Jump to content

Need help with Zone Alarm


Bavaria

Recommended Posts

I have a problem since i installed Zone Alarm.Is working fine, but if i disconnect the internet, for a few minutes, it will not connect back.The connection to internet shows ok ,but no site is loaded.

 

When i restart the computer is ok ,so i asume is a problem with ZA.

 

Thank you!

Link to comment
Share on other sites

What version of zonealarm are you using?

Is it the latest one?

Are you using default settings or have you changed anything?

 

This was a common problem a few versions ago, i myself suffered it, and had to uninstall, then reinstall an older version until they fixed the problem.

 

When you say the site dont load, what happens? do you get a 404 error?

 

Repost with more info, and i'm sure we will get it sorted.

Link to comment
Share on other sites

What version of zonealarm are you using?

Is it the latest one?

Are you using default settings or have you changed anything?

 

This was a common problem a few versions ago, i myself suffered it, and had to uninstall, then reinstall an older version until they fixed the problem.

 

When you say the site dont load, what happens? do you get a 404 error?

 

Repost with more info, and i'm sure we will get it sorted.

 

 

 

 

 

I just downloaded yesterday,is the ZA Pro Version (free 15 days :) ) 5.5.094.000

I believe is the last one.Yes,default settings!

 

The internet connection is ok.I mean is making the connection but when i try to open a site i get that error 404,yes!

Link to comment
Share on other sites

Was your computer clean of malware when you installed zonealarm?

 

This is really important because, if not you could have a missing root certificate which is normally the handywork of malware. This would bring up the 404 error amongst other things. Root certificates are normally only checked during installation of a program whereas zonealarm checks them all the time during normal use.

 

What security programs do you have and use?

Link to comment
Share on other sites

Was your computer clean of malware when you installed zonealarm?

 

 

What security programs do you have and use?

 

 

 

 

 

I have Trend Micro Pcillin antivirus.I check my computer with BitDefender,PandaAntivirus.

 

AdAware,Microsoft Antispyware,CWShredder.I believe i have no virus or malware.

When i connect first time is ok.But if i disconnect the computer from internet that is!It will not connect again until i restart the computer.Maybe i should install only the free version not the pro?

Link to comment
Share on other sites

I use the free version myself, I dont pay for software if I dont have to.

 

Give that a try then, uninstall zonealarm pro, run CCleaner, install zonealarm free version.

 

We will start again from there.

 

If that is successful, please post so that I know.

Link to comment
Share on other sites

I use the free version myself, I dont pay for software if I dont have to.

 

Give that a try then, uninstall zonealarm pro, run CCleaner, install zonealarm free version.

 

We will start again from there.

 

If that is successful, please post so that I know.

 

 

 

 

 

Ok!Thank you for your help!

Link to comment
Share on other sites

  • Moderators

Disable zone alram and connect to the internet. Then disconnect and then reconnect. If it works than its zone alarms fault and we can go from their if not than somethings wrong with your pc. Also try to scan with spybot search and destroy and post a Hijack this log.

Link to comment
Share on other sites

Disable zone alram and connect to the internet. Then disconnect and then reconnect. If it works than its zone alarms fault and we can go from their if not than somethings wrong with your pc. Also try to scan with spybot search and destroy and post a Hijack this log.

 

 

 

 

I should have suggested that, rather than assuming it was zonealarms fault.

Link to comment
Share on other sites

Disable zone alram and connect to the internet. Then disconnect and then reconnect. If it works than its zone alarms fault and we can go from their if not than somethings wrong with your pc. Also try to scan with spybot search and destroy and post a Hijack this log.

 

 

 

 

If i disconnect the ZA still not work!But if i start again the computer is ok.This problem is happened only after i installed ZA!

Link to comment
Share on other sites

Just do what rridgely suggested first.

Right click the ZoneAlarm icon in the notification area (down by the clock).

Try the internet again. But not for too long.

 

 

 

 

 

I did this already!Still not work.I know is suposed to work(theoretically) but is not working.I disabled the ZA from start up.Still not working if i disconnect the internet connection.I am sure is a ZA problem because i have 0 problem until i installed this program.I am installing now, ZA free version :)

Link to comment
Share on other sites

  • Moderators

Download This program and update it then scan and remove whatever it finds.

http://www.download.com/Spybot-Search-Dest...tml?tag=lst-0-1

 

Then get this program and when you open it choose scan and save log file. then cut and paste the log here so we can look at it.

http://www.download.com/HijackThis/3000-80...tml?tag=lst-0-1

Link to comment
Share on other sites

Download This program and update it then scan and remove whatever it finds.

http://www.download.com/Spybot-Search-Dest...tml?tag=lst-0-1

 

Then get this program and when you open it choose scan and save log file. then cut and paste the log here so we can look at it.

http://www.download.com/HijackThis/3000-80...tml?tag=lst-0-1

 

 

 

 

 

Logfile of HijackThis v1.99.1

Scan saved at 9:22:13 PM, on 6/10/2005

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Softex\OmniPass\Omniserv.exe

C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe

C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe

C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe

C:\WINDOWS\system32\ZoneLabs\vsmon.exe

C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe

C:\Program Files\Softex\OmniPass\OPXPApp.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Softex\OmniPass\scureapp.exe

C:\Program Files\dvd43\dvd43_tray.exe

C:\Program Files\Trend Micro\Internet Security 2005\pccguide.exe

C:\Program Files\Softex\Weblink\WebLink.exe

C:\windows\system\hpsysdrv.exe

C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

C:\Program Files\Softex\OmniPass\Help.exe

C:\Program Files\Logitech\MouseWare\system\em_exec.exe

C:\Program Files\CCleaner\CCleaner.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\DOCUME~1\Owner\LOCALS~1\Temp\Temporary Directory 1 for hijackthis[1].zip\HijackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qca9.hpwis.com/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qca9.hpwis.com/

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.usconsulatetoronto.ca/content/c...ument=visa_wait

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qca9.hpwis.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qca9.hpwis.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-qca9.hpwis.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-qca9.hpwis.com/

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://qca9.hpwis.com/

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://qca9.hpwis.com/

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O4 - HKLM\..\Run: [OmniPass] C:\Program Files\Softex\OmniPass\scureapp.exe

O4 - HKLM\..\Run: [dvd43] C:\Program Files\dvd43\dvd43_tray.exe

O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE

O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 2005\pccguide.exe"

O4 - HKLM\..\Run: [WebLink] C:\Program Files\Softex\Weblink\WebLink.exe /boot

O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe

O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe

O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll

O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll

O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409

O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5co...b?1114270860733

O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab

O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061...all/xscan53.cab

O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.bitdefender.com/scan/Msie/bitdefender.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{3BA7C1D9-A368-457A-9184-89060940ECFB}: NameServer = 206.47.244.53 206.47.244.109

O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll

O20 - Winlogon Notify: OPXPGina - C:\Program Files\Softex\OmniPass\opxpgina.dll

O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

O23 - Service: Softex OmniPass Service (omniserv) - Unknown owner - C:\Program Files\Softex\OmniPass\Omniserv.exe

O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe

O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe

O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe

O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe

O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

Link to comment
Share on other sites

Generated by Tarun's HijackThis Converter.

 

Created registry value. Safe to remove:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qca9.hpwis.com/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qca9.hpwis.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qca9.hpwis.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qca9.hpwis.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-qca9.hpwis.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-qca9.hpwis.com/

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://qca9.hpwis.com/

 

Changed registry value. Safe to remove:

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.usconsulatetoronto.ca/content/c...ument=visa_wait

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://qca9.hpwis.com/

 

Enumeration of existing IE's BHO's. Safe to remove:

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

 

Extra "Tools" menu items and buttons. Safe to remove:

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll

 

IE plugins for file extensions or MIME types. Safe to remove:

O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll

 

Downloaded Program Files item. Safe to remove:

O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll

O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab

O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061...all/xscan53.cab

O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.bitdefender.com/scan/Msie/bitdefender.cab

Link to comment
Share on other sites

Generated by Tarun's HijackThis Converter.

 

Created registry value.  Safe to remove:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qca9.hpwis.com/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qca9.hpwis.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qca9.hpwis.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qca9.hpwis.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-qca9.hpwis.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-qca9.hpwis.com/

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://qca9.hpwis.com/

 

Changed registry value.  Safe to remove:

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.usconsulatetoronto.ca/content/c...ument=visa_wait

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://qca9.hpwis.com/

 

Enumeration of existing IE's BHO's.  Safe to remove:

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

 

Extra "Tools" menu items and buttons.  Safe to remove:

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll

 

IE plugins for file extensions or MIME types.  Safe to remove:

O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll

 

Downloaded Program Files item.  Safe to remove:

O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll

O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab

O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061...all/xscan53.cab

O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.bitdefender.com/scan/Msie/bitdefender.cab

 

 

 

 

 

Thank you!Can you give me a little help? :) I am going to regedit and?

Link to comment
Share on other sites

No, you dont use regedit you use hijack this. select what Tarun said in hijack this (check box beside it) then click fix checked. Boot to safe mode first though.

 

 

 

 

 

Ok! :) I cleared all the problems with hijack this!Spybot find a few problems! :angry:

I will see if is working now!

 

Thanks to all ,for the help!

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.