This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

[Resolved] Can't get to internet through my user setting

20 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Hi,

Please do the following:

  • Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before following the steps below.
  • They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results".
Copy/paste the text inside the Codebox below into notepad:

Here's how to do that:
Click Start > Run type Notepad click OK.
This will open an empty notepad file:

Copy all the text inside of the code box - Press Ctrl+C (or right click on the highlighted section and choose 'copy')

http://forums.whatthetech.com/Can_t_get_internet_through_my_user_setting_t110623.html

Collect::
c:\windows\system32\bjpddtbqglhnpcy.dll

DDS::
EB: Search panel: {932f10bd-e7d7-df34-7e9e-121e94d5b766} - c:\windows\system32\bjpddtbqglhnpcy.dll
TB: {A057A204-BACC-4D26-9990-79A187E2698E} - No File
DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - hxxp://zone.msn.com/bingame/dim2/default/popcaploader_v6.cab

Now paste the copied text into the open notepad - press CTRL+V (or right click and choose 'paste')

Save this file to your desktop, Save this as "CFScript"


Here's how to do that:

1.Click File;
2.Click Save As… Change the directory to your desktop;
3.Change the Save as type to "All Files";
4.Type in the file name: CFScript
5.Click Save …

[external image: Posted Image]
  • Referring to the screenshot above, drag CFScript.txt into ComboFix.exe.
  • ComboFix will now run a scan on your system. It may reboot your system when it finishes. This is normal.
  • When finished, it shall produce a log for you.
  • Copy and paste the contents of the log in your next reply.

CAUTION: Do not mouse-click ComboFix's window while it is running. That may cause it to stall.


**Note**
When CF finishes running, the ComboFix log will open along with a message box–do not be alarmed. With the above script, ComboFix will capture files to submit for analysis.
  • Ensure you are connected to the internet and click OK on the message box.
here is the new combofix log: ComboFix 10-03-02.02 - Gary 03/04/2010 19:48:09.6.2 - x86 Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1014.556 [GMT -5:00] Running from: c:\documents and settings\[removed]\Desktop\ComboFix.exe Command switches used :: c:\documents and settings\Gary\Desktop\CFScript.txt AV: AVG Anti-Virus Free *On-access scanning disabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF} . ((((((((((((((((((((((((( Files Created from 2010-02-05 to 2010-03-05 ))))))))))))))))))))))))))))))) . 2010-03-05 00:16 . 2010-03-05 00:16 ——– d—–w- c:\program files\Common Files\Java 2010-03-05 00:16 . 2010-03-05 00:16 348160 —-a-w- c:\documents and settings\Gary\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-748789bf-n\msvcr71.dll 2010-03-05 00:16 . 2010-03-05 00:16 61440 —-a-w- c:\documents and settings\Gary\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-3d27fca5-n\decora-sse.dll 2010-03-05 00:16 . 2010-03-05 00:16 503808 —-a-w- c:\documents and settings\Gary\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-748789bf-n\msvcp71.dll 2010-03-05 00:16 . 2010-03-05 00:16 499712 —-a-w- c:\documents and settings\Gary\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-748789bf-n\jmc.dll 2010-03-05 00:16 . 2010-03-05 00:16 12800 —-a-w- c:\documents and settings\Gary\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-3d27fca5-n\decora-d3d.dll 2010-03-04 23:51 . 2010-03-04 23:51 38784 —-a-w- c:\documents and settings\Gary\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe 2010-03-04 23:50 . 2010-03-04 23:50 86016 —-a-w- c:\documents and settings\All Users\Application Data\NOS\Adobe_Downloads\arh.exe 2010-03-04 23:50 . 2010-03-05 00:14 ——– d—–w- c:\documents and settings\All Users\Application Data\NOS 2010-03-04 00:50 . 2010-03-04 00:50 ——– d—–w- c:\documents and settings\Gary\Application Data\Malwarebytes 2010-02-18 16:31 . 2010-02-18 16:31 423464 —-a-w- c:\documents and settings\Chris\Application Data\E-centives\BSTIEPrintCtl1.dll 2010-02-18 16:31 . 2010-02-18 16:31 ——– d—–w- c:\documents and settings\Chris\Application Data\E-centives 2010-02-14 16:05 . 2010-02-14 16:05 2882520 —-a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Downloads\HRBlockGA.exe 2010-02-13 22:13 . 2010-02-13 22:13 ——– d—–w- c:\documents and settings\Chris\Application Data\TaxCut 2010-02-13 22:12 . 2010-02-13 22:12 ——– d—–w- c:\program files\HRBlock2009 2010-02-13 22:12 . 2010-02-13 22:12 ——– d—–w- c:\program files\PDF995 2010-02-13 22:11 . 2010-02-13 22:11 ——– d—–w- c:\documents and settings\All Users\Application Data\TaxCut 2010-02-13 21:28 . 2010-02-13 21:28 ——– d—–w- c:\program files\support.com 2010-02-13 21:28 . 2010-02-13 21:28 ——– d—–w- c:\documents and settings\Chris\Local Settings\Application Data\SupportSoft 2010-02-13 21:28 . 2010-02-13 21:28 ——– d—–w- c:\program files\Common Files\SupportSoft 2010-02-06 04:14 . 2010-02-06 04:14 ——– d—–w- c:\documents and settings\NetworkService\Local Settings\Application Data\Google 2010-02-06 04:09 . 2010-02-06 04:09 ——– d—–w- c:\documents and settings\LocalService\Local Settings\Application Data\Google 2010-02-05 17:56 . 2010-02-05 17:56 ——– d—–w- c:\documents and settings\LocalService\Local Settings\Application Data\LogMeIn 2010-02-05 05:45 . 2010-02-05 05:46 1436320 —-a-w- c:\documents and settings\Chris\Application Data\Move Networks\MoveMediaPlayerWinSilent_071505000011.exe . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2010-03-05 00:15 . 2009-12-09 02:34 411368 —-a-w- c:\windows\system32\deploytk.dll 2010-03-05 00:15 . 2006-04-05 05:12 ——– d—–w- c:\program files\Java 2010-03-04 23:55 . 2006-04-08 03:23 ——– d—–w- c:\program files\Common Files\Adobe 2010-03-04 23:51 . 2009-10-26 02:16 ——– d—–w- c:\program files\Common Files\Adobe AIR 2010-03-04 11:46 . 2009-07-29 11:45 ——– d—–w- c:\program files\LogMeIn 2010-03-04 00:50 . 2009-07-18 01:58 ——– d—–w- c:\program files\Malwarebytes' Anti-Malware 2010-02-23 03:41 . 2006-04-07 22:42 94184 —-a-w- c:\documents and settings\Chris\Local Settings\Application Data\GDIPFONTCACHEV1.DAT 2010-02-19 18:11 . 2006-04-22 15:22 94184 —-a-w- c:\documents and settings\Gary\Local Settings\Application Data\GDIPFONTCACHEV1.DAT 2010-02-13 21:52 . 2006-04-05 05:31 ——– d—–w- c:\program files\Google 2010-02-05 05:46 . 2009-09-05 23:02 144160 —-a-w- c:\documents and settings\Chris\Application Data\Move Networks\uninstall.exe 2010-02-05 05:46 . 2009-09-05 23:02 ——– d—–w- c:\documents and settings\Chris\Application Data\Move Networks 2010-02-05 05:46 . 2009-12-10 19:26 4187512 —-a-w- c:\documents and settings\Chris\Application Data\Move Networks\plugins\npqmp071505000011.dll 2010-01-25 20:20 . 2010-01-25 20:20 ——– d—–w- c:\documents and settings\Chris\Application Data\YouDataAIR.CDA5CEB063BC2A22C44BAA035F25F65FCCDA2208.1 2010-01-25 20:20 . 2010-01-25 20:20 ——– d—–w- c:\program files\YouData 2010-01-22 08:21 . 2008-08-24 01:27 ——– d—–w- c:\program files\Microsoft Silverlight 2010-01-15 04:59 . 2006-07-28 04:04 ——– d—–w- c:\program files\PhotoDeluxe BE 1.1 2010-01-08 03:17 . 2007-04-21 20:37 ——– d—–w- c:\program files\Coupons 2010-01-07 21:07 . 2009-07-18 01:58 38224 —-a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2010-01-07 21:07 . 2009-07-18 01:58 19160 —-a-w- c:\windows\system32\drivers\mbam.sys 2010-01-05 10:00 . 2005-08-16 09:18 832512 ——w- c:\windows\system32\wininet.dll 2010-01-05 10:00 . 2005-08-16 09:18 78336 —-a-w- c:\windows\system32\ieencode.dll 2010-01-05 10:00 . 2005-08-16 09:18 17408 —-a-w- c:\windows\system32\corpol.dll 2009-12-31 16:50 . 2006-04-05 04:52 353792 —-a-w- c:\windows\system32\drivers\srv.sys 2009-12-16 18:43 . 2005-08-16 09:37 343040 —-a-w- c:\windows\system32\mspaint.exe 2009-12-14 07:08 . 2005-08-16 09:18 33280 —-a-w- c:\windows\system32\csrsrv.dll 2009-12-10 19:27 . 2009-12-10 19:27 97144 —-a-w- c:\documents and settings\Chris\Application Data\Move Networks\ie_bin\MovePlayerUpgrade.exe 2009-12-09 02:33 . 2009-12-09 02:33 152576 —-a-w- c:\documents and settings\Chris\Application Data\Sun\Java\jre1.6.0_17\lzma.dll 2009-12-09 02:33 . 2009-12-09 02:33 79488 —-a-w- c:\documents and settings\Chris\Application Data\Sun\Java\jre1.6.0_17\gtapi.dll 2009-12-08 19:26 . 2005-08-16 09:18 2145280 ——w- c:\windows\system32\ntoskrnl.exe 2009-12-08 18:43 . 2004-08-04 03:59 2023936 ——w- c:\windows\system32\ntkrnlpa.exe 2009-12-05 14:20 . 2009-06-20 22:00 119808 —-a-w- c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll 2007-05-15 19:34 . 2006-05-29 02:35 66672 —-a-w- c:\program files\mozilla firefox\components\jar50.dll 2007-05-15 19:34 . 2006-05-29 02:35 54376 —-a-w- c:\program files\mozilla firefox\components\jsd3250.dll 2007-05-15 19:34 . 2007-02-09 18:11 34952 —-a-w- c:\program files\mozilla firefox\components\myspell.dll 2007-05-15 19:34 . 2007-02-09 18:11 46720 —-a-w- c:\program files\mozilla firefox\components\spellchk.dll 2007-05-15 19:34 . 2006-05-29 02:35 172144 —-a-w- c:\program files\mozilla firefox\components\xpinstal.dll 2008-07-21 01:28 . 2006-04-11 04:25 6580 –sha-w- c:\windows\system32\KGyGaAvL.sys . ((((((((((((((((((((((((((((( SnapShot@2010-03-03_21.48.58 ))))))))))))))))))))))))))))))))))))))))) . + 2010-03-05 00:16 . 2010-03-05 00:16 16384 c:\windows\temp\Perflib_Perfdata_3bc.dat + 2010-03-04 23:51 . 2010-03-04 23:51 24576 c:\windows\Installer\5a46918.msi + 2010-03-04 23:51 . 2010-03-04 23:51 27648 c:\windows\Installer\5a46911.msi + 2010-03-05 00:16 . 2010-03-05 00:15 153376 c:\windows\system32\javaws.exe + 2010-03-05 00:16 . 2010-03-05 00:15 145184 c:\windows\system32\javaw.exe - 2009-12-09 02:34 . 2009-12-09 02:34 145184 c:\windows\system32\javaw.exe + 2010-03-05 00:16 . 2010-03-05 00:15 145184 c:\windows\system32\java.exe - 2009-12-09 02:34 . 2009-12-09 02:34 145184 c:\windows\system32\java.exe + 2010-03-05 00:16 . 2010-03-05 00:16 180224 c:\windows\Installer\2730d.msi + 2010-03-05 00:15 . 2010-03-05 00:15 577536 c:\windows\Installer\27306.msi + 2010-03-04 23:56 . 2010-03-04 23:56 3940352 c:\windows\Installer\5a46c07.msi . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-04-11 68856] "DellSupport"="c:\program files\DellSupport\DSAgnt.exe" [2007-03-15 460784] "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2006-10-09 139264] "DellTransferAgent"="c:\documents and settings\All Users\Application Data\Dell\TransferAgent\TransferAgent.exe" [2007-11-13 135168] "Weather"="c:\program files\AWS\WeatherBug\Weather.exe" [2007-08-29 1347584] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ehTray"="c:\windows\ehome\ehtray.exe" [2005-09-29 67584] "igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-10-15 77824] "igfxpers"="c:\windows\system32\igfxpers.exe" [2005-10-15 114688] "DLA"="c:\windows\System32\DLA\DLACTRLW.EXE" [2005-09-08 122940] "HPDJ Taskbar Utility"="c:\windows\system32\spool\drivers\w32x86\3\hpztsb11.exe" [2004-04-06 172032] "HPHUPD06"="c:\program files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe" [2004-06-07 49152] "HPHmon06"="c:\windows\system32\hphmon06.exe" [2004-06-07 659456] "Hpppta"="c:\program files\Hewlett-Packard\HP PrecisionScan\PrecisionScan\hpppta.exe" [2000-12-05 86016] "NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648] "AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-12-17 2043160] "QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2009-01-05 413696] "Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2009-11-26 30192] "LogMeIn GUI"="c:\program files\LogMeIn\x86\LogMeInSystray.exe" [2008-07-24 63048] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760] "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672] "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040] c:\documents and settings\Chris\Start Menu\Programs\Startup\ RCA Detective.lnk - c:\documents and settings\Gary\My Documents\RCA Detective\RCADetective.exe [2009-6-12 942592] c:\documents and settings\All Users\Start Menu\Programs\Startup\ HP Digital Imaging Monitor.lnk - c:\program files\HP\digital imaging\bin\hpqtra08.exe [2004-5-28 241664] HP Image Zone Fast Start.lnk - c:\program files\HP\digital imaging\bin\hpqthb08.exe [2004-5-28 53248] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter] 2009-08-23 13:54 11952 —-a-w- c:\windows\system32\avgrsstx.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LMIinit] 2008-10-17 00:35 87352 —-a-w- c:\windows\system32\LMIinit.dll [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= R1 ATMhelpr;ATMhelpr;c:\windows\system32\drivers\ATMHELPR.SYS [7/27/2006 11:05 PM 4064] R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [5/21/2008 12:20 PM 335240] R2 AdobeActiveFileMonitor7.0;Adobe Active File Monitor V7;c:\program files\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe [9/16/2008 12:03 PM 169312] R2 avg8wd;AVG8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [2/7/2009 8:16 AM 297752] R2 LMIInfo;LogMeIn Kernel Information Provider;c:\program files\LogMeIn\x86\rainfo.sys [7/24/2008 5:46 PM 12856] R2 LMIRfsDriver;LogMeIn Remote File System Driver;c:\windows\system32\drivers\LMIRfsDriver.sys [7/29/2009 6:45 AM 47640] S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2/5/2010 11:09 PM 135664] S3 GoogleDesktopManager-110309-193829;Google Desktop Manager 5.9.911.3589;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [6/20/2009 4:59 PM 30192] S3 JL2004A;JL2004A Photo Viewer;c:\windows\system32\drivers\pv_wdm.sys [4/26/2006 2:32 PM 87144] S4 LMIRfsClientNP;LMIRfsClientNP; [x] — Other Services/Drivers In Memory — *NewlyCreated* - JAVAQUICKSTARTERSERVICE . Contents of the 'Scheduled Tasks' folder 2010-03-03 c:\windows\Tasks\AppleSoftwareUpdate.job - c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34] 2010-03-05 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-02-06 04:09] 2010-03-05 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-02-06 04:09] 2010-03-04 c:\windows\Tasks\HP Usg Daily FY04.job - c:\program files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\pexpress\hphped06.exe [2004-06-07 04:53] . . ——- Supplementary Scan ——- . uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 mStart Page = hxxp://home.sweetim.com uInternet Connection Wizard,ShellNext = hxxp://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us uSearchAssistant = hxxp://www.google.com/ie uSearchURL,(Default) = hxxp://www.google.com/search?q=%s IE: E&xport to Microsoft Excel - c:\progra~1\MI1933~1\OFFICE11\EXCEL.EXE/3000 IE: Google Sidewiki… - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html FF - ProfilePath - c:\documents and settings\Gary\Application Data\Mozilla\Firefox\Profiles\brlukivz.default\ FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ . ************************************************************************** scanning hidden processes … scanning hidden autostart entries … scanning hidden files … scan completed successfully hidden files: ************************************************************************** . ——————— LOCKED REGISTRY KEYS ——————— [HKEY_USERS\S-1-5-21-2536124621-2849470361-2339474247-1006\Software\Sony Creative Software\M*e*d*i*a* *M*a*n*a*g*e*r* *f*o*r* *P*S*P*"!\3.0] "FRT"="qkfuA8TrXpDPKROIplj53dBYl8WQPB91VYFoRA7yjoZBqfJhqBGoCQ==" "PLCK"="7QWorrAobiYoXA5jjRP20YBJU//SzjDh" "Percents"="0 0.0939 0.4781 0.6096 0.6284 0.8323 0.9123 0.9388 " "Increment"=".002740" "PHSH"="" . ——————— DLLs Loaded Under Running Processes ——————— - - - - - - - > 'winlogon.exe'(648) c:\windows\system32\LMIinit.dll c:\windows\system32\LMIRfsClientNP.dll c:\windows\system32\igfxdev.dll - - - - - - - > 'winlogon.exe'(2948) c:\windows\system32\LMIinit.dll c:\windows\system32\LMIRfsClientNP.dll c:\windows\system32\igfxdev.dll - - - - - - - > 'explorer.exe'(4004) c:\windows\system32\WININET.dll c:\windows\system32\ieframe.dll c:\windows\system32\WPDShServiceObj.dll c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll c:\windows\system32\LMIRfsClientNP.dll - - - - - - - > 'explorer.exe'(2764) c:\windows\system32\WININET.dll c:\progra~1\WINDOW~3\wmpband.dll c:\windows\system32\ieframe.dll c:\windows\system32\WPDShServiceObj.dll c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll c:\windows\system32\LMIRfsClientNP.dll . Completion time: 2010-03-04 19:56:53 ComboFix-quarantined-files.txt 2010-03-05 00:56 ComboFix2.txt 2010-03-03 21:50 ComboFix3.txt 2010-03-03 06:03 ComboFix4.txt 2007-08-19 20:58 Pre-Run: 17,460,719,616 bytes free Post-Run: 17,546,678,272 bytes free - - End Of File - - FD32A0CB33AE7E1115813BACA3041F40
Hi,

Go to the user profile that cannot connect and try the following:

if your network icon appears on the Windows taskbar, then you can repair it by right-clicking on the icon and selecting Repair.

[external image: Posted Image]

If you have no task bar icon do this:

  • Click on the Start button.
  • Click on the Settings menu option.
  • Click on the Control Panel option.
  • When the Control Panel opens, double-click on the Network Connections icon. If your Control Panel is set to Category View, then double-click on Network and Internet Connections and then click on Network Connections at the bottom.
  • You will now see a list of available network connections. Locate the connection for your Wireless or Lan adapter and right-click on it.
  • click on the Repair menu option.

[external image: Posted Image]

If that doesn't work, try the following:



NEXT

  • Go to Start > Control Panel, and choose Network Connections.
  • Right click on your default connection, usually Local Area Connection for cable and DSL or Dial-up Connection if you are using Dial-up, and choose Properties.
  • Click the Networking tab
  • Double-click on the Internet Protocol (TCP/IP) item.
  • Write down the settings in case you should need to change them back.
  • Select the radio button that says "Obtain DNS servers automatically".
  • Click OK twice to get out of the properties screen and restart your computer.
  • If not prompted to reboot go ahead and reboot manually.

In I.E.
  • Check internet options settings.
  • Tools > Internet Options > Connections
  • LAN settings
  • Choose "automatically detect settings"
  • uncheck both proxy settings boxes

In FireFox
  • Click on Advanced -> Network -> Setttings…
  • the No Proxy option should be selected


Please advise if there are any other outstanding issues.
Okay, that finally worked - by unchecking the proxy boxes. I was able to access the internet, but when I went to get to my Hotmail account to let you know, I got this Java error message: JavaScript Required to Sign In Windows Live ID requires Java Script to sign in. This web browser either does not support javascript or scripts are being blocked. When I clicked Help - I followed those directions to click "disable script bugging" under internet options but that didn't work… any ideas??
The Java Addon in IE may be disabled.

  • Go to Tools > Internet Options > Advanced tab.
  • Click Reset then OK and exit IE.
  • Re-open IE and ensure the Java add-ons are enabled.
[external image: Posted Image]



IN FireFox:

  • Open Firefox.
  • At the top of the Firefox window on the menu bar, click on the Tools menu, and select Options
  • Select the Content tab.
  • Make sure that Enable Java is selected.

[external image: Posted Image]
I reset the internet options and that seemed to work! I can get on the internet, access my e-mail etc. I can't thank you enough for your time and efforts! You guys are awesome! I truly appreciate your help! ~ Christine :-D
Good, glad it is working well,

Just some housekeeping to do now.

Please do the following:


Follow these steps to uninstall Combofix

  • Click START then RUN
  • Now copy/paste Combofix /uninstall into the runbox and click OK. Note the space between the ..X and the /U, it needs to be there.

[external image: Posted Image]




NEXT

Now to remove the rest of the tools that we have used in fixing your machine:
  • Make sure you have an Internet Connection.
  • Download OTC to your desktop and run it
  • A list of tool components used in the Cleanup of malware will be downloaded.
  • If your Firewall or Real Time protection attempts to block OTC to reach the Internet, please allow the application to do so.
  • Click Yes to begin the Cleanup process and remove these components, including this application.
  • You will be asked to reboot the machine to finish the Cleanup process. If you are asked to reboot the machine choose Yes.

If any logs/tools remain on your desktop > right click and delete them.


NEXT


Below I have included a number of recommendations for how to protect your computer against malware infections.

  • It is good security practice to change your passwords to all your online accounts on a fairly regular basis, this is especially true after an infection. Refer to this Microsoft article
    Strong passwords: How to create and use them

    Then consider a password keeper, to keep all your passwords safe.

  • Keep Windows updated by regularly checking their website at :
    http://windowsupdate.microsoft.com/
    This will ensure your computer has always the latest security updates available installed on your computer.

  • Make Internet Explorer more secure
    • Click Start > Run
    • Type Inetcpl.cpl & click OK
    • Click on the Security tab
    • Click Reset all zones to default level
    • Make sure the Internet Zone is selected & Click Custom level
    • In the ActiveX section, set the first two options ("Download signed and unsigned ActiveX controls) to "Prompt", and ("Initialize and Script ActiveX controls not marked as safe") to "Disable".
    • Next Click OK, then Apply button and then OK to exit the Internet Properties page.

  • ATF Cleaner - Cleans temporary files from IE and Windows, empties the recycle bin and more. Great tool to help speed up your computer and knock out those nasties that like to reside in the temp folders.


    WOT, Web of Trust, warns you about risky websites that try to scam visitors, deliver malware or send spam. Protect your computer against online threats by using WOT as your front-line layer of protection when browsing or searching in unfamiliar territory. WOT's color-coded icons show you ratings for 21 million websites, helping you avoid the dangerous sites:
    • Green to go
    • Yellow for caution
    • Red to stop
    WOT has an addon available for both Firefox, IE and chrome.


  • Keep a backup of your important files - Now, more than ever, it's especially important to protect your digital files and memories. This article is full of good information on alternatives for home backup solutions.

  • ERUNT (Emergency Recovery Utility NT) allows you to keep a complete backup of your registry and restore it when needed. The standard registry backup options that come with Windows back up most of the registry but not all of it. ERUNT however creates a complete backup set, including the Security hive and user related sections. ERUNT is easy to use and since it creates a full backup, there are no options or choices other than to select the location of the backup files. The backup set includes a small executable that will launch the registry restore if needed.

  • In light of your recent issue, I'm sure you'd like to avoid any future infections. Please take a look at these well written articles:
    Think Prevention.
    PC Safety and Security–What Do I Need?.


**Be very wary with any security software that is advertised in popups or in other ways. They are not only usually of no use, but often have malware in them.


Thank you for your patience, and performing all of the procedures requested.

Please respond one last time so we can consider the thread resolved and close it, thank-you.
Thank you. I will perform the housekeeping this evening when I get home. My husband was terrible at clicking all of those pop up anti virus warnings till I grilled him that our programs won't advertise! I will also look at those other sites mentioned (WOT…) Thank you again for all of your help and patience! You guys are a wonderful and invaluable resource out here!

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI