Bavaria Posted June 12, 2005 Share Posted June 12, 2005 I have a problem since i installed Zone Alarm.Is working fine, but if i disconnect the internet, for a few minutes, it will not connect back.The connection to internet shows ok ,but no site is loaded. When i restart the computer is ok ,so i asume is a problem with ZA. Thank you! Link to comment Share on other sites More sharing options...
Capman Posted June 12, 2005 Share Posted June 12, 2005 What version of zonealarm are you using? Is it the latest one? Are you using default settings or have you changed anything? This was a common problem a few versions ago, i myself suffered it, and had to uninstall, then reinstall an older version until they fixed the problem. When you say the site dont load, what happens? do you get a 404 error? Repost with more info, and i'm sure we will get it sorted. Link to comment Share on other sites More sharing options...
Bavaria Posted June 12, 2005 Author Share Posted June 12, 2005 What version of zonealarm are you using?Is it the latest one? Are you using default settings or have you changed anything? This was a common problem a few versions ago, i myself suffered it, and had to uninstall, then reinstall an older version until they fixed the problem. When you say the site dont load, what happens? do you get a 404 error? Repost with more info, and i'm sure we will get it sorted. <{POST_SNAPBACK}> I just downloaded yesterday,is the ZA Pro Version (free 15 days ) 5.5.094.000 I believe is the last one.Yes,default settings! The internet connection is ok.I mean is making the connection but when i try to open a site i get that error 404,yes! Link to comment Share on other sites More sharing options...
Capman Posted June 12, 2005 Share Posted June 12, 2005 Was your computer clean of malware when you installed zonealarm? This is really important because, if not you could have a missing root certificate which is normally the handywork of malware. This would bring up the 404 error amongst other things. Root certificates are normally only checked during installation of a program whereas zonealarm checks them all the time during normal use. What security programs do you have and use? Link to comment Share on other sites More sharing options...
Bavaria Posted June 12, 2005 Author Share Posted June 12, 2005 Was your computer clean of malware when you installed zonealarm? What security programs do you have and use? <{POST_SNAPBACK}> I have Trend Micro Pcillin antivirus.I check my computer with BitDefender,PandaAntivirus. AdAware,Microsoft Antispyware,CWShredder.I believe i have no virus or malware. When i connect first time is ok.But if i disconnect the computer from internet that is!It will not connect again until i restart the computer.Maybe i should install only the free version not the pro? Link to comment Share on other sites More sharing options...
Capman Posted June 12, 2005 Share Posted June 12, 2005 I use the free version myself, I dont pay for software if I dont have to. Give that a try then, uninstall zonealarm pro, run CCleaner, install zonealarm free version. We will start again from there. If that is successful, please post so that I know. Link to comment Share on other sites More sharing options...
Bavaria Posted June 12, 2005 Author Share Posted June 12, 2005 I use the free version myself, I dont pay for software if I dont have to. Give that a try then, uninstall zonealarm pro, run CCleaner, install zonealarm free version. We will start again from there. If that is successful, please post so that I know. <{POST_SNAPBACK}> Ok!Thank you for your help! Link to comment Share on other sites More sharing options...
Moderators rridgely Posted June 12, 2005 Moderators Share Posted June 12, 2005 Disable zone alram and connect to the internet. Then disconnect and then reconnect. If it works than its zone alarms fault and we can go from their if not than somethings wrong with your pc. Also try to scan with spybot search and destroy and post a Hijack this log. Link to comment Share on other sites More sharing options...
Capman Posted June 12, 2005 Share Posted June 12, 2005 Disable zone alram and connect to the internet. Then disconnect and then reconnect. If it works than its zone alarms fault and we can go from their if not than somethings wrong with your pc. Also try to scan with spybot search and destroy and post a Hijack this log. <{POST_SNAPBACK}> I should have suggested that, rather than assuming it was zonealarms fault. Link to comment Share on other sites More sharing options...
Bavaria Posted June 12, 2005 Author Share Posted June 12, 2005 Disable zone alram and connect to the internet. Then disconnect and then reconnect. If it works than its zone alarms fault and we can go from their if not than somethings wrong with your pc. Also try to scan with spybot search and destroy and post a Hijack this log. <{POST_SNAPBACK}> If i disconnect the ZA still not work!But if i start again the computer is ok.This problem is happened only after i installed ZA! Link to comment Share on other sites More sharing options...
Capman Posted June 12, 2005 Share Posted June 12, 2005 Just do what rridgely suggested first. Right click the ZoneAlarm icon in the notification area (down by the clock). Try the internet again. But not for too long. Link to comment Share on other sites More sharing options...
Bavaria Posted June 12, 2005 Author Share Posted June 12, 2005 Just do what rridgely suggested first.Right click the ZoneAlarm icon in the notification area (down by the clock). Try the internet again. But not for too long. <{POST_SNAPBACK}> I did this already!Still not work.I know is suposed to work(theoretically) but is not working.I disabled the ZA from start up.Still not working if i disconnect the internet connection.I am sure is a ZA problem because i have 0 problem until i installed this program.I am installing now, ZA free version Link to comment Share on other sites More sharing options...
Capman Posted June 12, 2005 Share Posted June 12, 2005 I will leave you to it for now, it is 2am and I need sleep, if it is not sorted next time I check I will try to help you more. Good Luck. Link to comment Share on other sites More sharing options...
Bavaria Posted June 12, 2005 Author Share Posted June 12, 2005 I will leave you to it for now, it is 2am and I need sleep, if it is not sorted next time I check I will try to help you more. Good Luck. <{POST_SNAPBACK}> Thx! Link to comment Share on other sites More sharing options...
Moderators rridgely Posted June 12, 2005 Moderators Share Posted June 12, 2005 Download This program and update it then scan and remove whatever it finds. http://www.download.com/Spybot-Search-Dest...tml?tag=lst-0-1 Then get this program and when you open it choose scan and save log file. then cut and paste the log here so we can look at it. http://www.download.com/HijackThis/3000-80...tml?tag=lst-0-1 Link to comment Share on other sites More sharing options...
Bavaria Posted June 12, 2005 Author Share Posted June 12, 2005 Download This program and update it then scan and remove whatever it finds.http://www.download.com/Spybot-Search-Dest...tml?tag=lst-0-1 Then get this program and when you open it choose scan and save log file. then cut and paste the log here so we can look at it. http://www.download.com/HijackThis/3000-80...tml?tag=lst-0-1 <{POST_SNAPBACK}> Logfile of HijackThis v1.99.1 Scan saved at 9:22:13 PM, on 6/10/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Softex\OmniPass\Omniserv.exe C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe C:\Program Files\Softex\OmniPass\OPXPApp.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Softex\OmniPass\scureapp.exe C:\Program Files\dvd43\dvd43_tray.exe C:\Program Files\Trend Micro\Internet Security 2005\pccguide.exe C:\Program Files\Softex\Weblink\WebLink.exe C:\windows\system\hpsysdrv.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\Softex\OmniPass\Help.exe C:\Program Files\Logitech\MouseWare\system\em_exec.exe C:\Program Files\CCleaner\CCleaner.exe C:\Program Files\Internet Explorer\iexplore.exe C:\DOCUME~1\Owner\LOCALS~1\Temp\Temporary Directory 1 for hijackthis[1].zip\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qca9.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qca9.hpwis.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.usconsulatetoronto.ca/content/c...ument=visa_wait R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qca9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qca9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-qca9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-qca9.hpwis.com/ R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://qca9.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://qca9.hpwis.com/ O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O4 - HKLM\..\Run: [OmniPass] C:\Program Files\Softex\OmniPass\scureapp.exe O4 - HKLM\..\Run: [dvd43] C:\Program Files\dvd43\dvd43_tray.exe O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 2005\pccguide.exe" O4 - HKLM\..\Run: [WebLink] C:\Program Files\Softex\Weblink\WebLink.exe /boot O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409 O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5co...b?1114270860733 O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061...all/xscan53.cab O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.bitdefender.com/scan/Msie/bitdefender.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{3BA7C1D9-A368-457A-9184-89060940ECFB}: NameServer = 206.47.244.53 206.47.244.109 O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll O20 - Winlogon Notify: OPXPGina - C:\Program Files\Softex\OmniPass\opxpgina.dll O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Softex OmniPass Service (omniserv) - Unknown owner - C:\Program Files\Softex\OmniPass\Omniserv.exe O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe Link to comment Share on other sites More sharing options...
Tarun Posted June 12, 2005 Share Posted June 12, 2005 Generated by Tarun's HijackThis Converter. Created registry value. Safe to remove: R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qca9.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qca9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qca9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qca9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-qca9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-qca9.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://qca9.hpwis.com/ Changed registry value. Safe to remove: R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.usconsulatetoronto.ca/content/c...ument=visa_wait R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://qca9.hpwis.com/ Enumeration of existing IE's BHO's. Safe to remove: O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll Extra "Tools" menu items and buttons. Safe to remove: O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll IE plugins for file extensions or MIME types. Safe to remove: O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll Downloaded Program Files item. Safe to remove: O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061...all/xscan53.cab O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.bitdefender.com/scan/Msie/bitdefender.cab Link to comment Share on other sites More sharing options...
Bavaria Posted June 12, 2005 Author Share Posted June 12, 2005 Generated by Tarun's HijackThis Converter. Created registry value. Safe to remove: R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qca9.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qca9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qca9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qca9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-qca9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-qca9.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://qca9.hpwis.com/ Changed registry value. Safe to remove: R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.usconsulatetoronto.ca/content/c...ument=visa_wait R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://qca9.hpwis.com/ Enumeration of existing IE's BHO's. Safe to remove: O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll Extra "Tools" menu items and buttons. Safe to remove: O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll IE plugins for file extensions or MIME types. Safe to remove: O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll Downloaded Program Files item. Safe to remove: O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061...all/xscan53.cab O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.bitdefender.com/scan/Msie/bitdefender.cab <{POST_SNAPBACK}> Thank you!Can you give me a little help? I am going to regedit and? Link to comment Share on other sites More sharing options...
Moderators rridgely Posted June 12, 2005 Moderators Share Posted June 12, 2005 Tarun what do you think the problem could be then? He dosent have malware and his pc is up to date? Link to comment Share on other sites More sharing options...
Moderators rridgely Posted June 12, 2005 Moderators Share Posted June 12, 2005 No, you dont use regedit you use hijack this. select what Tarun said in hijack this (check box beside it) then click fix checked. Boot to safe mode first though. Link to comment Share on other sites More sharing options...
Bavaria Posted June 12, 2005 Author Share Posted June 12, 2005 No, you dont use regedit you use hijack this. select what Tarun said in hijack this (check box beside it) then click fix checked. Boot to safe mode first though. <{POST_SNAPBACK}> Ok! I cleared all the problems with hijack this!Spybot find a few problems! I will see if is working now! Thanks to all ,for the help! Link to comment Share on other sites More sharing options...
Moderators rridgely Posted June 12, 2005 Moderators Share Posted June 12, 2005 Tell us if it works. If not we will see what else we can do. Link to comment Share on other sites More sharing options...
Tarun Posted June 12, 2005 Share Posted June 12, 2005 Make sure you allow the services to access the net. Link to comment Share on other sites More sharing options...
Bavaria Posted June 12, 2005 Author Share Posted June 12, 2005 Make sure you allow the services to access the net. <{POST_SNAPBACK}> Tarun,there is a program that is telling you what is wrong with registry? I am just curious how it works! Thx! Link to comment Share on other sites More sharing options...
Moderators rridgely Posted June 12, 2005 Moderators Share Posted June 12, 2005 He wrote that program himself. It still impresses the hell out of me too. Look here for more info: http://forum.CCleaner.com/index.php?showtopic=1087&hl= Did we fix your problem? Link to comment Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now