When my mom tries to open IE it says an unexpected error has occurred. The system info error log says "faulting application iexplore.exe, version 6.0.2900.2180, faulting module webband.dll, version 0.0.0, faul address 0x0000b70d.
She has a dell computer with windows xp. She wasn't up to date when problem started, but she is now has service pack 2 installed. Also, she had McAfee for her virus protection, but it expired. She had no antivirus for a few days. She now has Avast. Avast picked up a virus called win32:apropo (trj), which was delted.
I tried the winsockfix utility, but she still cannot access the internet (she has verizon DSL). Below is the hijackthis log.
Any help would be appreciated. Thank you.
Logfile of HijackThis v1.99.0
Scan saved at 7:03:26 PM, on 2/8/2005
Platform: windows XP sp2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 sp2 (6.00.2900.2180)
Running processes:
C:\WINDOWs\system32\smss.exe C:\WINDOWs\system32\winlogon.exe C:\WINDOWs\system32\services.exe C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe C:\WINDOWs\system32\svchost.exe C:\WINDOWs\system32\spoolsv.exe C:\WINDOWS\Explorer.ExE
c:\Program Files\Alwil software\Avast4\aswupdsv.exe c:\Program Files\Alwil software\Avast4\ashServ.exe
c:\Program Files\Microsoft Hardware\Mouse\point32.exe c:\Program Files\QuickTime\qttask.exe C:\PROGRA~l\VERIZO~l\SUPPOR~l\SMARTB~l\MotiveSB.exe C:\PROGRA~1\ALWILs~1\Avast4\ashDisp.exe
c:\program Files\verizon online\supportcenter\bin\mpbtn.exe c:\Program Files\Alwil software\Avast4\ashMaisv.exe C:\WINDOWs\system32\wuauclt.exe
c:\Program Files\HijackThis.exe
hijackthis
R1 - HKCU\software\Microsoft\Internet Explorer\Main,Default_page_uRL = http://smbusiness.dellnet.com/
R1 - HKCU\software\Microsoft\Internet Explorer\Main,search Bar = http://cgi.verizon.n....5&bm=ho_search RO - HKCU\software\Microsoft\Internet Explorer\Main,start page = http://dslstart.verizon.net/
R1 - HKLM\software\Microsoft\Internet Explorer\Main,Default_page_uRL = http://smbusiness.dellnet.com/
RO - HKLM\Software\Microsoft\Internet Explorer\Main,start page = http://smbusiness.dellnet.com/
R1 - HKCU\software\Microsoft\Internet Explorer\Main,start page_bak = http://www.robofind.... ... To Proceed
R1 - HKCU\software\Microsoft\Internet Explorer\Main,window Title = Microsoft Internet Explorer provided by verizon online
R1 - HKCU\software\Microsoft\windows\currentversion\Internet settings,proxyoverride = 127.0.0.1
01 - Hosts: 64.91.255.87 www.dcsresearch.com
02 - BHO: AcroIEHlprobj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BEOB3} - c:\program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
02 - BHO: whistleHlprobj class - {27557cf1-a237-496d-8c8f-08f3844c6a8b} - c:\program files\whistlesoftware\wselservices\whistlehelper.dll
02 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - c:\Program Files\spybot - Search & Destroy\sDHelper.dll
03 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
03 - Toolbar: Try2Find Toolbar - {90BAEB8B-47C2-44B4-A5A6-B99D34F1D4C5} - c:\program Files\Try2Find\Try2Find.dll
04 - HKLM\..\Run: [POINTER] point32.exe
04 - HKLM\..\Run: [QuickTime Task] "c:\Program Files\QuickTime\qttask.exe" -atboottime
04 - HKLM\..\Run: [Motive smartBridge] C:\PROGRA~l\VERIZO~l\SUPPOR~l\SMARTB~l\MotivesB.exe
04 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
04 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
04 - Global startup: verizon online support Center.lnk = c:\program Files\verizon online\supportcenter\bin\matcli.exe
08 - Extra context menu item: &Define - c:\program Files\common Files\Microsoft shared\Reference 2001\A\ERS-DEF.HTM
08 - Extra context menu item: Look up in &Encyclopedia - c:\Program Files\common
~
hijackthis
Files\Microsoft shared\Reference 2001\A\ERS_ENC.HTM
09 - Extra button: whistle - {220E39C3-B081-4719-ABLA-9A884DCBDOSC} - c:\Program
Files\whistlesoftware\wselservices\webband.dll
09 - Extra button: Control Pad - {28D44DAD-D1FC-4d4f-BB1B-ADF037C8DDBC} - c:\Program
Files\verizon online\verizon online Control Pad\verizoncontrolpad.Exe
09 - Extra 'Tools' menuitem: control Pad - {28D44DAD-D1FC-4d4f-BB1B-ADF037C8DDBC}
C:\Program Files\verizon online\verizon online Control pad\verizoncontrolpad.Exe
09 - Extra button: Encarta Encyclopedia - {2FDEF8S3-07S9-11D4-A92E-006097DBED37} c:\Program Files\common Files\Microsoft shared\Reference 2001\A\ERS_ENC.HTM
09 - Extra 'Tools' menuitem: Encarta Encyclopedia {2FDEF8S3-07S9-11D4-A92E-006097DBED37} - c:\Program Files\common Files\Microsoft Shared\Reference 2001\A\ERS_ENC.HTM
09 - Extra button: Define - {SDA9DE80-097A-11D4-A92E-006097DBED37} - c:\Program
Files\common Files\Microsoft Shared\Reference 2001\A\ERS_DEF.HTM
09 - Extra 'Tools' menuitem: Define - {SDA9DE80-097A-11D4-A92E-006097DBED37} c:\Program Files\Common Files\Microsoft shared\Reference 2001\A\ERS_DEF.HTM
09 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-OOCOF0318AFE} C:\WINDOWs\system32\shdocvw.dll
09 - Extra button: Messenger - {FBSF1910-F110-11d2-BB9E-OOC04F79S683} - c:\Program
Files\Messenger\msmsgs.exe
09 - Extra 'Tools' menuitem: windows Messenger
{FBSF1910-F110-11d2-BB9E-OOC04F79S683} - c:\Program Files\Messenger\msmsgs.exe
016 - DPF: {OE8D0700-7SDF-11D3-8B4A-0008C74S0C4A} (Djvuctl class)
http://www.lizardtec...DjvuControl.cab
016 - DPF: {3AF4DACE-36ED-42EF-9DFC-ADC34DA30CFF} (patchInstaller.Installer) file://D:\content\include\xPpatchInstaller.CAB
016 - DPF: {4ED9DDFO-7479-4BBE-933S-SA1EDB1D8A21}
http://download.mcaf...76/mcinsctl.cab
016 - DPF: {8B1BC60S-CS93-486S-8FSB-OSS17FOCDOBB} (MssecurityAdvisorcD class)
file://D:\content\include\mssecucd.cab
016 - DPF: {BCCOFF27-31D9-4614-A68E-C18ELADA4389}
http://download.mcaf...mgr/en-us/1,0,0, 16/mcgdmgr.cab
023 - Service: avast! iAVS4 control service - unknown - c:\Program Files\Alwil
software\Avast4\aswupdsv.exe
023 - service: avast! Antivirus - unknown - c:\program Files\Alwil Software\Avast4\ashserv.exe
023 - service: avast! Mail Scanner - ALWIL Software - c:\program Files\Alwil
Software\Avast4\ashMaisv.exe