I have a problem with IE 6.0 when I click on a link for a page that doesn't exist or cannot be found. It brings up an error message dialog that says "Microsoft Visual C++ Runtime Error!" and tells me that the program is requesting an abnormal termination. Someone said it might be a bad BHO. I'm a newbie and am not sure what a BHO is. I downloaded HijackThis and scanned my computer. It came up with several things that might pose problems, but I don't know how to interpret anything in the log. I am including the log file in this entry.
The only thing is that I use KaZaa and so I know I have some adware/spyware on my computer. I cleaned most of it up and for the rest, I just don't allow it access to the network via ZoneAlarm so I have been able to avoid annoying ads. I am just hoping there is a way to turn off the offending programs so my browser works without disabling KaZaa.
Here is the log file text:
Logfile of HijackThis v1.98.2
Scan saved at 1:14:07 PM, on 10/21/2004
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.e
xe
C:\WINDOWS\system32\winlog
on.exe
C:\WINDOWS\system32\servic
es.exe
C:\WINDOWS\system32\lsass.
exe
C:\WINDOWS\system32\svchos
t.exe
C:\WINDOWS\System32\svchos
t.exe
C:\WINDOWS\system32\spools
v.exe
C:\PROGRA~1\Iomega\System3
2\AppServi
ces.exe
D:\mysql\bin\mysqld.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton Internet Security\NISUM.EXE
C:\WINDOWS\System32\nvsvc3
2.exe
C:\Program Files\PC-Telephone\PCTServ
ice.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.e
xe
D:\cygwin\bin\cygrunsrv.ex
e
C:\WINDOWS\System32\svchos
t.exe
C:\Program Files\Norton Internet Security\SymProxySvc.exe
C:\WINDOWS\system32\ZoneLa
bs\vsmon.e
xe
D:\cygwin\usr\sbin\sshd.ex
e
C:\Program Files\RealVNC\WinVNC\WinVN
C.exe
C:\Program Files\RealVNC\VNC4\WinVNC4
.exe
C:\Program Files\Iomega\AutoDisk\ADSe
rvice.exe
C:\Program Files\Norton Internet Security\NISSERV.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\SMTray.ex
e
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.e
xe
C:\WINDOWS\System32\spool\
drivers\w3
2x86\3\hpz
tsb09.exe
C:\Program Files\Java\j2re1.4.2_03\bi
n\jusched.
exe
C:\Program Files\Iomega\AutoDisk\ADUs
erMon.exe
C:\Program Files\Iomega\DriveIcons\Im
gIcon.exe
C:\Program Files\Norton Internet Security\IAMAPP.EXE
C:\PROGRA~1\NORTON~1\navap
w32.exe
C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe
C:\WINDOWS\system32\carpse
rv.exe
C:\Program Files\HP\HP Software Update\HPWuSchd.exe
C:\Program Files\HP\hpcoretech\hpcmpm
gr.exe
C:\Program Files\SlySoft\AnyDVD\AnyDV
D.exe
C:\Program Files\Win Comm\WinComm.exe
C:\WINDOWS\system32\P2P Networking\P2P Networking.exe
C:\Program Files\Common files\SearchUpgrader\Searc
hUpgrader.
exe
C:\Program Files\Win Comm\WinLock.exe
C:\program files\altnet\points manager\points manager.exe
C:\Program Files\Common Files\CMEII\CMESys.exe
C:\temp\msbb.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.ex
e
C:\WINDOWS\system32\ctfmon
.exe
C:\WINDOWS\system32\RUNDLL
32.EXE
C:\Program Files\NoelD\DynSite for Windows\DynSite.exe
C:\PROGRA~1\Altnet\DOWNLO~
1\asm.exe
C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\Common Files\GMT\GMT.exe
C:\Program Files\ADSL\ADSL USB MODEM\dslmon.exe
C:\Program Files\eFax Messenger Plus\HotTray.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\InterVideo\Common\Bi
n\WinCinem
aMgr.exe
C:\Program Files\eFax Messenger Plus\Dllcmd32.exe
D:\Apache2\bin\ApacheMonit
or.exe
C:\Program Files\War-ftpd\war-ftpd.ex
e
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\System32\HPZipm
12.exe
D:\Apache2\bin\Apache.exe
D:\Apache2\bin\Apache.exe
C:\Program Files\TextPad 4\TextPad.exe
C:\Program Files\TextPad 4\TextPad.exe
C:\Program Files\TextPad 4\TextPad.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Justin\Desktop\Hi
jackThis.e
xe
C:\Program Files\Internet Explorer\iexplore.exe
R0 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Start Page =
http://home.byu.edu/webapp/home/index.jspR1 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Default_Page
_URL =
http://www.netian.comR1 - HKCU\Software\Microsoft\Wi
ndows\Curr
entVersion
\Internet Settings,ProxyServer = proxy1.emirates.net.ae:808
0
R3 - URLSearchHook: PerfectNavBHO Class - {00D6A7E7-4A97-456f-848A-3
B75BF7554D
7} - C:\PROGRA~1\PERFEC~1\BHO\P
ERFEC~1.DL
L
O2 - BHO: NavErrRedir Class - {00D6A7E7-4A97-456f-848A-3
B75BF7554D
7} - C:\PROGRA~1\PERFEC~1\BHO\P
ERFEC~1.DL
L
O2 - BHO: myBar BHO - {0494D0D1-F8E0-41ad-92A3-1
4154ECE70A
C} - C:\Program Files\MyWay\myBar\1.bin\MY
BAR.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-7
84B7D6BE0B
3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIE
Helper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-2
06D7942484
F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {83DE62E0-5805-11D8-9B25-0
0E04C60FAF
2} - C:\WINDOWS\2_0_1browserhel
per2.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0
445EE16191
0} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClien
t.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-F
ADC6B08487
2} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7
859DF00B1D
6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: My &Search Bar - {0494D0D9-F8E0-41ad-92A3-1
4154ECE70A
C} - C:\Program Files\MyWay\myBar\1.bin\MY
BAR.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0
819E2EAAC9
3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClien
t.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJ
PMIG.EXE /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TI
NTLGNT\TIN
TSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TI
NTLGNT\TIN
TSETP.EXE /IMEName
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.
dll,NvStar
tup
O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\SMTray.ex
e
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.e
xe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\
drivers\w3
2x86\3\hpz
tsb09.exe
O4 - HKLM\..\Run: [WinVNC] "C:\Program Files\RealVNC\WinVNC\WinVN
C.exe" -servicehelper
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCh
eck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bi
n\jusched.
exe
O4 - HKLM\..\Run: [ADUserMon] C:\Program Files\Iomega\AutoDisk\ADUs
erMon.exe
O4 - HKLM\..\Run: [Iomega Drive Icons] C:\Program Files\Iomega\DriveIcons\Im
gIcon.exe
O4 - HKLM\..\Run: [Deskup] C:\Program Files\Iomega\DriveIcons\de
skup.exe /IMGSTART
O4 - HKLM\..\Run: [iamapp] C:\Program Files\Norton Internet Security\IAMAPP.EXE
O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\navap
w32.exe
O4 - HKLM\..\Run: [hpfsched] C:\WINDOWS\hpfsched.exe
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpm
gr.exe"
O4 - HKLM\..\Run: [AnyDVD] "C:\Program Files\SlySoft\AnyDVD\AnyDV
D.exe"
O4 - HKLM\..\Run: [CMESys] "C:\Program Files\Common Files\CMEII\CMESys.exe"
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.ex
e"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMo
n.exe
O4 - HKLM\..\Run: [Win Comm] C:\Program Files\Win Comm\WinComm.exe
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCt
r\Binaries
\MSConfig.
exe /auto
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon
.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe
" /background
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTR
AY.DLL,NvT
askbarInit
O4 - HKCU\..\Run: [DynSite] C:\Program Files\NoelD\DynSite for Windows\DynSite.exe
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Ad
obe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = ?
O4 - Global Startup: eFax Tray Menu.lnk = C:\Program Files\eFax Messenger Plus\HotTray.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bi
n\WinCinem
aMgr.exe
O4 - Global Startup: Live Menu.lnk = C:\Program Files\eFax Messenger Plus\Dllcmd32.exe
O4 - Global Startup: Monitor Apache Servers.lnk = D:\Apache2\bin\ApacheMonit
or.exe
O4 - Global Startup: Shortcut to war-ftpd.exe.lnk = C:\Program Files\War-ftpd\war-ftpd.ex
e
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2
\OFFICE11\
EXCEL.EXE/
3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-0
0401C60850
1} - (no file)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-0
0401C60850
1} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3
C9C571A826
3} - C:\PROGRA~1\MICROS~2\OFFIC
E11\REFIEB
AR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-0
0C04F79568
3} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-0
0C04F79568
3} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .mov: C:\Program Files\Internet Explorer\PLUGINS\npqtplugi
n.dll
O12 - Plugin for .tif: C:\Program Files\Internet Explorer\PLUGINS\npqtplugi
n5.dll
O14 - IERESET.INF: START_PAGE_URL=
http://www.netian.comO16 - DPF: {15AD4789-CDB4-47E1-A9DA-9
92EE8E6BAD
6} -
http://public.windupdates.com/get_file.php?bt=ie&p=ebb218738dd34cdd1afc6ee6a4ee0a2604ee3faf5d581a37046fcf21f5cf9f91688aad0bda5294c1da52224c0b474caa2ff279f9029ca56b5fa1b6f4d7cd2280:fa6350fea843a478fbcc5b26849439ccO16 - DPF: {1D6711C8-7154-40BB-8380-3
DEA45B69CB
F} (Web P2P Installer) -
O16 - DPF: {49232000-16E4-426C-A231-6
2846947304
B} (SysData Class) -
http://ipgweb.cce.hp.com/rdq/downloads/sysinfo.cabO16 - DPF: {4C39376E-FA9D-4349-BACC-D
305C1750EF
3} (EPUImageControl Class) -
http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cabO16 - DPF: {51C99F40-9E0E-4BF1-A92A-7
7121CC01AD
0} (IMBCClient Control) -
http://touch.imbc.com/ocx/touch.cabO16 - DPF: {66B30EA0-C033-4D4B-9F90-E
A0AF07363A
F} (BugsMediaPlayer Control) -
http://so.bugs.co.kr/BugsOggPlay_10.CABO16 - DPF: {88D969C0-F192-11D4-A65F-0
040963251E
5} (XML DOM Document 4.0) -
http://ipgweb.cce.hp.com/rdq/downloads/msxml4.cabO16 - DPF: {8A94C905-FF9D-43B6-8708-F
0F22D22B1C
B} (Wwlaunch Control) -
http://mirror.worldwinner.com/games/shared/wwlaunch.cabO16 - DPF: {9A9307A0-7DA4-4DAF-B042-5
009F29E09E
1} (ActiveScan Installer Class) -
http://www.pandasoftware.com/activescan/as5/asinst.cabO16 - DPF: {C0B6491F-C914-4344-A90E-D
A847D7829A
1} (XBTDataEncrypt Control) -
http://reg.bugs.co.kr/cab/XBTDataEncrypt.CABO16 - DPF: {CF362BDB-4EA2-11D5-AB47-0
0010291341
4} (SetGlb Control) -
http://so.bugs.co.kr/SetGlb.cabO16 - DPF: {D8F001C6-43B1-4CFD-9DAF-C
8BEAE0E2B6
D} (Touch Control) -
http://touch.imbc.com/ocx/Touch.cabO16 - DPF: {DF780F87-FF2B-4DF8-92D0-7
3DB16A1543
A} (PopCapLoader Object) -
http://download.games.yahoo.com/games/popcap/zuma/popcaploader_v5.cabO16 - DPF: {E855A2D4-987E-4F3B-A51C-6
4D10A7E247
9} (EPSImageControl Class) -
http://tools.ebayimg.com/eps/activex/EPSControl_v1-0-3-0.cabO16 - DPF: {E93A6FCA-C052-45DF-AC9B-B
729066092F
8} (Util Class) -
https://isupport4.hp.com/motivedocs/linklauncher/MotUtil.cabO16 - DPF: {EB387D2F-E27B-4D36-979E-8
47D1036C65
D} (QDiagHUpdateObj Class) -
http://h30043.www3.hp.com/hpdj/en/check/qdiagh.cab?316O16 - DPF: {FAE74270-E5EE-49C3-B816-E
A8B4D55F38
F} (H2hPool Control) -
http://mirror.worldwinner.com/games/v51/h2hpool/h2hpool.cabO17 - HKLM\System\CCS\Services\T
cpip\..\{4
2C4D5A1-96
54-4443-8A
2D-6411A28
69D48}: NameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\T
cpip\..\{F
E7D1081-38
4D-4FC3-8B
59-006EF84
D4F03}: NameServer = 213.42.20.20 195.229.241.222
O18 - Protocol: cetihpz - {CF184AD3-CDCB-4168-A3F7-8
E447D12930
0} - C:\Program Files\HP\hpcoretech\comp\h
puiprot.dl
l