Hello experts,
I have a toshiba satellite laptop running WinXP Pro, SP2. I had been using Norton AntiVirus for quite a while, but eventually had problems with Norton recognizing that I had updated/renewed, a problem which lasted for several weeks (I've heard that this is a problem many Norton users have faced). Two days ago, I completely lost internet connectivity. I figured this might have something to do with the Norton problem.
Based on a previous Experts solution, I downloaded (via a different machine) Winsock Repair and ran it. When the laptop restarted, I had full internet connection again. I tried to start installing PC-cillin, but as soon as the install was done, I had lost internet connectivity again. I ran Winsock Repair again, rebooted, and again got a connection. But I then lost connection yet again just some minutes later. I could probably go through this cycle forever.
The previous solution also recommended using HijackThis and posting the report it generates to this group for feedback. That's what I'll do now. If anybody has any idea what could be causing this, please let me know!! Thanks.
Here's the report:
Logfile of HijackThis v1.99.1
Scan saved at 5:29:43 PM, on 9/30/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.e
xe
C:\WINDOWS\system32\winlog
on.exe
C:\WINDOWS\system32\servic
es.exe
C:\WINDOWS\system32\lsass.
exe
C:\WINDOWS\system32\svchos
t.exe
C:\WINDOWS\System32\svchos
t.exe
C:\WINDOWS\system32\spools
v.exe
C:\WINDOWS\System32\DRIVER
S\CDANTSRV
.EXE
c:\Program Files\DUnetVPN401-DUc\cvpn
d.exe
C:\oracle\product\10.1.0\D
b_1\bin\oc
ssd.exe
C:\oracle\product\10.1.0\D
b_1\bin\is
qlplussvc.
exe
c:\oracle\product\10.1.0\d
b_1\bin\OR
ACLE.EXE
C:\oracle\product\10.1.0\D
b_1\jdk\bi
n\java.exe
C:\PROGRA~1\TRENDM~1\INTER
N~1\PcCtlC
om.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.e
xe
C:\WINDOWS\System32\svchos
t.exe
C:\PROGRA~1\TRENDM~1\INTER
N~1\Tmntsr
v.exe
C:\PROGRA~1\TRENDM~1\INTER
N~1\tmprox
y.exe
C:\PROGRA~1\TRENDM~1\INTER
N~1\TmPfw.
exe
C:\oracle\product\10.1.0\D
b_1\bin\oc
ssd.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\00THot
key.exe
C:\WINDOWS\System32\igfxtr
ay.exe
C:\WINDOWS\System32\hkcmd.
exe
C:\Program Files\ltmoh\Ltmoh.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\WINDOWS\system32\TFNF5.
exe
C:\WINDOWS\system32\TPWRTR
AY.EXE
C:\Program Files\TOSHIBA\TouchED\Touc
hED.Exe
C:\WINDOWS\System32\ezSP_P
x.exe
C:\toshiba\ivp\ism\pinger.
exe
C:\Program Files\Analog Devices\SoundMAX\PmProxy.e
xe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Google\Gmail Notifier\gnotify.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Trend Micro\Internet Security 2006\pccguide.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon
.exe
C:\Program Files\Sony Handheld\HOTSYNC.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\WINDOWS\system32\dlcdco
ms.exe
C:\HijackThis\HijackThis.e
xe
R1 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Search Bar =
http://www.toshiba.com/searchR0 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Start Page =
https://mail.du.edu/R1 - HKCU\Software\Microsoft\In
ternet Connection Wizard,ShellNext =
http://www.toshiba.com/R1 - HKCU\Software\Microsoft\Wi
ndows\Curr
entVersion
\Internet Settings,ProxyOverride = 127.0.0.1
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-7
84B7D6BE0B
3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEH
elper.ocx
O4 - HKLM\..\Run: [00THotkey] C:\WINDOWS\System32\00THot
key.exe
O4 - HKLM\..\Run: [000StTHK] 000StTHK.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtr
ay.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.
exe
O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [TFNF5] TFNF5.exe
O4 - HKLM\..\Run: [Tpwrtray] TPWRTRAY.EXE
O4 - HKLM\..\Run: [TouchED] C:\Program Files\TOSHIBA\TouchED\Touc
hED.Exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_P
x.exe
O4 - HKLM\..\Run: [Pinger] c:\toshiba\ivp\ism\pinger.
exe /run
O4 - HKLM\..\Run: [TSysSMon] c:\toshiba\sysstability\ts
yssmon.exe
/detect
O4 - HKLM\..\Run: [7BDBEF49] C:\DOCUME~1\Andrea\LOCALS~
1\Temp\~14
4C.tmp.exe
O4 - HKLM\..\Run: [Video Lan Player] VideoLanPlayer.exe
O4 - HKLM\..\Run: [PmProxy] C:\Program Files\Analog Devices\SoundMAX\PmProxy.e
xe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe
" -atboottime
O4 - HKLM\..\Run: [DLCDCATS] rundll32 C:\WINDOWS\System32\spool\
DRIVERS\W3
2X86\3\DLC
Dtime.dll,
_RunDLLEnt
ry@16
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-
b109a192b4
c2}] C:\Program Files\Google\Gmail Notifier\gnotify.exe
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 2006\pccguide.exe"
O4 - HKLM\..\RunServices: [Video Lan Player] VideoLanPlayer.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe
" /background
O4 - HKCU\..\Run: [Video Lan Player] VideoLanPlayer.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon
.exe
O4 - Startup: HotSync Manager.lnk = C:\Program Files\Sony Handheld\HOTSYNC.EXE
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: University of Denver DUnetVPN401-DUc.lnk = C:\Program Files\DUnetVPN401-DUc\vpng
ui.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3
\Office10\
EXCEL.EXE/
3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3
C9C571A826
3} - C:\PROGRA~1\MICROS~3\OFFIC
E11\REFIEB
AR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-0
0C0F0318AF
E} - C:\WINDOWS\System32\Shdocv
w.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-0
0C04F79568
3} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-0
0C04F79568
3} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.
dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsr
vc.dll
O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\F
ramework\v
2.0.50727\
aspnet_sta
te.exe (file missing)
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\System32\DRIVER
S\CDANTSRV
.EXE
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - c:\Program Files\DUnetVPN401-DUc\cvpn
d.exe
O23 - Service: dlcd_device - - C:\WINDOWS\system32\dlcdco
ms.exe
O23 - Service: Video Lan Player (hub) - Unknown owner - C:\WINDOWS\System32\VideoL
anPlayer.e
xe" -netsvcs (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver
\11\Intel 32\IDriverT.exe
O23 - Service: OracleCSService - Unknown owner - C:\oracle\product\10.1.0\D
b_1\bin\oc
ssd.exe
O23 - Service: OracleDBConsoleorcl - Oracle Corporation - C:\oracle\product\10.1.0\D
b_1\bin\nm
esrvc.exe
O23 - Service: OracleOraDb10g_home1iSQL*P
lus - Oracle - C:\oracle\product\10.1.0\D
b_1\bin\is
qlplussvc.
exe
O23 - Service: OracleOraDb10g_home1SNMPPe
erEncapsul
ator - Unknown owner - C:\oracle\product\10.1.0\D
b_1\BIN\EN
CSVC.EXE
O23 - Service: OracleOraDb10g_home1SNMPPe
erMasterAg
ent - Unknown owner - C:\oracle\product\10.1.0\D
b_1\BIN\AG
NTSVC.EXE
O23 - Service: OracleOraDb10g_home1TNSLis
tener - Unknown owner - C:\oracle\product\10.1.0\D
b_1\BIN\TN
SLSNR.exe
O23 - Service: OracleServiceORCL - Oracle Corporation - c:\oracle\product\10.1.0\d
b_1\bin\OR
ACLE.EXE
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTER
N~1\PcCtlC
om.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm
12.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.e
xe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTER
N~1\Tmntsr
v.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTER
N~1\TmPfw.
exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTER
N~1\tmprox
y.exe
Andy