Argh, IE crashing suggestions

Russ Smith

The Original Whizzinator
Supporting Member
Joined
May 14, 2002
Posts
87,529
Reaction score
38,775
My company a few months back went around and removed all spyware removal software from systems because they said it would interfere with the software they were installing. Since I got back from Sabbatical I've been crashing IE over and over. It's quite bizarre, any website that has the word striper in it(for striped bass) crashes. I went to download.com to reload a spyware program and discovered that download.com crashes it too. I'm running a virus scan right now but I don't think it's a virus, I think it's spyware.

Any suggestions, IT is telling me to reboot they think it's just that IE is buggy, but this never happened before I left and I suspect it's spyware.
 

Djaughe

___________________
Supporting Member
Joined
Dec 29, 2003
Posts
27,756
Reaction score
9
Russ Smith said:
** ******* * *** ****** **** **** ****** *** ******* *** ******* ******* ******** **** ******* ******* **** **** ** ***** ********* **** *** ******** **** **** **********. ***** * *** **** **** ********** *'** **** ******** ** **** *** ****. **'* ***** *******, *** ******* **** *** *** **** ******* ** **(*** ******* ****) *******. * **** ** ********.*** ** ****** * ******* ******* *** ********** **** ********.*** ******* ** ***. *'* ******* * ***** **** ***** *** *** * ***'* ***** **'* * *****, * ***** **'* *******.

*** ***********, ** ** ******* ** ** ****** **** ***** **'* **** **** ** ** *****, *** **** ***** ******** ****** * **** *** * ******* **'* *******.

:confused:
































j/k!! :D
 

Chaz

observationist
Joined
Mar 11, 2003
Posts
11,327
Reaction score
7
Location
Wandering the Universe
Hijack this will tell you what is plugged into IE.

It can be a little hard to decipher.

It could be spyware and it could be something legitimate that is corrupted. I agree with you though it is not just that IE is buggy. It is probably something that is trying to run in IE.
 
OP
OP
Russ Smith

Russ Smith

The Original Whizzinator
Supporting Member
Joined
May 14, 2002
Posts
87,529
Reaction score
38,775
Well a virus scan found nothing, and I was able to run adaware and removed 69 nasty spyware deals but it's still crashing.

Looks like my IT department is going to look into it. Thanks for the hijack this I ran that so I have a logfile for IT to look at.
 

bratwurst

on double secret probation
Joined
May 14, 2002
Posts
5,940
Reaction score
1
Location
Santo Poco
post the logfile here, if your IT dept doesn't respond. Some of us can decipher those logs.
 
OP
OP
Russ Smith

Russ Smith

The Original Whizzinator
Supporting Member
Joined
May 14, 2002
Posts
87,529
Reaction score
38,775
I think I've narrowed it down, for some reason if I go to any of my favorites, no problem, but if type in a URL and go to it, it crashes. I tested this theory, typing in cabelas.com and hitting enter crashes me, but if I take an existing favorite and change the URL to cabelas.com, and then hit enter, I get there with no crashing. Very weird.

Here's the logfile.


Logfile of HijackThis v1.99.1
Scan saved at 9:49:28 AM, on 5/26/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Symantec AntiVirus\SavRoam.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Google\Gmail Notifier\G001-1.0.25.0\gnotify.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~2\VPTray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Yahoo!\Messenger\ypager.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\UTLite33.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\PROGRA~1\MICROS~2\OFFICE11\OUTLOOK.EXE
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Symantec AntiVirus\VPC32.exe
C:\unzipped\hijackthis[1]\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Centillium Communications
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\G001-1.0.25.0\gnotify.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~2\VPTray.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Control Products Wizard.lnk = ?
O4 - Global Startup: Quick Builder.lnk = ?
O4 - Global Startup: Uninstall Quick Builder.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1123195065330
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = centillium_nt.centillium.com
O17 - HKLM\Software\..\Telephony: DomainName = centillium_nt.centillium.com
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = centillium_nt.centillium.com
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: PCANotify - C:\WINDOWS\SYSTEM32\PCANotify.dll
O23 - Service: pcAnywhere Host Service (awhost32) - Symantec Corporation - C:\Program Files\Symantec\pcAnywhere\awhost32.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
 

CardFan67

Don't touch my tail!
Joined
Mar 28, 2003
Posts
4,219
Reaction score
1
Location
So Cal
look at all that wonderful icrap running... got to love the tunes... I wish they would give you which options would run and which won't... or maybe all on demand instead of all the time.. Between ipod and symantec I am sure you free resources are running pretty low...
 

Staff online

Forum statistics

Threads
552,859
Posts
5,403,471
Members
6,315
Latest member
SewingChick65
Top