> It seems to take forever for IE6 to connect to the web when first launched
> and it hangs or freezes until the connection is made. Once the web page
> is
> downloaded everything is fine unless I try to launch another page from the
> downloaded page. Then it freezes and hangs again. Below is the hizack
> this
> log if this helps.
> Logfile of HijackThis v1.99.1
> Scan saved at 5:14:17 PM, on 12/24/2008
> Platform: Windows XP SP2 (WinNT 5.01.2600)
> MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
>
> Running processes:
> C:\WINDOWS\System32\smss.exe
> C:\WINDOWS\system32\winlogon.exe
> C:\WINDOWS\system32\services.exe
> C:\WINDOWS\system32\lsass.exe
> C:\WINDOWS\system32\svchost.exe
> E:\Windows Defender\MsMpEng.exe
> C:\WINDOWS\System32\svchost.exe
> C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
> C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
> C:\WINDOWS\system32\spoolsv.exe
> C:\WINDOWS\Explorer.EXE
> C:\WINDOWS\system32\nvraidservice.exe
> C:\WINDOWS\system32\CTHELPER.EXE
> C:\WINDOWS\system32\CTXFIHLP.EXE
> C:\WINDOWS\SYSTEM32\CTXFISPI.EXE
> C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
> C:\WINDOWS\system32\WDBtnMgr.exe
> C:\Program Files\Common Files\Symantec Shared\ccApp.exe
> D:\Symantec\SYMANT~1\VPTray.exe
> D:\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
> D:\Acronis\TrueImageMonitor.exe
> D:\Acronis\TimounterMonitor.exe
> C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
> E:\Windows Defender\MSASCui.exe
> C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
> D:\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
> C:\WINDOWS\system32\ctfmon.exe
> C:\WINDOWS\system32\cisvc.exe
> D:\Symantec\Symantec AntiVirus\DefWatch.exe
> C:\WINDOWS\system32\inetsrv\inetinfo.exe
> C:\WINDOWS\system32\nvsvc32.exe
> E:\Warecentral\PrintKey-Pro\PKey_Pro.exe
> C:\WINDOWS\system32\HPZipm12.exe
> C:\WINDOWS\System32\snmp.exe
> C:\WINDOWS\system32\svchost.exe
> D:\Symantec\Symantec AntiVirus\Rtvscan.exe
> C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe
> E:\UPHClean\uphclean.exe
> C:\WINDOWS\System32\dmadmin.exe
> C:\Program Files\Common Files\Macrovision Shared\FLEXnet
> Publisher\FNPLicensingService.exe
> C:\WINDOWS\System32\svchost.exe
> C:\WINDOWS\system32\wbem\unsecapp.exe
> C:\WINDOWS\system32\cidaemon.exe
> C:\WINDOWS\system32\cidaemon.exe
> C:\Program Files\Internet Explorer\iexplore.exe
> C:\Documents and Settings\Arthur\Local Settings\Temporary Internet
> Files\Content.IE5\G31GLXBO\hijackthis[1].exe
> C:\WINDOWS\explorer.exe
> E:\HijackThis\HijackThis.exe
>
> R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
>
http://my.msn.com/> R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
> R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = e:\Pure
> CD
> Ripper\blank.htm
> R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
> "C:\Program Files\Outlook Express\msimn.exe"
> O2 - BHO: Adobe PDF Reader Link Helper -
> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common
> Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
> O2 - BHO: Java(tm) Plug-In SSV Helper -
> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program
> Files\Java\jre6\bin\ssv.dll
> O2 - BHO: Encarta Web Companion Helper Object -
> {955BE0B8-BC85-4CAF-856E-8E0D8B610560} - C:\Program Files\Common
> Files\Microsoft Shared\Encarta Web Companion\2007\ENCWCBAR.DLL
> O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} -
> E:\FlashGet\jccatch.dll
> O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} -
> c:\program files\google\googletoolbar2.dll
> O2 - BHO: Adobe PDF Conversion Toolbar Helper -
> {AE7CD045-E861-484f-8273-0445EE161910} - D:\Adobe\Acrobat
> 8.0\Acrobat\AcroIEFavClient.dll
> O2 - BHO: Java(tm) Plug-In 2 SSV Helper -
> {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program
> Files\Java\jre6\bin\jp2ssv.dll
> O2 - BHO: JQSIEStartDetectorImpl -
> {E7E6F031-17CE-4C07-BC86-EABFE594F69C} -
> C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
> O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} -
> c:\program
> files\google\googletoolbar2.dll
> O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -
> D:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
> O3 - Toolbar: Encarta Web Companion -
> {147D6308-0614-4112-89B1-31402F9B82C4}
> - C:\Program Files\Common Files\Microsoft Shared\Encarta Web
> Companion\2007\ENCWCBAR.DLL
> O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} -
> E:\FlashGet\fgiebar.dll
> O4 - HKLM\..\Run: [NVRaidService] C:\WINDOWS\system32\nvraidservice.exe
> O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
> O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
> O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software
> Update\HPWuSchd2.exe
> O4 - HKLM\..\Run: [WD Button Manager] WDBtnMgr.exe
> O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec
> Shared\ccApp.exe"
> O4 - HKLM\..\Run: [vptray] D:\Symantec\SYMANT~1\VPTray.exe
> O4 - HKLM\..\Run: [TrueImageMonitor.exe] D:\Acronis\TrueImageMonitor.exe
> O4 - HKLM\..\Run: [AcronisTimounterMonitor]
> D:\Acronis\TimounterMonitor.exe
> O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common
> Files\Acronis\Schedule2\schedhlp.exe"
> O4 - HKLM\..\Run: [Windows Defender] "E:\Windows
> Defender\MSASCui.exe" -hide
> O4 - HKLM\..\Run: [NGServer] D:\Symantec\Ghost\ngserver.exe
> O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE
> C:\WINDOWS\system32\NvCpl.dll,NvStartup
> O4 - HKLM\..\Run: [MSConfig]
> C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
> O4 - HKCU\..\Run: [swg] C:\Program
> Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
> O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
> O4 - Global Startup: HP Photosmart Premier Fast Start.lnk.disabled
> O4 - Global Startup: PrintKey-Pro.lnk =
> E:\Warecentral\PrintKey-Pro\PKey_Pro.exe
> O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel
> present
> O8 - Extra context menu item: &NeoTrace It! - E:\NEOTRA~1\NTXcontext.htm
> O8 - Extra context menu item: Append to existing PDF -
> res://D:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
> O8 - Extra context menu item: Convert link target to Adobe PDF -
> res://D:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
> O8 - Extra context menu item: Convert link target to existing PDF -
> res://D:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
> O8 - Extra context menu item: Convert selected links to Adobe PDF -
> res://D:\Adobe\Acrobat
> 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
> O8 - Extra context menu item: Convert selected links to existing PDF -
> res://D:\Adobe\Acrobat
> 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
> O8 - Extra context menu item: Convert selection to Adobe PDF -
> res://D:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
> O8 - Extra context menu item: Convert selection to existing PDF -
> res://D:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
> O8 - Extra context menu item: Convert to Adobe PDF -
> res://D:\Adobe\Acrobat
> 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
> O8 - Extra context menu item: Download All by FlashGet -
> E:\FlashGet\jc_all.htm
> O8 - Extra context menu item: Download using FlashGet -
> E:\FlashGet\jc_link.htm
> O8 - Extra context menu item: E&xport to Microsoft Excel -
> res://D:\MICROS~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
> O9 - Extra button: Trace - {04849C74-016E-4a43-8AA5-1F01DE57F4A1} -
> E:\VisualRoute\vrie.dll
> O9 - Extra 'Tools' menuitem: VisualRoute Trace -
> {04849C74-016E-4a43-8AA5-1F01DE57F4A1} - E:\VisualRoute\vrie.dll
> O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
> D:\MICROS~1\MICROS~2\OFFICE11\REFIEBAR.DLL
> O9 - Extra button: Encarta Search Bar -
> {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common
> Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
> O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} -
> E:\FlashGet\flashget.exe
> O9 - Extra 'Tools' menuitem: &FlashGet -
> {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - E:\FlashGet\flashget.exe
> O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} -
> C:\Program Files\Messenger\msmsgs.exe
> O9 - Extra 'Tools' menuitem: Windows Messenger -
> {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program
> Files\Messenger\msmsgs.exe
> O9 - Extra button: NeoTrace It! - {9885224C-1217-4c5f-83C2-00002E6CEF2B} -
> E:\NEOTRA~1\NTXtoolbar.htm (HKCU)
> O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime
> Environment
> 1.6.0) -
http://javadl.sun.com/webapps/download/AutoDL?BundleId=26688> O20 - Winlogon Notify: GoToAssist - C:\Program
> Files\Citrix\GoToAssist\514\G2AWinLogon.dll
> O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
> O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
> O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} -
> C:\WINDOWS\system32\WPDShServiceObj.dll
> O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis -
> C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
> O23 - Service: Adobe Active File Monitor V5 (AdobeActiveFileMonitor5.0) -
> Unknown owner - D:\Adobe\Photoshop Elements
> 5.0\PhotoshopElementsFileAgent.exe
> O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation -
> C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
> O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec
> Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
> O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec
> Corporation -
> C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
> O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec
> Corporation - D:\Symantec\Symantec AntiVirus\DefWatch.exe
> O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. -
> C:\Program Files\Common Files\Macrovision Shared\FLEXnet
> Publisher\FNPLicensingService.exe
> O23 - Service: Google Updater Service (gusvc) - Google - C:\Program
> Files\Google\Common\Google Updater\GoogleUpdaterService.exe
> O23 - Service: Symantec Ghost Database Service (ngdbserv) - Symantec
> Corporation - D:\Symantec\Ghost\bin\dbserv.exe
> O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA
> Corporation -
> C:\WINDOWS\system32\nvsvc32.exe
> O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
> O23 - Service: SAVRoam (SavRoam) - symantec - D:\Symantec\Symantec
> AntiVirus\SavRoam.exe
> O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec
> Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
> O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation -
> C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
> O23 - Service: Symantec AntiVirus - Symantec Corporation -
> D:\Symantec\Symantec AntiVirus\Rtvscan.exe
> O23 - Service: Acronis Try And Decide Service (TryAndDecideService) -
> Unknown owner - C:\Program Files\Common
> Files\Acronis\Fomatik\TrueImageTryStartService.exe
>
>