointService.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Program Files\Canon\CAL\CALMAIN.exe

C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe

C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe

C:\Program Files\NETGEAR\WG111v3\WG111v3.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

O2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\Snagit 10\SnagitBHO.dll

O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: IEPlugin Class - {11222041-111B-46E3-BD29-EFB2449479B1} - C:\PROGRA~1\ArcSoft\VIDEOD~1\ARCURL~1.DLL

O2 - BHO: (no name) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - (no file)

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: (no name) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - (no file)

O2 - BHO: Java

Link to post
Share on other sites

Hello there :)

You sure do have a lot of processes running on your system. A couple of them sounds similar to some malware that I removed from a friend's computer. However, we don't work on malware removal in this part of the forums.

Please read and follow the directions here, skipping any steps you are unable to complete.

If no malware is found then let us know and we'll be glad to continue helping you. If you do find some malware, then create a NEW topic here.

One of the expert helpers there will give you one on one assistance when one becomes available.

Please note that it may take 48 hours or more for you to receive a response in the malware removal forum, as it is often busy at times. Please do not reply to your own post asking for help unless its been more than 48 hours since you originally posted, as this can make it appear as though you are being helped and take longer for you to get help.

If you are unable to do all or any of the steps in the link to the directions above, just post your problem into the forum I gave you a link to anyway and someone will be able to assist you.

If you prefer to be assisted via email you may contact support@malwarebytes.org and one of our support staff members will assist you directly.

If you are a reseller, affiliate, technician, corporate, business, educational, government or non-profit customer then please contact corporate-support@malwarebytes.org and include full contact details along with your Reference # when you do to ensure that you receive prompt assistance.

Thank you :)

Link to post
Share on other sites

Hello there :)

You sure do have a lot of processes running on your system. A couple of them sounds similar to some malware that I removed from a friend's computer. However, we don't work on malware removal in this part of the forums.

Please read and follow the directions here, skipping any steps you are unable to complete.

If no malware is found then let us know and we'll be glad to continue helping you. If you do find some malware, then create a NEW topic here.

One of the expert helpers there will give you one on one assistance when one becomes available.

Please note that it may take 48 hours or more for you to receive a response in the malware removal forum, as it is often busy at times. Please do not reply to your own post asking for help unless its been more than 48 hours since you originally posted, as this can make it appear as though you are being helped and take longer for you to get help.

If you are unable to do all or any of the steps in the link to the directions above, just post your problem into the forum I gave you a link to anyway and someone will be able to assist you.

If you prefer to be assisted via email you may contact support@malwarebytes.org and one of our support staff members will assist you directly.

If you are a reseller, affiliate, technician, corporate, business, educational, government or non-profit customer then please contact corporate-support@malwarebytes.org and include full contact details along with your Reference # when you do to ensure that you receive prompt assistance.

Thank you :)

Hi there...well i just dont know where i should really go...my first post about this was last week in the malware section..got no response till yesterday and a mod said my problem doesnt seem to be a malware problem and i should post this in the pc help section..soo really why am i getting the run around?? and besides that i did all those steps already...havent posted logs because no on asked....

Link to post
Share on other sites

Your thread in the other forum was locked so if you will make another post in that forum someone will assist you. Please remember to not BUMP your thread as it will only delay someone the time it takes for someone to assist you. I spoke with a Moderator earlier today about this thread and he confirmed that the Malware Removal forum is correct forum for you to post this.

I'm sorry for any inconvenience that this has caused you.

Link to post
Share on other sites

It could be that there are leftover components of McAfee, please do the following:

Remove all McAfee products:

  • Download McAfee Consumer Products Removal Tool from here and save it to your desktop but do not run it yet.
  • Click Start and select Control Panel
  • Open Add/Remove Programs
  • Select McAfee Security Center and select Uninstall or Remove
  • When it asks if you wish to remove all McAfee products confirm that you do
  • Follow the instructions for removing it and reboot if required
  • After that's complete, double click the MCPR.exe file you downloaded to run it and it will remove any remnants of McAfee from your system so they don't cause issues with your new antivirus software
  • Reboot if required to do so by MCPR

It also appears that you have no antivirus installed at the moment (though I do see some traces of AVG in you log). If you aren't infected, you soon will be without an antivirus.

The following are my personal recommendations for antivirus protection along with links to downloads for them (free trials for those that require a purchase so you can try them before deciding):

Note: If you decide to use one of the trial versions of one of the paid antiviruses then you will either need to purchase it or uninstall it completely and install a replacement antivirus before the trial expires so that your PC is not left unprotected.

Also note that if using the paid version of Malwarebytes' Anti-Malware with your antivirus in realtime that it is generally a good idea to exclude Malwarebytes' files from your antivirus to avoid conflicts. The FAQ contains examples of setting file exclusions for some known AV products.

Once you get an AV installed, update it if possible (assuming you now have internet access) and then perform a full scan of your system to verify that you're clean.

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.