Hello all,
Please help, I am able to connect to net OK, but after a few minutes
and connecting to 1or2 pages, all I can get is 'page cannot be displayed',

The sites I am trying are those I have used for very long time!!
The only way out of this is to Re-boot my computer. we then start the same cycle again.
Logfile of HijackThis v1.99.1
Scan saved at 18:22:27, on 24/05/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\Program Files\Sygate\SPF\smc.exe
C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\derek.THEWEAKESTLINK.000\Desktop\Webshots Screensaver\webshots.scr
C:\Documents and Settings\derek.THEWEAKESTLINK.000\Desktop\Hijack\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.co.uk/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.co.uk/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = c:\WINDOWS\PCHEALTH\HELPCTR\System\panels\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = c:\WINDOWS\PCHEALTH\HELPCTR\System\panels\blank.htm
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: IEWatchObj Class - {9527D42F-D666-11D3-B8DD-00600838CD5F} - C:\WINDOWS\system32\IETie.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Startup: Webshots.lnk = E:\Program Files\Webshots\Launcher.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Download with GetRight - C:\Program Files\GetRight\GRdownload.htm
O8 - Extra context menu item: Open with GetRight Browser - C:\Program Files\GetRight\GRbrowse.htm
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: (no name) - {578FC4E3-151E-456c-AF8E-B63061EFE228}} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .mpg: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin3.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
O16 - DPF: {27527D31-447B-11D5-A46E-0001023B4289} (CoGSManager Class) - http://gamingzone.ubisoft.com/dev/packages/GSManager.cab
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_1_0_0_44.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1097662357772
O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/software/launch/alaunch.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab34246.cab
O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} (Measurement Service Client v.3.4) - http://ccon.futuremark.com/global/msc34.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AutoComplete Service (Autocomplete) - Acesoft - C:\Program Files\Acesoft\Tracks Eraser Pro\autocomp.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe

help would be much appreciated


Hi Derek,

I see nothing in your log which would account for the browser troubles; have you done any general network troubleshooting to rule out a possible non-malicious cause? If so, please tell us what you've tried so far.

hello DMR,
Thanks for reply.I not sure I know what you mean. Here is what i can remember.
full AVG scan...spybot S/D..microsft antivirus...Registry First Aid...cwshredder.
conntacted ISP (NDO) went through set up with me , but did not seem very clued, just a script i think (I connect with no problems and perfect use for approx 1 or 2 minutes)
Did a system restore back 2 weeks ..no result ( thinking of going further back, can go FEB) I realise that this problem has been building for a while but only in last few days has been accute, before i just viewed it as the odd blip.
I tried deleting Hosts file...I put in SP2 disc and ran a partial reinstall (I think !!).
I have found on your forums ref to DNS not setup correctly, but can only find what to do in 95/98 (computerhope.com). I got results back from ping.

So should i reinstall browser IE6. ??.
if so how do I do this, I dont want more mess

your help appreciated Derek

conntacted ISP (NDO) went through set up with me , but did not seem very clued, just a script i think...

Probably. Unless you get a tech who isn't a total droid, all they'll do with you is go through their set of standard canned answers and procedures; you'll rarely get any "individualized" help.

!! Before doing any troubleshooting, disable your firewall software! To make sure that you've entirely disabled it, go into the program's options/preferences, turn off the option to automatically start the program when Windows starts, and reboot. Simply choosing to disable the firewall once it has started often does not shut it down completely.

If the firewall isn't the source of the problem, we'll need to try to determine at what level the problem is occuring:

1. Open the Event Viewer utility in your Administrative Tools control panel and have a look through your System and Application logs for any network-related error or warning messages in those log files. If errors related to the problem are being logged, you should see them recurring/repeating at about the same time as each of connection losses occurs.

If you find such messages, double-clicking on them will bring up a window with details of the errors; post the full and exact contents of those detail windows.

2. Does the problem occur only with certain sites/pages, or does the connection drop afer a few minutes regardless of what/where you're surfing?

3. Do you get your computer IP address, DNS server IPs, etc. automatically, or did they give you IP info that you had to manually enter into your network card's connection properties?

Please do the following, both when the computer is online, and once again after it has dropped off; post the results returned by the command in each case:

- Open an MS-DOS box, type the following command, and hit Enter:

ipconfig /all

4. Once the conneciton has "broken", see if you can reach a site by its IP address as opposed to its URL. Using Google as an example, enter the following into IE's address bar, and let us know the result:

5. There are a couple of software fixes you can try:


6. Cruft built up in your Temporary Internet Files folder and other locations can cause browsing problems. Do the following "housecleaning":

- Reboot into safe mode (you get to the safe mode boot option by hitting the F8 key as your computer is starting up)

- Open Windows Explorer, and in the Folder Options->View settings under the Tools menu, select "show hidden files and folders", and uncheck "Hide protected operating system files" and "Hide extentions for known file types".

- For every user account listed under C:\Documents and Settings, delete the entire contents of these folders (but not the folders themselves):

Important: The following will delete the contents of all Temp folders. Given that, if any data that you care about is living in those Temp folders, you need to move it to a safe location now, or it will be erased along with everything else!

1. Cookies
2. Local Settings\Temp
3. Local Settings\History
4. Local Settings\Temporary Internet Files

- Delete the entire content of your C:\Windows\Temp folder.

- Delete the entire content of your C:\Windows\Prefetch folder.

Note- If you get any messages concerning the deletion of system files such as desktop.ini or index.dat, just choose to delete those files; they'll be automatically regenerated by Windows if needed. Windows will allow you to delete the versions of those files which exist in sub-folders within the main Temp/Temorary folders, but might not let you delete the versions of those files that exist in the main Temp folders themselves; this is normal and OK.

- Empty your Recycle Bin.

- Reboot normally.

Go through the above steps/suggestions and let us know the results.

Hi again,
thanks for your time.

I will do my best to answer queries,but am unable to find a way of posting or saving from dos cmd.
the firewall does not seem to be prob'

B4 I answer I think you will get usefull info from this site although it does not seem to have helped me (had high hopes ) I have deleted prog' and done winsock reset.
is 3rd party prog' the browser??? if so I think I have reinstalled from SP2 Disc , but no joy. http://support.microsoft.com/?scid=892350

1.system log shows
yellow several times
your comp' auto config the ip address for network card with add' 00115b1bd9c3 the ip add' used is 169.254. 21.166
red error many
the dhcp allocator disabled itself on ip 169 etc(above) since ip is outside the xxxxxscope from which adds' are beingallocated to dhcp clients.

red many
application management service terminated system cannot find file specified.

2.occurs on all and any sites sometimes after secs

3. comes auto maybe diff' as address is (@dynamic.ndodsl.com )

4.no does not connect

5 tried still have prob'

6 did cleaning but run Tracks eraser pro regular, so fairly bare

after deleting micr' antispy i tried to restore before that but would not do.
so went as far as i could 16th april ( installed 13th)

I read here somewhere that after format drive fault still there Worrying!!!

DNS seems to be bandied about but I know nothing about it ???

Thanks again Derek

quick question for the person with the problem...how did u get someone to help you?

Sometimes help does not happen immediately :). Due to the different timezones that we live in, we are not always here when you are :D. I have responded to your thread and your PM.

Hello Soul S,
I just posted and waited, but DMR came back to me after 0nly 1 day.
Have you same problem??

On top of the timezone issue, "real life" also takes precedence over the time we spend here. We offer our help here on a purely volunteer basis, and on our own free time, so responsibilities such as jobs, family, etc. do limit our availability sometimes.

Also, we have many more members on this site who need help than we have members who can offer help. We're trying to get more people on board to balance that out a bit more, but for now...

I apologize. I'm just trying to figure out how these things work...being a newbie and all :o Thanks for all of your hard work!vv :cheesy: ...at least I've got the smileys down lol

I apologize. I'm just trying to figure out how these things work...being a newbie and all :o Thanks for all of your hard work!vv :cheesy: ...at least I've got the smileys down lol

As my post above states, I have replied to your post (quite some time ago now :)). You will find it here; http://www.daniweb.com/techtalkforums/thread24461.html

In case anyone is interested in the final outcome here it is.

I tried everything that has been suggested in this and other forums, run numerous little programs to rectify, changed Browser to Firefox (no different) and did not like.

then Repair installed WinXP twice. (no dice)

Finally bit the bullet and Did a complete new installation of Win XP

So now up and running again.

Derek :rolleyes:


Oh well- sometimes a reinstall is necessary... we're taking about Windows, after all. :(