1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

ActiveX miseries! HELP!

Discussion in 'Internet Explorer & Microsoft Edge' started by velvi, 2004/04/14.

Thread Status:
Not open for further replies.
  1. 2004/04/14
    velvi

    velvi Inactive Thread Starter

    Joined:
    2002/01/07
    Messages:
    28
    Likes Received:
    0
    Help! I cannot seem to use any online virus scanner. Typically I get variations of the following message:
    "You cannot access this page with your current browser settings. Please make sure that you are running Internet Explorer 5.01 or higher, with security settings that allow you to:
    Download signed ActiveX controls
    Run ActiveX controls and plugins
    Script ActiveX controls marked safe for scripting.
    You can do this by choosing the "Medium" default level under Tools | Internet Options | Security | Internet Zone. See Internet Explorer help for more information ".

    The trouble is: My security levels ARE set to Medium! I have even tried to set it to "low" to no avail.
    Any suggestions would be GREATLY appreciated!
    I encounter this problem on other online installations - with similar ActiveX type of messages.
     
  2. 2004/04/14
    markp62

    markp62 Geek Member Alumni

    Joined:
    2002/05/01
    Messages:
    4,012
    Likes Received:
    16
    Get HijackThis, and post the log on here. The link is below.
     

  3. to hide this advert.

  4. 2004/04/20
    Johanna

    Johanna Inactive Alumni

    Joined:
    2003/03/08
    Messages:
    2,402
    Likes Received:
    2
    How to Surf IE Safely might give you some help as to how to configure your internet Active X controls.

    Johanna
     
  5. 2004/04/20
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    velvi where are you?

    There are many nasties on the net that are designed to block you from downloading cleanup utilities, running detection programs and the like, and can be drive-by installed without your knowledge. I second markp62's advice to post a HijackThis log. If you are unable to download or access the site, please let us know. Someone can get you a copy.
     
  6. 2004/04/20
    velvi

    velvi Inactive Thread Starter

    Joined:
    2002/01/07
    Messages:
    28
    Likes Received:
    0
    I can't download HiJack. All I get is a blank page

    Thanks for your concern!
    I can't download HiJack. All I get is a blank page! Any help would be greatly appreciated
    Velvi
     
  7. 2004/04/20
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    See if this works for you.
     
  8. 2004/04/20
    Lonny Jones

    Lonny Jones Inactive Alumni

    Joined:
    2002/12/16
    Messages:
    2,252
    Likes Received:
    0
    yes try that first if no go try right click save as on that link, if still there are problems
    send me or noahdfear a personal message and include your email address and we will send you the tools and instructions
    Do you have a zip program ?

    Then when you post a hijackthis log post the results of this also please

    copy and past into IE's addressbar
    javascript:navigator.userAgent
    Hit enter or go
    and copy paste that back here for us please
     
  9. 2004/04/20
    velvi

    velvi Inactive Thread Starter

    Joined:
    2002/01/07
    Messages:
    28
    Likes Received:
    0
    HiJack Log

    Noahdfear
    Logfile of HijackThis v1.97.7
    Scan saved at 10:03:19 AM, on 4/20/2004
    Platform: Windows 2000 SP4 (WinNT 5.00.2195)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINNT\System32\smss.exe
    C:\WINNT\system32\winlogon.exe
    C:\WINNT\system32\services.exe
    C:\WINNT\system32\lsass.exe
    C:\WINNT\system32\svchost.exe
    C:\WINNT\system32\spoolsv.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\Program Files\OLYMPUS\DeviceDetector\DM1Service.exe
    C:\WINNT\System32\svchost.exe
    C:\Program Files\Roxio\GoBack\GBPoll.exe
    C:\WINNT\system32\hidserv.exe
    C:\PROGRA~1\Iomega\System32\AppServices.exe
    C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
    C:\WINNT\system32\regsvc.exe
    C:\WINNT\system32\MSTask.exe
    C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
    C:\WINNT\system32\stisvc.exe
    C:\WINNT\system32\ZONELABS\vsmon.exe
    C:\WINNT\System32\WBEM\WinMgmt.exe
    C:\WINNT\system32\MsPMSPSv.exe
    C:\WINNT\system32\svchost.exe
    C:\WINNT\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\SymTray.exe
    C:\PROGRA~1\Adaptec\DirectCD\directcd.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\Iomega\Iomega Automatic Backup\ibackup.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
    C:\Program Files\Java\j2re1.4.2_04\bin\jusched.exe
    C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
    C:\WINNT\System32\svchost.exe
    C:\Program Files\AWS\WeatherBug\Weather.exe
    C:\WINNT\system32\internat.exe
    C:\Program Files\Roxio\GoBack\GBTray.exe
    C:\Program Files\Hewlett-Packard\HP Web PrintSmart\BRDETECT.EXE
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Hewlett-Packard\HP Web PrintSmart\HPWPSTB.EXE
    C:\PROGRA~1\MICROS~2\Office\OUTLOOK.EXE
    C:\Program Files\Diet K\DietK.exe
    C:\Program Files\Kazaa Lite\kazaalite.kpp
    C:\Program Files\Overnet\overnet.exe
    C:\Program Files\KaZaA Lite\My Shared Folder\HiJackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:8080;https=localhost:8080
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    F2 - REG:system.ini: UserInit=C:\WINNT\system32\userinit.exe
    O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll
    O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
    O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
    O4 - HKLM\..\Run: [CloneCDElbyCDFL] "C:\Program Files\Elaborate Bytes\CloneCD\ElbyCheck.exe" /L ElbyCDFL
    O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
    O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [Adaptec DirectCD] "C:\PROGRA~1\Adaptec\DirectCD\directcd.exe "
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe "
    O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe "
    O4 - HKLM\..\Run: [SymTray - Norton SystemWorks] C:\Program Files\Common Files\Symantec Shared\Symtray.exe SetReg
    O4 - HKLM\..\Run: [Iomega Automatic Backup 1.0.1] C:\Program Files\Iomega\Iomega Automatic Backup\ibackup.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_04\bin\jusched.exe
    O4 - HKCU\..\Run: [TClockEx] "C:\Program Files\TClockEx\TCLOCKEX.EXE "
    O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE "
    O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1
    O4 - HKCU\..\Run: [Iomega Automatic Backup] C:\Program Files\Iomega\Iomega Automatic Backup\ibackup.exe
    O4 - HKCU\..\Run: [internat.exe] internat.exe
    O4 - HKLM\..\RunOnce: [SymTray - Norton SystemWorks] C:\Program Files\Common Files\Symantec Shared\Symtrdr.exe
    O4 - Global Startup: GoBack.lnk = C:\Program Files\Roxio\GoBack\GBTray.exe
    O4 - Global Startup: HP Browser Detect.lnk = C:\Program Files\Hewlett-Packard\HP Web PrintSmart\BRDETECT.EXE
    O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
    O8 - Extra context menu item: Add to filterlist (WebWasher) - http://-Web.Washer-/ie_add
    O8 - Extra context menu item: Backward &Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
    O8 - Extra context menu item: Cac&hed Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
    O8 - Extra context menu item: Customize Menu &4 - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
    O8 - Extra context menu item: Fill Forms &] - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
    O8 - Extra context menu item: Save Forms &[ - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
    O8 - Extra context menu item: Si&milar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
    O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
    O8 - Extra context menu item: Translate Page - res://c:\winnt\downloaded program files\GoogleToolbar_en_2.0.95-deleon.dll/cmtrans.html
    O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
    O9 - Extra button: Pluck (HKLM)
    O9 - Extra 'Tools' menuitem: Pluck (HKLM)
    O9 - Extra button: Create Mobile Favorite (HKLM)
    O9 - Extra 'Tools' menuitem: Create Mobile Favorite... (HKLM)
    O9 - Extra button: Fill Forms (HKLM)
    O9 - Extra 'Tools' menuitem: Fill Forms &] (HKLM)
    O9 - Extra button: Save (HKLM)
    O9 - Extra 'Tools' menuitem: Save Forms &[ (HKLM)
    O9 - Extra button: RoboForm (HKLM)
    O9 - Extra 'Tools' menuitem: RF Toolbar &2 (HKLM)
    O9 - Extra button: WeatherBug (HKCU)
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
    O16 - DPF: {234B7457-1A7E-4268-BA71-9936F0C78BEC} (ContentCleanup3X Control) - http://www.contentwatch.com/cleanup/includes/ContentCleanup3Proj1.cab
    O16 - DPF: {29C13B62-B9F7-4CD3-8CEF-0A58A1A99441} (MSN Chat Control 4.1) - http://fdl.msn.com/public/chat/msnchat41.cab
    O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v43/yacscom.cab
    O16 - DPF: {2FF18E20-DE11-11D1-8161-00A0C90DD90C} (MSNBC News Menu Control 3.01) - http://www.msnbc.com/download/nm1228.cab
    O16 - DPF: {340FBD92-B7BB-11D2-8299-00104B27F81B} (ScanCtl Class) - http://outpost.zdnet.com/updates/resources/updates.cab
    O16 - DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} (Office Update Installation Engine) - http://office.microsoft.com/officeupdate/content/opuc.cab
    O16 - DPF: {4E888414-DB8F-11D1-9CD9-00C04F98436A} (Microsoft.WinRep) - https://webresponse.one.microsoft.com/oas/ActiveX/winrep.cab
    O16 - DPF: {597C45C2-2D39-11D5-8D53-0050048383FE} (OPUCatalog Class) - http://office.microsoft.com/productupdates/content/opuc.cab
    O16 - DPF: {6AA5F26D-785F-46C5-9035-64518F8A83F5} (Activator Class) - https://www.pocketpc.co.il/license/components/MuiActivator.dll
    O16 - DPF: {713AE1D4-897C-11D2-B2A0-00C04F94B4D5} (WUCorpSuppControl Class) - http://corporate.windowsupdate.microsoft.com/en/wucorpct.CAB
    O16 - DPF: {814EA0DA-E0D9-4AA4-833C-A1A6D38E79E9} (DASWebDownload Class) - http://das.microsoft.com/activate/cab/x86/i486/NTANSI/retail/DASAct.cab
    O16 - DPF: {8714912E-380D-11D5-B8AA-00D0B78F3D48} (Yahoo! WebCam Upload Wrapper) - http://chat.yahoo.com/cab/yuplapp.cab
    O16 - DPF: {90A29DA5-D020-4B18-8660-6689520C7CD7} (DmiReader Class) - http://ftp.us.dell.com/fixes/PROFILER.CAB
    O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.edgestream.com/demopage/plugins/release/isetup.cab
    O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37579.6167939815
    O16 - DPF: {A922B6AB-3B87-11D3-B3C2-0008C7DA6CB9} (InetDownload Class) - http://activex.microsoft.com/activex/controls/WindowsMedia/downloadcontrol.cab
    O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
    O16 - DPF: {CD17FAAA-17B4-4736-AAEF-436EDC304C8C} (ContentAuditX Control) - http://a840.g.akamai.net/7/840/5805/v1503/www.contentwatch.com/audit/includes/ContentAuditControl.cab
    O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/popups/dlControl.CAB
    O16 - DPF: {DE22A7AB-A739-4C58-AD52-21F9CD6306B7} (CTAdjust Class) - http://download.microsoft.com/download/Typography/Utility/2.0b/WXP/EN-US/clearadj.cab
     
  10. 2004/04/20
    velvi

    velvi Inactive Thread Starter

    Joined:
    2002/01/07
    Messages:
    28
    Likes Received:
    0
    As Requested

    Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0; Q312461)
    Velvi
    Thanks!
     
  11. 2004/04/20
    Lonny Jones

    Lonny Jones Inactive Alumni

    Joined:
    2002/12/16
    Messages:
    2,252
    Likes Received:
    0
    Well I see nothing wrong, other than kazaa even if it is lite
    maybe the others will spot something.

    have you tried clearing IE's cache, also you can fix all those 0-16's
    then restart IE and go try an Online scan

    I get the feeling though its a security program blocking scripting
     
  12. 2004/04/20
    velvi

    velvi Inactive Thread Starter

    Joined:
    2002/01/07
    Messages:
    28
    Likes Received:
    0
    How do you "fix" the 0-16s?

    Thanks Lonny Jones!
    How do you "fix" the 0-16s?
    Also what's my next step with those "security programs" that you feel are the problem?
    Velvi
     
  13. 2004/04/20
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    I don't see anything out if the ordinary either. Only a few startup items not needed and alot of 016's. Agree with Lonny to fix those. Scan again, place a check next to them, close all other windows and click fix.

    Manually check your ActiveX settings. Tools>IE Options>Security>custom level button. Starting with 'download signed ActiveX controls', set to prompt, disable, disable, enable, enable. OK out.
    Go to start>run and type or paste cleanmgr /sageset:1 and hit enter. In the opening window, check all except compress old files and OK. Start>run and type or paste cleanmgr /sagerun:1 and hit enter.

    Try online scans again.

    RAV

    Housecall
     
  14. 2004/04/20
    Johanna

    Johanna Inactive Alumni

    Joined:
    2003/03/08
    Messages:
    2,402
    Likes Received:
    2
  15. 2004/04/20
    velvi

    velvi Inactive Thread Starter

    Joined:
    2002/01/07
    Messages:
    28
    Likes Received:
    0
    Still no JOY!

    I just tried Daves (Noahdfear) suggestions to no avail. As for repairing IE I don't believe it will help because I have the same problem when using Opera. All & any ideas still welcome.
     
  16. 2004/04/20
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    Check your ActiveX here.

    I have found some references to Zone Alarm blocking some ActiveX controls from running. Try disabling the firewall prior to starting a scan. If it works then, check the privacy settings. Haven't seen it happen elsewhere but the popup blocker in the google toolbar could be affecting it. You could also try clearing the Sun Java cache. Control Panel in classic view, open the Java plugin, click the clear button on the cache tab.
     
  17. 2004/04/20
    markp62

    markp62 Geek Member Alumni

    Joined:
    2002/05/01
    Messages:
    4,012
    Likes Received:
    16
    At one time, you did have the ability to install ActiveX controls. That is what those 016 entries are.
    One may be the culprit here, the ContentWatch, it is a popup blocker, among other things. I am not suggesting getting rid of it, but look into it's settings. Maybe a conflict with the Google toolbar popup blocking?
     
Thread Status:
Not open for further replies.

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.