IE6 error - shdoclc.dll/dnserror.htm (RESOLVED)

  1. #11
    ShortStuff is offline Newbie

    Re: IE6 error - shdoclc.dll/dnserror.htm

    Good news and bad news...

    The good news is that it's working. I can launch Outlook, surf using IE6, I've successfully updated all the software you've asked me to install, I can use Firefox etc.

    Tha bad news is that I have no idea what I did to get it working. I hadn't even followed the link you suggested in your last response as yet. I was fooling around in the 'Internet Options' section of IE6 (I didn't really 'do' anything) just trying to get a clue or... just something. I restarted my PC (for the upteenth time), expecting to see the usual 'unable to connect' messages from CounterSpy, AVG etc. Suddenly I noticed a Steam Update (Valve [Half-Life]) which meant that it had successfully connected to the net...

    However, like I said, I have no idea what I did. But I do remember activating my firewall one time, without even noticing that it was down.

    Now I can concentrate on doing a month's work in 1 and a half days.

    Anyway, many MANY thanks for all your help Vop This. I wasn't aware of any of the software you asked me to download to help protect my PC. But I promise you I'll be using them now.

    Much appreciated.


  2. #12
    VopThis is offline Senior Member (Canada)
    Very good news on your resolution - I was starting to dread each new installment of this continuing story.

    Unfortunately neither one of us really knows why. The material on the net for this cloudy issue is massive and mostly inconclusive, as we have both discovered. There is obviously no easy recipe for this problem.



    Suggest you try one additional scan for added peace-of mind:

    Please do an online scan with Kaspersky WebScanner

    Click on Kaspersky Online Scanner

    You will be prompted to install an ActiveX component from Kaspersky, Click Yes.
    • The program will launch and then begin downloading the latest definition files:
    • Once the files have been downloaded click on NEXT
    • Now click on Scan Settings
    • In the scan settings make sure that the following are selected:
      • Scan using the following Anti-Virus database:
        - Extended (if available otherwise Standard)
      • Scan Options:
        - Scan Archives
        - Scan Mail Bases
    • Click OK
    • Now under select a target to scan:
      • Select My Computer
    • This program will start and scan your system.
    • The scan will take a while so be patient and let it run.
    • Once the scan is complete it will display if your system has been infected.
      • Now click on the Save as Text button:
    • Save the file to your desktop.
    • Copy and paste that information in your next post.
    Last edited by VopThis; 10-01-2006 at 03:39 PM.

  3. #13
    ShortStuff is offline Newbie
    Ok VopThis, did the Kapersky scan.

    Here are the results....




    -------------------------------------------------------------------------------
    KASPERSKY ON-LINE SCANNER REPORT
    Sunday, January 08, 2006 21:14:53
    Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
    Kaspersky On-line Scanner version: 5.0.67.0
    Kaspersky Anti-Virus database last update: 8/01/2006
    Kaspersky Anti-Virus database records: 169968
    -------------------------------------------------------------------------------

    Scan Settings:
    Scan using the following antivirus database: extended
    Scan Archives: true
    Scan Mail Bases: true

    Scan Target - My Computer:
    A:\
    C:\
    D:\
    E:\
    F:\
    H:\

    Scan Statistics:
    Total number of scanned objects: 178211
    Number of viruses found: 10
    Number of infected objects: 30
    Number of suspicious objects: 0
    Duration of the scan process: 5517 sec

    Infected Object Name - Virus Name
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\286TZHWO\prompt[1].htm Infected: Trojan-Downloader.JS.IstBar.j
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\4V5REEJ5\prompt[1].htm Infected: Trojan-Downloader.JS.IstBar.j
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\8FVNQCXL\prompt[1].htm Infected: Trojan-Downloader.JS.IstBar.j
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\I5PM3QDW\prompt[1].htm Infected: Trojan-Downloader.JS.IstBar.j
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\I5PM3QDW\prompt[2].htm Infected: Trojan-Downloader.JS.IstBar.j
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\I5PM3QDW\prompt[3].htm Infected: Trojan-Downloader.JS.IstBar.j
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\I5PM3QDW\prompt[4].htm Infected: Trojan-Downloader.JS.IstBar.j
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\I5PM3QDW\prompt[5].htm Infected: Trojan-Downloader.JS.IstBar.j
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\I5PM3QDW\prompt[6].htm Infected: Trojan-Downloader.JS.IstBar.j
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\I5PM3QDW\prompt[7].htm Infected: Trojan-Downloader.JS.IstBar.j
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\I5PM3QDW\prompt[8].htm Infected: Trojan-Downloader.JS.IstBar.j
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\UPOFELE5\ysb_prompt[1].htm Infected: Exploit.HTML.CodeBaseExec
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\VUZ9913B\ysb_prompt[1].htm Infected: Trojan-Downloader.JS.IstBar.j
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\WD87SNCF\a272ab[1].js Infected: Trojan-Downloader.JS.Small.af
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\WD87SNCF\a272ab[2].js Infected: Trojan-Downloader.JS.Small.af
    C:\Documents and Settings\Cleveland\Local Settings\Temporary Internet Files\Content.IE5\WD87SNCF\a272ab[3].js Infected: Trojan-Downloader.JS.Small.af
    C:\Downloaded Applications\Troy.exe/WISE0019.BIN Infected: Trojan-Downloader.Win32.Small.bke
    C:\Downloaded Applications\Troy.exe/WISE0020.BIN Infected: not-a-virus:AdWare.Win32.NewDotNet
    C:\Downloaded Applications\Troy.exe/WISE0021.BIN/stream/data0004 Infected: not-a-virus:AdWare.Win32.ActivShopper.a
    C:\Downloaded Applications\Troy.exe/WISE0021.BIN/stream/data0005 Infected: not-a-virus:AdWare.Win32.ActivShopper.a
    C:\Downloaded Applications\Troy.exe/WISE0021.BIN/stream Infected: not-a-virus:AdWare.Win32.ActivShopper.a
    C:\Downloaded Applications\Troy.exe/WISE0021.BIN Infected: not-a-virus:AdWare.Win32.ActivShopper.a
    C:\Downloaded Applications\Troy.exe Infected: not-a-virus:AdWare.Win32.ActivShopper.a
    C:\System Volume Information\_restore{6373C148-6C93-4F87-8C9F-7ED9B07B9CBE}\RP3\A0000200.dll Infected: not-a-virus:AdWare.Win32.Agent.b
    C:\Zip Transfer\unzipped\ss212.zip/mirc32.exe Infected: not-a-virus:Client-IRC.Win32.mIRC.581
    C:\Zip Transfer\unzipped\ss212.zip Infected: not-a-virus:Client-IRC.Win32.mIRC.581
    C:\Zip Transfer\unzipped\thëNøhÄmßër«§øript».exe Infected: not-a-virus:Client-IRC.Win32.mIRC.56
    C:\Zip Transfer\Zip 7\Dump\FlashGet.exe/WISE0018.BIN/cd_clint.dll Infected: not-a-virus:AdWare.Win32.Cydoor
    C:\Zip Transfer\Zip 7\Dump\FlashGet.exe/WISE0018.BIN Infected: not-a-virus:AdWare.Win32.Cydoor
    C:\Zip Transfer\Zip 7\Dump\FlashGet.exe Infected: not-a-virus:AdWare.Win32.Cydoor

    Scan process completed.


    What shall I do with these?

  4. #14
    VopThis is offline Senior Member (Canada)
    Save 20% on AVG Internet Security 2012 Suite!
    Download and run the freeware system optimization and privacy tool:
    CCleaner (Crap Cleaner)
    http://www.ccleaner.com/ccdownload.asp

    It removes unnecessary junk from your computer allowing it to run more efficiently and securely.

    You may get more optimal cleaning if you run it in SAFEMODE – while rebooting and at the beep keep tapping the F8 key.


    Once installed, you will notice an Online Help link at the bottom left. An [/b]Updates [/b]checking link is provided at the bottom right. When first run in its DEFAULT opening setup – Cleaner Settings (Windows TAB is selected) :
    • Uncheck ‘Cookies’ option (advisable)
    • Click the ‘Analyse’ button.
    • Thereafter, click ‘Run Cleaner’ after you have reviewed what it proposes to clean.



    Delete the following FILES and FOLDERS in SAFE MODE:
    C:\Downloaded Applications\Troy.exe


    [An IRC is considered to be potential RISKWARE - remove if you don't know why it is there]
    Infected: not-a-virus:Client-IRC.Win32.mIRC.581

    C:\Zip Transfer\unzipped\ss212.zip
    C:\Zip Transfer\unzipped\thëNøhÄmßër«§øript».exe

    C:\Zip Transfer\Zip 7\Dump\FlashGet.exe (probably delete the ZIP7 or DUMP FOLDERS as well)




    REBOOT and validate your removals by re-running Kaspersky scan. Re-run Ewido, as well, in case anything else has changed. Post your latest HJT log.


    Consider resetting your 'System Restore' as one last final step when your PC is essentially clean (see previous post on this matter)
    C:\System Volume Information\_restore{6373C148-6C93-4F87-8C9F-7ED9B07B9CBE}\RP3\A0000200.dll Infected: not-a-virus:AdWare.Win32.Agent.b

+ Reply to Thread
Page 2 of 2 FirstFirst 1 2