Click to See Complete Forum and Search --> : Web page buttons done work/no ms update


peent
10-28-2005, 02:20 PM
Greetings everyone. I am currently haveing a problem where when i go to a website like say yahoo mail for instance i can click the reply or delete button but nothing happens. It is the same with any other webpages. As long as it is a hyperlink i can click it but if its a button then nope. Also for some reason i am unable to access windows update. I have even turned on WU set to automatic and it will not download the updates. Any help would be VERY appreciated. I am including system info and a current Hijackthis log. Thanks again.

Version EVEREST v2.20.405
Homepage http://www.lavalys.com/
Report Type Report Wizard
Operating System Microsoft Windows XP Home Edition 5.1.2600 (WinXP Retail)
Date 2005-10-28
Time 17:29
Summary
Motherboard:
CPU Type AMD Athlon XP, 2200 MHz (11 x 200) 3200+
Motherboard Name Asus A7N8X v2.0 Deluxe (5 PCI, 1 AGP Pro, 3 DDR DIMM, Dual LAN, IEEE-1394)
Motherboard Chipset nVIDIA nForce2 Ultra 400
System Memory 1024 MB (PC3200 DDR SDRAM)
BIOS Type Award (08/19/03)
Communication Port Communications Port (COM1)
Communication Port Communications Port (COM2)
Communication Port ECP Printer Port (LPT1)

Display:
Video Adapter RADEON X700 Series Secondary (256 MB)
Video Adapter RADEON X700 Series (256 MB)
3D Accelerator ATI Radeon X700 Pro (RV410)
Monitor ImageQuest L70S [17" LCD] (151620050418)

Multimedia:
Audio Adapter Creative SB0090 Audigy Platinum Sound Card

Storage:
IDE Controller Standard Dual Channel PCI IDE Controller
Floppy Drive Floppy disk drive
Disk Drive MAXTOR 4K040H2 (40 GB, 5400 RPM, Ultra-ATA/100)
Disk Drive MAXTOR 6L080J4 (80 GB, 7200 RPM, Ultra-ATA/133)
Optical Drive HL-DT-ST CD-RW GCE-8400B (40x/12x/40x CD-RW)
SMART Hard Disks Status OK

Partitions:
C: (NTFS) 38170 MB (24880 MB free)
D: (FAT32) 39995 MB (16066 MB free)
E: (FAT32) 36317 MB (22403 MB free)
Total Size 111.8 GB (61.9 GB free)

Input:
Keyboard HID Keyboard Device
Keyboard Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
Mouse HID-compliant mouse
Mouse PS/2 Compatible Mouse

Network:
Network Adapter Realtek RTL8139 Family PCI Fast Ethernet NIC (192.168.1.100)

Peripherals:
USB1 Controller nVIDIA MCP2 - OHCI USB Controller
USB1 Controller nVIDIA MCP2 - OHCI USB Controller
USB2 Controller nVIDIA MCP2 - EHCI USB 2.0 Controller


Logfile of HijackThis v1.99.1
Scan saved at 12:22:30 PM, on 10/28/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Saitek\Software\Profiler.exe
C:\Program Files\Saitek\Software\SaiSmart.exe
C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\CTsvcCDA.EXE
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.dogpile.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dogpile.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.dogpile.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.dogpile.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll (file missing)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll (file missing)
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\Updreg.exe
O4 - HKLM\..\Run: [Jet Detection] C:\Program Files\Creative\SBAudigy\PROGRAM\ADGJDet.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [Profiler] C:\Program Files\Saitek\Software\Profiler.exe
O4 - HKLM\..\Run: [SaiSmart] C:\Program Files\Saitek\Software\SaiSmart.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKCU\..\Run: [ATI DeviceDetect] C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.1.0.69.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{10B85898-686B-4A16-9553-AF69E34FA91C}: NameServer = 85.255.115.82,85.255.112.121
O17 - HKLM\System\CCS\Services\Tcpip\..\{B8B70A10-1EC5-434B-9616-79A54B581215}: NameServer = 85.255.115.82,85.255.112.121
O17 - HKLM\System\CS1\Services\Tcpip\..\{10B85898-686B-4A16-9553-AF69E34FA91C}: NameServer = 85.255.115.82,85.255.112.121
O17 - HKLM\System\CS2\Services\Tcpip\..\{10B85898-686B-4A16-9553-AF69E34FA91C}: NameServer = 85.255.115.82,85.255.112.121
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe (file missing)
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
O23 - Service: IMAPI CD-Burning COM Service (ImapiService) - Roxio Inc. - C:\WINDOWS\System32\ImapiRox.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
O23 - Service: SAVScan - Unknown owner - C:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe (file missing)
O23 - Service: ScriptBlocking Service (SBService) - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe (file missing)
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe (file missing)
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

peent
10-28-2005, 07:17 PM
ok so here is what i have tried so yall know.
1-Used Microsofts beta anti spyware to restore IE to defaults. No go.
2-Browsed the web for fixes. No go.
3-Found a post in this forum with same problem but the fix under hijackthis was a file that is not in my hijackthis report so consiquently. No go.
4-Tried a system restore back to before i was having these problems just as a possible fix. No go.
5-Ran CWS Shredder,MS beta anti spyware,No adware,pc doctor anti spyware. No go.
6-Attempted doing a start>Run>sfc /scannow to attempt to fix any corrupt .DLL's that might be causing this problem. No go.
7-Ran msconfig to attempt to edit startup processes. No go.
8-CNTR-ALT-DEL to see if i had any processes running that seemed odd. Checked online and all i saw were valid. No go.
9-Dumped cookies-Temp files (on and offline)ran defrag. No go.
10-Attempted running WinXP Manager to try to clear any stuck .dll's from ram and to hopefully further clean out the system. No go.

At this point i am at my wits end. I leave my problem in your capable hands in hopes that your ability to scan the hijackthis log will find a proccess that is not supposed to be there. I have seen you guys and gals work magic in the past and i only hope you can work magic here too. Thanks in advance for your help and i will continue checking this site every few hours to see if you have posted.

rumake
10-29-2005, 03:20 AM
Did u try to use other browsers?

Try to close all firewall-programs

Try to close all programs, except for a browser.

peent
10-29-2005, 12:50 PM
havnt tried useing other browsers...didnt think i should have to..figured this should be fixable.

Already tried closeing all Antivirus programs and IE windows.
Also tried shutting down as many processors as possible that i knew were non critical. Still no go.

Fang
10-29-2005, 02:45 PM
The log file has a few problems. Run your log file through analysis (http://www.hijackthis.de/)
Backup and then remove any entry you know that should not be there.

Test your system for viruses at Symantec (http://security.symantec.com/sscv6/default.asp?productid=symhome&langid=ie&venid=sym)

peent
10-29-2005, 04:51 PM
virus check = clean
Cleaned up HijackThis logfile.
Still no go on any fix.
Updated log is posted here.

Logfile of HijackThis v1.99.1
Scan saved at 2:52:00 PM, on 10/29/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Saitek\Software\Profiler.exe
C:\Program Files\Saitek\Software\SaiSmart.exe
C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\CTsvcCDA.EXE
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.dogpile.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dogpile.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.dogpile.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.dogpile.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\Updreg.exe
O4 - HKLM\..\Run: [Jet Detection] C:\Program Files\Creative\SBAudigy\PROGRAM\ADGJDet.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [Profiler] C:\Program Files\Saitek\Software\Profiler.exe
O4 - HKLM\..\Run: [SaiSmart] C:\Program Files\Saitek\Software\SaiSmart.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [ATI DeviceDetect] C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.1.0.69.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{10B85898-686B-4A16-9553-AF69E34FA91C}: NameServer = 85.255.115.82,85.255.112.121
O17 - HKLM\System\CCS\Services\Tcpip\..\{B8B70A10-1EC5-434B-9616-79A54B581215}: NameServer = 85.255.115.82,85.255.112.121
O17 - HKLM\System\CS1\Services\Tcpip\..\{10B85898-686B-4A16-9553-AF69E34FA91C}: NameServer = 85.255.115.82,85.255.112.121
O17 - HKLM\System\CS2\Services\Tcpip\..\{10B85898-686B-4A16-9553-AF69E34FA91C}: NameServer = 85.255.115.82,85.255.112.121
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe (file missing)
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.EXE
O23 - Service: IMAPI CD-Burning COM Service (ImapiService) - Roxio Inc. - C:\WINDOWS\System32\ImapiRox.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
O23 - Service: ScriptBlocking Service (SBService) - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe (file missing)
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe (file missing)
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

Fang
10-30-2005, 01:42 AM
Try the second method here: http://www.theeldergeek.com/repair_ie6.htm

peent
10-30-2005, 11:04 AM
First i want to say thanks for allowing me to pick everyone's brain here and I really do appreciate all the help Fang.
Unfortunatly i have bad news. I wasnt able to save a ton of money on my car insurance by switching to geico....LOL
I tried the fix. It copy'd the files etc etc..
No go. Still unable to access windows update and still not able to click buttons =(

peent
10-30-2005, 12:19 PM
ok for those of you having this problem i found a fix that worked for me. Based on fangs idea i decided to simply reinstall IE6. I did this by doing a search thru www.dogpile.com for IE6 download. Find the microsoft link and download NOT FROM windows update (because that was broke as well) but from their download site. it installed IE6 again and wahhlaa (actually just repaired it) I can now click buttons and go to the windows update server. I went ahead and updated to Service Pack 2 while i was at it. This site is wonderfull for makeing you think about the processes that people are going thru to help fix your problem. As fang made me do when he started talking about basically reinstalling/fixing IE. If nothing else they will help you find the answer yourself! Thanks fang and the WebDeveloper crew for all the support!
A very happy subscriber
Peent.