Hi. I'm new here but I've been scanning the posts and trying to find solutions on my own for some time now. I've been trying to solve what I can on my own from the info I've found, as well as trying to avoid problems before they arise. I realize there are an overwhelming number of help requests, so I don't want to add to that, but I do have a couple of questions specific to my computer.
I've been having problems with IE giving me the message "IE has encountered a problem and needs to close now - do you want to send an error message or debug?". It only does it when I try to click on a link posted in a page or in an e-mail. I can just bypass it by just clicking out of the error message, then closing it down with that when I'm done, but something is wrong. I've tried disabling the debugging option and looking at some of my settings to see if something is out of whack, but so far none of that has helped.
The details of the report are as follows: AppName - Iexplore.exe AppVer - 6.0.2800.1106 ModName - Shell64.dll ModVer - 5.1.2600.1106 Offset - 00016b97 Error in kernel32.dll
I've been scanning knowledge base at Microsoft, here and a few other boards, and several said to try to remove IE6 by going into the registry and fooling the system into thinking you don't have the most current version of IE by changing DWORD value from 1 to 0, then reloading IE6 to correct those problems. I did that, and went back and downloaded IE6 again. Fine and dandy up to that point - then when I go to install it I get an error message saying that IE6 isn't compatible with the Window logo (or something like that) so I can't finish set-up. I did get that fixed by going back into the registry and setting the value back to 1.
The 2nd problem that popped up around the same time as the first is that everytime I reboot the computer I get a blue screen for system 32 saying these files are hidden and shouldn't be changed.
The 3rd problem is that somehow the Internet security keeps getting disabled on its own....
Do all of these things perhaps tie together to some kind of worm or file corruption? I've kept my NAV internet security live updates up to date, and run regular virus scans, AdAware scans, Spybot scans, CWshredder scans (all have been updated) and the Stinger scan.
This is Windows XP Professional.
My next step is HiJackThis, but after reading the "open letter" post I'm a little hesitant of posting the results since there are already so many....
Texruss www.russelltexas.com Spyware Fighter Wilders Forum Slyware Warrior Tom Coyote Forum Expert Malware Responder Dell Forum
Please be aware only the following DellForum members were trained at TomCoyote.com and SpywareInfo.com to help with malware like viruses, worms, adware, scumware, foistware and crudware in general. They are also the only experts specifically trained to analyze and advise on Hijackthis logs: Texruss, Baskar1234, Grinler, ChrisRLG, SpotCheckBilly, and pskelley.
Also...these longtime DellForum regulars have proven to me time and again their advice is excellent for malware questions in general, Windows operations, and many specific items in Hijackthis logs: jimw, ddeerrff, and msgale. Please follow their advice when they respond to your problems. They have a proven track record here.
BTW...clicking on people's usernames at the left will reveal information about them if they chose to have an open profile. My credentials are available for your perusal.
Here are the results from the HiJackThis scan. No hurry, though.
Thank you! Jan
Logfile of HijackThis v1.98.0 Scan saved at 1:26:57 PM, on 7/14/2004 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Hi Jan...looks pretty good...one adware hostile ActiveX script. Please fix your Hijackthis folder location though. Make a new directory called HJT in the first level of the C: drive using Windows Explorer (type explorer at Start/Run, create the folder, and then download this 1.98 version file into the new folder:
Next...download and run these two programs (Spybot S&D and Adaware) at the link below. Use Spybot first.
Most of the Internet baddies can be killed by a one-two punch with Spybot and Adaware assuming these three factors are achieved:
1. Latest version 2. Configured correctly for running options 3. New definitions from update feature
Chris has posted an excellent tutorial by dgosling on how to run Spybot S&D and also how to enable customized deep scanning functions for Adaware. Once you set these options they will be retained for future scans by Adaware.
Follow the directions in this detailed guide for Spybot and Adaware...print out the directions in the custom scan tutorial as a reference while you set these options for the custom setup of Adaware. These custom settings will be retained for future custom scans so don't go nuts thinking you have to do this every time you run it! It may take you five minutes to set them up, but it's worth it.
Please note the free Spybot 1.3 does have a slight bug...it detects some DSO exploits falsely. Hopefully an upgrade will fix this.The problem is not serious and should not deter people from using Spybot.
Reboot and browse a bit, exit IE 6 and post a new Hijackthis log.
Texruss www.russelltexas.com Spyware Fighter Wilders Forum Slyware Warrior Tom Coyote Forum Expert Malware Responder Dell Forum
Please be aware only the following DellForum members were trained at TomCoyote.com and SpywareInfo.com to help with malware like viruses, worms, adware, scumware, foistware and crudware in general. They are also the only experts specifically trained to analyze and advise on Hijackthis logs: Texruss, Baskar1234, Grinler, ChrisRLG, SpotCheckBilly, and pskelley.
Also...these longtime DellForum regulars have proven to me time and again their advice is excellent for malware questions in general, Windows operations, and many specific items in Hijackthis logs: jimw, ddeerrff, and msgale. Please follow their advice when they respond to your problems. They have a proven track record here.
BTW...clicking on people's usernames at the left will reveal information about them if they chose to have an open profile. My credentials are available for your perusal.
Here is the new log after following all of the steps above. I'm still having the problems with the system 32 window coming up at reboot and the IE errors, but I'll ask those questions in a different section since I don't think they apply in this one. I tried to fix IE and reinstall it from the link given, but still can't do that either.
Thanks again for the help. Jan
Logfile of HijackThis v1.98.0 Scan saved at 11:57:54 AM, on 7/15/2004 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Texruss
2 Intern
•
3447 Posts
455
0
Posted July 14th, 2004 00:00
>My next step is HiJackThis, but after reading the "open letter" post I'm a little hesitant of posting the results since there are already so many....
Shoot away...when I post I will always get an email notification so you know I'll BE BACK. *;-)
IE might be flummoxed...here's a page...but it could be pests.
http://www.mvps.org/sramesh2k/IEFAQ.htm#Reinstall
Texruss
www.russelltexas.com
Spyware Fighter Wilders Forum
Slyware Warrior Tom Coyote Forum
Expert Malware Responder Dell Forum
Please be aware only the following DellForum members were trained at TomCoyote.com and SpywareInfo.com to help with malware like viruses, worms, adware, scumware, foistware and crudware in general. They are also the only experts specifically trained to analyze and advise on Hijackthis logs: Texruss, Baskar1234, Grinler, ChrisRLG, SpotCheckBilly, and pskelley.
Also...these longtime DellForum regulars have proven to me time and again their advice is excellent for malware questions in general, Windows operations, and many specific items in Hijackthis logs: jimw, ddeerrff, and msgale. Please follow their advice when they respond to your problems. They have a proven track record here.
BTW...clicking on people's usernames at the left will reveal information about them if they chose to have an open profile. My credentials are available for your perusal.