I have not seen this error very often, and the few times it has occurred, either a virus has disabled Symantec components, or the product needs to be reinstalled. Take a look at the Symantec supporrt site, particularly:
http://service1.symantec.c
There a couple of good possibilities in there, one around your local hosts file.
... Thinkpads_User
Main Topics
Browse All Topics





by: mrmythPosted on 2009-05-15 at 15:53:21ID: 24400351
Logfile of Trend Micro HijackThis v2.0.2
xe on.exe es.exe exe t.exe t.exe T~2\VPTray .exe d.exe B~1\Motive SB.exe .exe v.exe e ms.exe .exe t.exe e ICOMP\RemC trl\Wuser3 2.exe mExec.exe y.exe t.exe wservice.e xe ktop\HiJac kThis.exe
ternet Explorer\Main,Search Bar = http://us.rd.yahoo.com/cus tomize/yco mp/default s/sb/*http :// www.yah oo.com/sea rch/ie.htm l ternet Explorer\Main,Search Page = http://us.rd.yahoo.com/cus tomize/yco mp/default s/sp/*http :// www.yah oo.com ternet Explorer\Main,Start Page = http://att.my.yahoo.com/ ternet Explorer\Main,Default_Page _URL = http://go.microsoft.com/fw link/?Link Id=69157 ternet Explorer\Main,Default_Sear ch_URL = http://go.microsoft.com/fw link/?Link Id=54896 ternet Explorer\Main,Search Page = http://go.microsoft.com/fw link/?Link Id=54896 ternet Explorer\Main,Start Page = http://go.microsoft.com/fw link/?Link Id=69157 ternet Explorer\SearchURL,(Defaul t) = http://us.rd.yahoo.com/cus tomize/yco mp/default s/su/*http :// www.yah oo.com ternet Connection Wizard,ShellNext = http://google.com/ ndows\Curr entVersion \Internet Settings,ProxyServer = laproxy.omm.com:8080 ndows\Curr entVersion \Internet Settings,ProxyOverride = 127.0.0.1;<local> 84B7D6BE0B 3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.d ll 4DAF1D92D4 3} - C:\Program Files\Java\jre6\bin\ssv.dl l 445EE16191 0} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien t.dll 3dc2f38c34 f} - C:\Program Files\MSN\Toolbar\3.0.0983 .0\msneshe llx.dll C25C1C588A 9} - C:\Program Files\Java\jre6\bin\jp2ssv .dll ABFE594F69 C} - C:\Program Files\Java\jre6\lib\deploy \jqs\ie\jq s_plugin.d ll 819E2EAAC9 3} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien t.dll B4C880C841 4} - C:\Program Files\MSN\Toolbar\3.0.0983 .0\msneshe llx.dll ConfigAssi stant.exe /userinit T~2\VPTray .exe d.exe" B~1\Motive SB.exe DRIVERS\W3 2X86\3\LXC Itime.dll, _RunDLLEnt ry@16 " /background .exe lientMsiTr ans\tscuin st.vbs" (User 'LOCAL SERVICE') lientMsiTr ans\tscuin st.vbs" (User 'NETWORK SERVICE') lientMsiTr ans\tscuin st.vbs" (User 'SYSTEM') lientMsiTr ans\tscuin st.vbs" (User 'Default user') t.dll/Acro IECapture. html t.dll/Acro IEAppend.h tml t.dll/Acro IECaptureS elLinks.ht ml t.dll/Acro IEAppendSe lLinks.htm l t.dll/Acro IECapture. html t.dll/Acro IEAppend.h tml t.dll/Acro IECapture. html t.dll/Acro IEAppend.h tml \OFFICE11\ EXCEL.EXE/ 3000 C9C571A826 3} - C:\PROGRA~1\MICROS~2\OFFIC E11\REFIEB AR.DLL 2ba3849658 3} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe 2ba3849658 3} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe 0C04F79568 3} - C:\Program Files\Messenger\msmsgs.exe 0C04F79568 3} - C:\Program Files\Messenger\msmsgs.exe 7C580BBF70 0} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fw link/?link id=39204 a1d4f56a2a b} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsth elper20073 151.dll wservice.e xe e ms.exe .exe
Scan saved at 3:51:56 PM, on 5/15/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16827)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.e
C:\WINDOWS\system32\winlog
C:\WINDOWS\system32\servic
C:\WINDOWS\system32\lsass.
C:\WINDOWS\system32\svchos
C:\WINDOWS\System32\svchos
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Lexmark 7300 Series\lxcimon.exe
C:\Program Files\Lexmark 7300 Series\ezprint.exe
C:\PROGRA~1\SYMANT~1\SYMAN
C:\Program Files\Java\jre6\bin\jusche
C:\WINDOWS\stsystra.exe
C:\PROGRA~1\SBCSEL~1\SMART
C:\Program Files\Portrait Displays\HP Display Assistant\DTHtml.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon
C:\WINDOWS\system32\spools
C:\Program Files\SBC Self Support Tool\bin\mpbtn.exe
C:\WINDOWS\HPLiteSaver.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Symantec Client Security\Symantec AntiVirus\DefWatch.exe
C:\Program Files\Portrait Displays\HP Display Assistant\DTSRVC.exe
C:\Program Files\Java\jre6\bin\jqs.ex
C:\WINDOWS\system32\lxcico
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Symantec Client Security\Symantec AntiVirus\SavRoam.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\WINDOWS\system32\StacSV
C:\WINDOWS\system32\svchos
C:\Program Files\Symantec Client Security\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Symantec Client Security\Symantec Client Firewall\SymSPort.exe
C:\Program Files\UPHClean\uphclean.ex
C:\WINDOWS\system32\CCM\CL
C:\WINDOWS\system32\CCM\Cc
C:\WINDOWS\system32\wscntf
C:\WINDOWS\System32\svchos
C:\Program Files\Lavasoft\Ad-Aware\aa
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrator\Des
R1 - HKCU\Software\Microsoft\In
R1 - HKCU\Software\Microsoft\In
R0 - HKCU\Software\Microsoft\In
R1 - HKLM\Software\Microsoft\In
R1 - HKLM\Software\Microsoft\In
R1 - HKLM\Software\Microsoft\In
R0 - HKLM\Software\Microsoft\In
R1 - HKCU\Software\Microsoft\In
R1 - HKCU\Software\Microsoft\In
R1 - HKCU\Software\Microsoft\Wi
R1 - HKCU\Software\Microsoft\Wi
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-7
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0
O2 - BHO: MSN Toolbar Helper - {d2ce3e00-f94a-4740-988e-0
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-E
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0
O3 - Toolbar: MSN Toolbar - {1E61ED7C-7CB8-49d6-B9E9-A
O4 - HKLM\..\Run: [lxcimon.exe] "C:\Program Files\Lexmark 7300 Series\lxcimon.exe"
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 7300 Series\ezprint.exe"
O4 - HKLM\..\Run: [Workshare3GW] C:\Program Files\Workshare\Modules\WM
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\SYMAN
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusche
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\SBCSEL~1\SMART
O4 - HKLM\..\Run: [DT Task] C:\Program Files\Portrait Displays\HP Display Assistant\DTHtml.exe -startup_folder
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [LXCICATS] rundll32 C:\WINDOWS\system32\spool\
O4 - HKCU\..\Run: [Yahoo! Pager] 1
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon
O4 - HKUS\S-1-5-19\..\RunOnce: [TSClientMSIUninstaller] cmd.exe /C "cscript %systemroot%\Installer\TSC
O4 - HKUS\S-1-5-20\..\RunOnce: [TSClientMSIUninstaller] cmd.exe /C "cscript %systemroot%\Installer\TSC
O4 - HKUS\S-1-5-18\..\RunOnce: [TSClientMSIUninstaller] cmd.exe /C "cscript %systemroot%\Installer\TSC
O4 - HKUS\.DEFAULT\..\RunOnce: [TSClientMSIUninstaller] cmd.exe /C "cscript %systemroot%\Installer\TSC
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: AT&T Self Support Tool.lnk = C:\Program Files\SBC Self Support Tool\bin\matcli.exe
O4 - Global Startup: HP Display LiteSaver Startup.lnk = C:\WINDOWS\HPLiteSaver.exe
O4 - Global Startup: Launch Internet Explorer Browser.lnk = C:\Program Files\Internet Explorer\IEXPLORE.EXE
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClien
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-0
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-0
O16 - DPF: {17492023-C23A-453E-A040-C
O16 - DPF: {30528230-99f7-4bb4-88d8-f
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aa
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec Client Security\Symantec AntiVirus\DefWatch.exe
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files\Portrait Displays\HP Display Assistant\DTSRVC.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.ex
O23 - Service: lxci_device - - C:\WINDOWS\system32\lxcico
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec Client Security\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\WINDOWS\system32\StacSV
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec Client Security\Symantec AntiVirus\Rtvscan.exe
O23 - Service: Symantec SecurePort (SymSecurePort) - Symantec Corporation - C:\Program Files\Symantec Client Security\Symantec Client Firewall\SymSPort.exe
--
End of file - 10908 bytes