![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| Resolved HJT Threads Resolved spyware and popup issues. |
|
|
LinkBack | Thread Tools |
|
|
#1 (permalink) |
|
Registered User
Join Date: Nov 2008
Posts: 4
OS: xp
|
Is Spyware causing my firewall to block internet access?
For years I've been plagued with slow internet connections and sometimes no connection. I use internet explorer with my Time Warner Road Runner cable service. I've sought help from Time Warner, various tutorials, etc. The "connection" always tests good and the speed checks always show a high (cable speed) rate of data transfer. Ping tests are always good. I have a Toshiba modem, model DAZ8811F. Recently, something has changed, because I can only access websites with my firewall turned off, otherwise, with it on, data transfer appears to crawl and I eventually get a message that says I don't have an internet connection. However, I can run Roadrunner's connection diagnostics and it says the connection is fine? ? ? My firewall is what TW Roadrunner provides, CA Personal Firewall.
DDS (Version 1.1.0) - NTFSx86 Run by Allen Wilson at 11:02:33.81 on Mon 12/29/2008 Internet Explorer: 7.0.5730.11 Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.991.505 [GMT -5:00] AV: CA Anti-Virus *On-access scanning enabled* (Updated) FW: CA Personal Firewall *disabled* ============== Running Processes =============== C:\WINDOWS\system32\svchost -k DcomLaunch svchost.exe C:\WINDOWS\System32\svchost.exe -k netsvcs svchost.exe svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\CA\SharedComponents\HIPSEngine\UmxCfg.exe C:\Program Files\CA\SharedComponents\HIPSEngine\UmxFwHlp.exe C:\Program Files\CA\SharedComponents\HIPSEngine\UmxPol.exe C:\Program Files\CA\SharedComponents\HIPSEngine\UmxAgent.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\ISafe.exe C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe C:\Program Files\CA\SharedComponents\PPRT\bin\ITMRTSVC.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe -k imgsvc c:\program files\lenovo\system update\suservice.exe C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\VetMsg.exe C:\Program Files\Common Files\Lenovo\Logger\logmon.exe C:\WINDOWS\Explorer.EXE C:\Program Files\CA\CA Internet Security Suite\CA Personal Firewall\capfsem.exe C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe C:\WINDOWS\system32\wuauclt.exe C:\PROGRA~1\Lenovo\LENOVO~2\LPMGR.exe C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe C:\Program Files\Lenovo\Client Security Solution\cssauth.exe C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe C:\Program Files\Google\Google Desktop Search\GoogleDesktopDisplay.exe C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe C:\Program Files\CA\CA Internet Security Suite\cctray\cctray.exe C:\Program Files\CA\CA Internet Security Suite\CA Anti-Spam\QSP-5.1.18.0\QOELoader.exe C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus\CAVRID.exe C:\Program Files\CA\CA Internet Security Suite\CA Anti-Spyware\CAPPActiveProtection.exe C:\Program Files\CA\CA Internet Security Suite\CA Anti-Spyware\PPCtlPriv.exe C:\Program Files\CA\CA Internet Security Suite\CA Personal Firewall\capfasem.exe C:\Program Files\CA\CA Internet Security Suite\ccprovsp.exe C:\Program Files\Lenovo\Client Security Solution\tvtpwm_tray.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\My Faster PC\MyFasterPC.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\Allen Wilson\Desktop\dds.com ============== Pseudo HJT Report =============== uStart Page = hxxp://www.rr.com/flash/index.cfm uSearch Page = hxxp://www.google.com uSearch Bar = hxxp://www.google.com/ie uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 uInternet Settings,ProxyOverride = *.local uSearchAssistant = hxxp://www.google.com/ie uSearchURL,(Default) = hxxp://www.google.com/search?q=%s mSearchAssistant = hxxp://www.google.com/ie BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_03\bin\ssv.dll BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\googletoolbar3.dll BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\2.0.301.7164\swg.dll BHO: CPwmIEBrowserHelper Object: {f040e541-a427-4cf7-85d8-75e3e0f476c5} - c:\program files\lenovo\client security solution\tvtpwm_ie_com.dll TB: &Google: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\googletoolbar3.dll TB: {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No File TB: {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No File uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup mRun: [TVT Scheduler Proxy] c:\program files\common files\lenovo\scheduler\scheduler_proxy.exe mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start mRun: [LPManager] c:\progra~1\lenovo\lenovo~2\LPMGR.exe mRun: [Google Desktop Search] "c:\program files\google\google desktop search\GoogleDesktop.exe" /startup mRun: [cssauth] "c:\program files\lenovo\client security solution\cssauth.exe" silent mRun: [MEDIC] "c:\program files\medic\bin\sprtcmd.exe" /P MEDIC mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0_03\bin\jusched.exe" mRun: [cctray] "c:\program files\ca\ca internet security suite\cctray\cctray.exe" mRun: [QOELOADER] "c:\program files\ca\ca internet security suite\ca anti-spam\qsp-5.1.18.0\QOELoader.exe" mRun: [CAVRID] "c:\program files\ca\ca internet security suite\ca anti-virus\CAVRID.exe" mRun: [cafwc] c:\program files\ca\ca internet security suite\ca personal firewall\cafw.exe -cl mRun: [capfasem] c:\program files\ca\ca internet security suite\ca personal firewall\capfasem.exe mRun: [<NO NAME>] mRun: [capfupgrade] c:\program files\ca\ca internet security suite\ca personal firewall\capfupgrade.exe mRun: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\isuspm.exe -startup mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe" StartupFolder: c:\docume~1\allenw~1\startm~1\programs\startup\myfast~1.lnk - c:\program files\my faster pc\MyFasterPC.exe IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe IE: {0045D4BC-5189-4b67-969C-83BB1906C421} - {0FE81B52-73FA-425F-8F06-3F32451AC73F} - c:\program files\lenovo\client security solution\tvtpwm_ie_com.dll IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_03\bin\ssv.dll LSP: c:\windows\system32\VetRedir.dll Notify: PFW - UmxWnp.Dll AppInit_DLLs: c:\progra~1\google\google~1\GOEC62~1.DLL ============= SERVICES / DRIVERS =============== R0 KmxStart;KmxStart;c:\windows\system32\drivers\kmxstart.sys [2008-6-24 93712] R1 KmxAgent;KmxAgent;c:\windows\system32\drivers\kmxagent.sys [2008-6-24 63504] R1 KmxFile;KmxFile;c:\windows\system32\drivers\KmxFile.sys [2008-6-24 45584] R1 KmxFw;KmxFw;c:\windows\system32\drivers\kmxfw.sys [2008-6-24 115216] R1 VET-FILT;VET File System Filter;c:\windows\system32\drivers\VET-FILT.sys [2007-11-14 26376] R1 VET-REC;VET File System Recognizer;c:\windows\system32\drivers\VET-REC.sys [2007-11-14 21128] R1 VETEFILE;VET File Scan Engine;c:\windows\system32\drivers\VETEFILE.sys [2008-6-4 880560] R1 VETFDDNT;VET Floppy Boot Sector Monitor;c:\windows\system32\drivers\VETFDDNT.sys [2007-11-14 21512] R1 VETMONNT;VET File Monitor;c:\windows\system32\drivers\VETMONNT.sys [2007-11-14 32264] R2 CAISafe;CAISafe;c:\program files\ca\ca internet security suite\ca anti-virus\ISafe.exe [2007-11-14 144960] R2 KmxCF;KmxCF;c:\windows\system32\drivers\KmxCF.sys [2008-6-24 134648] R2 KmxSbx;KmxSbx;c:\windows\system32\drivers\KmxSbx.sys [2008-6-24 66576] R2 smi2;smi2;\??\c:\program files\smi2\smi2.sys [2006-7-14 3968] R2 UmxAgent;HIPS Event Manager;"c:\program files\ca\sharedcomponents\hipsengine\UmxAgent.exe" [2007-10-4 1010192] R2 UmxCfg;HIPS Configuration Interpreter;"c:\program files\ca\sharedcomponents\hipsengine\UmxCfg.exe" [2007-10-18 801296] R2 UmxPol;HIPS Policy Manager;"c:\program files\ca\sharedcomponents\hipsengine\UmxPol.exe" [2008-6-24 281104] R2 VETMSGNT;VET Message Service;c:\program files\ca\ca internet security suite\ca anti-virus\VetMsg.exe [2007-11-14 242952] R3 KmxCfg;KmxCfg;c:\windows\system32\drivers\kmxcfg.sys [2008-6-24 88816] R3 pelmouse;Mouse Suite Driver;c:\windows\system32\drivers\pelmouse.sys [2006-11-22 16384] R3 pelusblf;USB Mouse Low Filter Driver;c:\windows\system32\drivers\pelusblf.sys [2006-11-22 9216] R3 PPCtlPriv;PPCtlPriv;"c:\program files\ca\ca internet security suite\ca anti-spyware\PPCtlPriv.exe" [2007-8-16 189704] R3 VETEBOOT;VET Boot Scan Engine;c:\windows\system32\drivers\VETEBOOT.sys [2008-6-4 108368] =============== Created Last 30 ================ 2008-12-21 03:18 <DIR> --d----- c:\program files\MSXML 6.0 2008-12-20 20:55 <DIR> --d----- c:\windows\system32\CatRoot_bak 2008-12-20 20:54 272,128 -------- c:\windows\system32\drivers\bthport.sys 2008-12-20 20:54 272,128 -------- c:\windows\system32\dllcache\bthport.sys 2008-12-20 20:54 138,368 -------- c:\windows\system32\dllcache\afd.sys 2008-12-20 20:51 331,776 -------- c:\windows\system32\dllcache\msadce.dll 2008-12-07 19:07 3,426,072 a------- c:\windows\system32\d3dx9_32.dll 2008-12-07 19:02 <DIR> --d----- c:\windows\system32\XPSViewer 2008-12-07 19:00 14,048 -------- c:\windows\system32\spmsg2.dll 2008-12-07 18:59 81,768 a------- c:\windows\system32\xinput1_3.dll 2008-12-07 18:59 1,123,696 a------- c:\windows\system32\D3DCompiler_33.dll 2008-12-07 18:59 443,752 a------- c:\windows\system32\d3dx10_33.dll 2008-12-07 18:59 3,495,784 a------- c:\windows\system32\d3dx9_33.dll 2008-12-07 18:58 <DIR> --d----- c:\windows\system32\xlive 2008-12-07 18:56 107,888 a------- c:\windows\system32\CmdLineExt.dll ==================== Find3M ==================== 2008-12-28 22:18 5,852 a--sh--- c:\windows\system32\KGyGaAvL.sys 2008-12-28 10:31 5,427 a------- c:\windows\system32\EGATHDRV.SYS 2008-12-24 22:16 58,186 a------- c:\windows\system32\drivers\kmxcfg.u2k0 2008-12-24 22:16 64 a------- c:\windows\system32\drivers\kmxcfg.u2k7 2008-12-24 22:16 64 a------- c:\windows\system32\drivers\kmxcfg.u2k6 2008-12-24 22:16 64 a------- c:\windows\system32\drivers\kmxcfg.u2k5 2008-12-24 22:16 64 a------- c:\windows\system32\drivers\kmxcfg.u2k4 2008-12-24 22:16 64 a------- c:\windows\system32\drivers\kmxcfg.u2k3 2008-12-24 22:16 64 a------- c:\windows\system32\drivers\kmxcfg.u2k2 2008-12-24 22:16 64 a------- c:\windows\system32\drivers\kmxcfg.u2k1 2008-12-13 01:40 3,593,216 -------- c:\windows\system32\dllcache\mshtml.dll 2008-10-24 06:10 453,632 -------- c:\windows\system32\dllcache\mrxsmb.sys 2008-10-23 07:51 284,160 a------- c:\windows\system32\gdi32.dll 2008-10-23 07:51 284,160 -------- c:\windows\system32\dllcache\gdi32.dll 2008-10-18 08:28 214,898 a------- c:\windows\pchealth\helpctr\config\cache\Personal_32_1033.dat 2008-10-16 14:13 1,809,944 a------- c:\windows\system32\dllcache\wuaueng.dll 2008-10-16 14:13 202,776 a------- c:\windows\system32\dllcache\wuweb.dll 2008-10-16 14:12 323,608 a------- c:\windows\system32\dllcache\wucltui.dll 2008-10-16 14:12 561,688 a------- c:\windows\system32\dllcache\wuapi.dll 2008-10-16 14:09 92,696 a------- c:\windows\system32\dllcache\cdm.dll 2008-10-16 14:09 51,224 a------- c:\windows\system32\dllcache\wuauclt.exe 2008-10-16 14:08 34,328 a------- c:\windows\system32\dllcache\wups.dll 2008-10-16 08:11 70,656 -------- c:\windows\system32\dllcache\ie4uinit.exe 2008-10-16 08:11 13,824 -------- c:\windows\system32\dllcache\ieudinit.exe 2008-10-15 11:53 339,456 -------- c:\windows\system32\dllcache\netapi32.dll 2008-10-15 02:06 633,632 -------- c:\windows\system32\dllcache\iexplore.exe 2008-10-15 02:04 161,792 -------- c:\windows\system32\dllcache\ieakui.dll 2008-10-03 05:15 247,326 -------- c:\windows\system32\strmdll.dll 2008-10-03 05:15 247,326 -------- c:\windows\system32\dllcache\strmdll.dll 2008-09-30 16:43 1,286,152 a------- c:\windows\system32\msxml4.dll ============= FINISH: 11:03:43.35 =============== |
|
|
| Important Information |
|
Join the #1 Tech Support Forum Today - It's Totally Free!
TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free. Join TechSupportforum.com Today - Click Here |
|
|
#3 (permalink) |
|
Manager, Security Center, TSF Academy; Analyst, Security Team
Join Date: Jan 2005
Location: Transylvania County, North Carolina, USA
Posts: 35,634
OS: 2000 Pro; XP Pro; XP Home
|
Re: Is Spyware causing my firewall to block internet access?
Hello -
I don't see anything to suggest malware is the cause of such issues. You may wish to seek assistance in the Security and Firewalls section of the forum.
__________________
Practice Safe Surfing Because what you don't know, CAN hurt you. Microsoft MVP - Consumer Security 2009
|
|
|
| Thread Tools | |
|
|