1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

Solved: Internet Explorer 6 Error (moved from Web & Email)

Discussion in 'Virus & Other Malware Removal' started by pranabgohain, Jun 19, 2007.

Thread Status:
Not open for further replies.
Advertisement
  1. pranabgohain

    pranabgohain It's My Birthday! Thread Starter

    Joined:
    Jun 12, 2007
    Messages:
    52
    I have a problem with IE 6. Though I had seen someone post a similar problem yesterday (with no replies), I cant find it today hence am posting again.

    Earlier, whenever I used to open IE it gave me some error or the other and used to shut down. Now suddenly it seems to be working fine, but whenever I try to open an FTP site, it gives me the error "Internet Explorer has encountered a problem and needs to close. We are sorry for the inconvenience" (Screenshot Here)

    I look forward to some help here. I am using Firefox for now.

    I have tried uninstalling/repairing it umpteen number of times. I have tried Windows Update this morning and it says my copy is updated.

    Cheers!
     
  2. Blackmirror

    Blackmirror

    Joined:
    Dec 5, 2006
    Messages:
    32,641
    Have you tried updating to ie 7
     
  3. pranabgohain

    pranabgohain It's My Birthday! Thread Starter

    Joined:
    Jun 12, 2007
    Messages:
    52
    No I have not. As I hate that version and once installed, I am told, it is not possible to revert back to IE 6.

    Please help!!

    I also get a similar screen often, with the Heading "Generic Host Process for Win32 Services has encountered a problem. If you were in the middle of something your data might be lost". And it restarts EXPLORER.

    SOS!!!
     
  4. Blackmirror

    Blackmirror

    Joined:
    Dec 5, 2006
    Messages:
    32,641
    HAve you got an xp cd
    try start run
    sfc /scannow
     
  5. pranabgohain

    pranabgohain It's My Birthday! Thread Starter

    Joined:
    Jun 12, 2007
    Messages:
    52
    Let me try it out.

    Thanks a ton Bro. Will let you know if it worked.

    Cheers!
     
  6. Blackmirror

    Blackmirror

    Joined:
    Dec 5, 2006
    Messages:
    32,641
    Do you get a countdown screen when this error happens
    You might have the blaster worm


    Click here to download HJTsetup.exe
    Save HJTsetup.exe to your desktop.

    Double click on the HJTsetup.exe icon on your desktop.
    By default it will install to C:\Program Files\Hijack This.
    Continue to click Next in the setup dialogue boxes until you get to the Select Addition Tasks dialogue.
    Put a check by Create a desktop icon then click Next again.
    Continue to follow the rest of the prompts from there.
    At the final dialogue box click Finish and it will launch Hijack This.
    Click on the Do a system scan and save a log file button. It will scan and then ask you to save the log.
    Click Save to save the log file and then the log will open in notepad.
    Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
    Come back here to this thread and Paste the log in your next reply.
    DO NOT have Hijack This fix anything yet. Most of what it finds will be harmless or even required.
     
  7. Xperience

    Xperience

    Joined:
    Feb 13, 2007
    Messages:
    132
    Actually, it is possible to revert back to IE6 after installing IE7.
     
  8. pranabgohain

    pranabgohain It's My Birthday! Thread Starter

    Joined:
    Jun 12, 2007
    Messages:
    52
    I don't see no countdown.

    Here's what I got out of "Hijack This"

    Logfile of HijackThis v1.99.1
    Scan saved at 3:50:25 PM, on 6/19/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\System32\ibmpmsvc.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    D:\Program Files\Lavasoft\Ad-Aware SE Personal\aawservice.exe
    C:\WINDOWS\System32\Ati2evxx.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
    C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
    C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    C:\Program Files\Network Associates\VirusScan\Mcshield.exe
    C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\System32\QCONSVC.EXE
    C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\TpKmpSVC.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\Program Files\ThinkPad\PkgMgr\HOTKEY\TPONSCR.exe
    C:\PROGRA~1\ThinkPad\UTILIT~1\TP98TRAY.EXE
    C:\Program Files\ThinkPad\PkgMgr\HOTKEY_1\TpScrex.exe
    C:\Program Files\ThinkPad\ConnectUtilities\QCWLICON.EXE
    C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe
    C:\Program Files\Support.com\bin\tgcmd.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
    C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
    C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
    C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
    C:\Program Files\Analog Devices\SoundMAX\smax4.exe
    C:\Program Files\Analog Devices\SoundMAX\Smtray.exe
    C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
    C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
    D:\Program Files\Mozilla Firefox\firefox.exe
    D:\Program Files\Hijackthis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 172.16.9.250:8080
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = http://viznet.vsnl.co.in;https://ma...http://loginmum.tataindicombroadband.in:8080; ttlprd12-oaas.tatatel.co.in;vsnlcrm.tatanova.com;dome.ttlappsdev.com;TTLMUMQA-03.ttlmumbai.com;ttlprd01-oadb.ttlapps.com;ttlprd02-oaas.ttlapps.com;ttlprd11-oadb.ttlapps.com;ttlprd12-oaas.ttlapps.com;ttlprd02-oaas.tatatel.co.in;ttlprd12-oaas.tatatel.co.in;172.16.*.*,172.17.*.*;172.18.*.*;172.19.*.*;172.20.*.*;192.168.*.*;172.24.*.*;172.25.*.*;<local>
    O2 - BHO: Shell Search Engine and Control Microsoft - {0000DE80-AEC3-70C3-4176-CE509063E000} - C:\WINDOWS\system32\mscorews.dll
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - D:\Program Files\BitComet\tools\BitCometBHO_1.1.5.19.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: NOW!Imaging - {9AA2F14F-E956-44B8-8694-A5B615CDF341} - D:\Program Files\ONSPEED\components\NOWImaging.dll (file missing)
    O4 - Global Startup: VPN Client.lnk = ?
    O8 - Extra context menu item: &D&ownload &with BitComet - res://D:\Program Files\BitComet\BitComet.exe/AddLink.htm
    O8 - Extra context menu item: &D&ownload all video with BitComet - res://D:\Program Files\BitComet\BitComet.exe/AddVideo.htm
    O8 - Extra context menu item: &D&ownload all with BitComet - res://D:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
    O15 - Trusted Zone: *.IND-PROXY-01
    O15 - Trusted Zone: www.orkut.com
    O15 - Trusted Zone: ftpindia.vsnl.co.in
    O15 - Trusted IP range: 172.16.9.122
    O16 - DPF: {0246ECA8-996F-11D1-BE2F-00A0C9037DFE} (TDServer Control) - http://www.aajtak.com/wfplayer/tdserver.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1173167349539
    O16 - DPF: {74FFE28D-2378-11D5-990C-006094235084} (IBM Access Support) - http://www-307.ibm.com/pc/support/IbmEgath.cab
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = vsnl.co.in
    O17 - HKLM\Software\..\Telephony: DomainName = vsnl.co.in
    O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = vsnl.co.in
    O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = vsnl.co.in
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - D:\Program Files\Lavasoft\Ad-Aware SE Personal\aawservice.exe
    O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
    O23 - Service: BeAnyWhere Personal Edition Server (BA2Server) - MN - D:\Program Files\BeAnywhere\Server\BA2Serv.exe
    O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
    O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
    O23 - Service: IBM PM Service (IBMPMSVC) - Unknown owner - C:\WINDOWS\System32\ibmpmsvc.exe
    O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    O23 - Service: Network Associates McShield (McShield) - McAfee, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
    O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
    O23 - Service: PLSRemote Service (PLSRemoteSvc) - Unknown owner - C:\WINDOWS\SYSTEM32\PLSRemote.exe
    O23 - Service: QCONSVC - Unknown owner - C:\WINDOWS\System32\QCONSVC.EXE
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    O23 - Service: IBM KCU Service (TpKmpSVC) - Unknown owner - C:\WINDOWS\system32\TpKmpSVC.exe

    Help!
     
  9. Blackmirror

    Blackmirror

    Joined:
    Dec 5, 2006
    Messages:
    32,641
    Yes i believe you are infected
    I will ask someone from the security team to take a look
    Do not take any advice from anyone without a gold.blue shield
     
  10. pranabgohain

    pranabgohain It's My Birthday! Thread Starter

    Joined:
    Jun 12, 2007
    Messages:
    52
    Thanks a lott!! I'll wait for your feedback.

    Million thanks again!
     
  11. pranabgohain

    pranabgohain It's My Birthday! Thread Starter

    Joined:
    Jun 12, 2007
    Messages:
    52
    Hi,

    Still awaiting help from the Security team :( PLease...

    Cheers!
     
  12. $teve

    $teve

    Joined:
    Oct 9, 2001
    Messages:
    9,397
  13. cybertech

    cybertech Retired Moderator

    Joined:
    Apr 16, 2002
    Messages:
    72,116
    Run HJT again and put a check in the following:

    O2 - BHO: Shell Search Engine and Control Microsoft - {0000DE80-AEC3-70C3-4176-CE509063E000} - C:\WINDOWS\system32\mscorews.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

    Close all applications and browser windows before you click "fix checked".
     
  14. $teve

    $teve

    Joined:
    Oct 9, 2001
    Messages:
    9,397
    I missed that? :mad: :rolleyes: :eek:

    If anyone wants me ill be sat on the naughty step!:eek:
     
  15. cybertech

    cybertech Retired Moderator

    Joined:
    Apr 16, 2002
    Messages:
    72,116
    Happens to all of us! ;)
     
  16. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/585839

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice