Questions

Why can't I access www.google.com?

+
0 Votes
Locked

Why can't I access www.google.com?

tomerms
I am running Windows XP Home Edition SP3, AVG 9.0, Malwarebytes, SuperAnts, Adaware, IOB360. I can access any and all websites except "www.google.com". I cannot ping google, but I can ping gmail and google.mail.com. It sounds to me like I have malware or a virus that has highjacked my browser (IE8). I have ran all the above programs in normal mode and safe mode, and they only find tracking cookies. When I type www.google into the address bar, AVG and yahoo bring up there listings of links for google, but when I click on one of those links the browser tells me that this webpage cannot be displayed. Has anyone else had a problem like this? Any help would be grateful ladies and gentlemen, Thanks,

Marlon Tomera
  • +
    0 Votes
    cliff680

    Have you tried clearing your Internet Cache?

    +
    0 Votes
    tomerms

    Now are you talking about clearing the temp files, web history and cookies?

    +
    0 Votes
    SPC_TCOL

    did you try an different browser like Firefox?
    You should use a different browser anyway.

    +
    0 Votes
    tomerms

    No I did not, and I really don't like Firefox, to used to IE. I might try and give a shot. Thanks

    +
    0 Votes
    SPC_TCOL

    But you know that Firefox is safer then IE, not that it's safe, but safer.

    +
    0 Votes
    SteveCCC

    Try to access the site directly: 74.125.67.100

    If it works then you probably have an issue with your DNS. go to your control panel and select Network connections then right click on Local Area Connection and choose properties. After that select Internet Protocol TCP/IP and go into those properties and verify your DNS is set to auto obtain. Might as well ensure your IP is also on auto even if going through a router IMO.

    +
    0 Votes
    tomerms

    I tried the IP address directly in the address bar, and got nowhere. Then I tried to ping the IP address and had 100% packet loss. Thanks,

    +
    0 Votes

    DNS

    fox2002152003

    Please check the DNS (Primary and Alternate) and also double check with your firewall.

    +
    0 Votes
    Jacky Howe

    Click Start, Run type cmd and press Enter.

    type netsh winsock reset at the command prompt, and then press ENTER.

    +
    0 Votes
    tomerms

    I have already tried this, also tried flush /dns without any luck. I am now offshore at work, I am going to try and have my wife or son send me an invite so I can connect remotely and try a few other things, like uninstalling IE8 and install firefox. Then if that doesn't work, I'm going to try to download and install IE7 and see what happens there LOL. Thanks Jacky

    +
    0 Votes
    Jacky Howe

    Download HijackThis and run it and then go to the site below to analyze it.

    http://aumha.org/downloads/hijackthis.exe

    HijackThis log file analysis

    Hijack This opens you a possibility to find and fix nasty entries on your computer easier. Therefore it will scan special parts in the registry and on your harddisk and compare them with the default settings. If there is some abnormality detected on your computer HijackThis will save them into a logfile. In order to find out what entries are nasty and what are installed by the user, you need some background information.

    A logfile is not so easy to analyze. Even for an advanced computer user. With the help of this automatic analyzer you are able to get some additional support. Just paste your complete logfile into the textbox at the bottom of this page. Due to a few misunderstandings, I just want to make it clear that this site provides only an online analysis, and not HijackThis the program.

    http://hijackthis.de/

    +
    0 Votes
    tomerms

    Jacky,
    I will try this, I am waiting for my wife to email me the report that I did a couple of days ago. Then I will go and get it analized. Thanks,
    Marlon

    +
    0 Votes
    Jacky Howe

    posted.

    Edit: to add

    Could you get someone to check the Hosts file

    Press the WinKey + r and type or copy this command: notepad C:/Windows/System32/drivers/etc/hosts click OK or press Enter.


    look for anything that might resemble this:

    64.86.17.32 google.com
    64.86.17.32 google.com.af
    64.86.17.32 google.com.ag
    64.86.17.32 google.com.ar
    64.86.17.32 google.com.au
    64.86.17.32 google.com.bn
    64.86.17.32 google.com.br
    64.86.17.32 google.com.by
    64.86.17.32 google.com.bz
    64.86.17.32 google.com.cu
    64.86.17.32 google.com.ec
    64.86.17.32 google.com.fj


    Normally there would be only one entry:

    127.0.0.1 localhost

    +
    0 Votes
    tomerms

    Jacky,
    I will have to try this when I get home in 2 weeks, I work offshore and I'm out on the rig right now. But here is the copy of my highjackthis report that was analyzed.

    http://hijackthis.de/#anl

    If you have a problem seeing it here is my file that you can put into the text box. Thank you for all your help Jacky!


    DDS (Ver_09-10-26.01) - NTFSx86
    Run by Marlon at 12:03:35.85 on Sun 11/22/2009
    Internet Explorer: 8.0.6001.18702
    Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1015.417 [GMT -6:00]

    AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}

    ============== Running Processes ===============

    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    svchost.exe
    C:\Program Files\AVG\AVG9\avgchsvx.exe
    C:\Program Files\AVG\AVG9\avgrsx.exe
    svchost.exe
    C:\Program Files\AVG\AVG9\avgcsrvx.exe
    C:\WINDOWS\system32\spoolsv.exe
    svchost.exe
    C:\Program Files\AVG\AVG9\avgwdsvc.exe
    C:\WINDOWS\system32\igfxtray.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\PROGRA~1\AVG\AVG9\avgtray.exe
    C:\Program Files\IObit\Advanced SystemCare 3\AWC.exe
    C:\WINDOWS\system32\svchost.exe -k imgsvc
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
    C:\Program Files\AVG\AVG9\avgemc.exe
    C:\Program Files\AVG\AVG9\avgnsx.exe
    C:\Program Files\AVG\AVG9\avgcsrvx.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Documents and Settings\Marlon\Desktop\dds.scr

    ============== Pseudo HJT Report ===============

    uStart Page = hxxp://www.yahoo.com/
    uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn2\yt.dll
    uURLSearchHooks: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn2\yt.dll
    BHO: Canon Easy-WebPrint EX BHO: {3785d0ad-bfff-47f6-bf5b-a587c162fed9} - c:\program files\canon\easy-webprint ex\ewpexbho.dll
    BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg9\avgssie.dll
    BHO: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\program files\yahoo!\companion\installs\cpn2\YTSingleInstance.dll
    TB: AVG Security Toolbar: {ccc7a320-b3ca-4199-b1a6-9f516dd69829} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    TB: Canon Easy-WebPrint EX: {759d9886-0c6f-4498-bab6-4a5f47c6c72f} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
    TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn2\yt.dll
    TB: {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
    EB: Canon Easy-WebPrint EX: {21347690-ec41-4f9a-8887-1f4aee672439} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
    uRun: [Advanced SystemCare 3] "c:\program files\iobit\advanced systemcare 3\AWC.exe" /startup
    uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
    mRun: [AlcxMonitor] ALCXMNTR.EXE
    mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
    mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
    mRun: [SoundMan] SOUNDMAN.EXE
    mRun: [YSearchProtection] "c:\program files\yahoo!\search protection\SearchProtection.exe"
    mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
    mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
    mRun: [AVG9_TRAY] c:\progra~1\avg\avg9\avgtray.exe
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} - hxxp://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab
    DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} - hxxp://download.microsoft.com/download/7/4/9/749b0dc5-2175-4d5b-a6dd-9c4bc923683e/Selfhelpcontrol.cab
    DPF: {22492231-AEF0-49FC-9180-CE8969AB1273} - hxxp://download.sp.f-secure.com/ols/f-secure-rtm/resources/fslauncher.cab
    DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
    DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} - hxxp://acs.pandasoftware.com/activescan/cabs/as2stubie.cab
    DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
    DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
    Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg9\avgpp.dll
    Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
    Notify: avgrsstarter - avgrsstx.dll
    Notify: igfxcui - igfxsrvc.dll
    SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
    LSA: Notification Packages = scecli

    ============= SERVICES / DRIVERS ===============

    R0 pavboot;pavboot;c:\windows\system32\drivers\pavboot.sys [2009-11-20 28552]
    R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-11-17 333192]
    R1 AvgTdiX;AVG Free Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-11-17 360584]
    R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2009-8-5 9968]
    R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2009-8-5 74480]
    R2 avg9emc;AVG Free E-mail Scanner;c:\program files\avg\avg9\avgemc.exe [2009-11-17 906520]
    R2 avg9wd;AVG Free WatchDog;c:\program files\avg\avg9\avgwdsvc.exe [2009-11-17 285392]
    R2 YahooAUService;Yahoo! Updater;c:\program files\yahoo!\softwareupdate\YahooAUService.exe [2008-11-9 602392]
    R3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2009-8-5 7408]

    =============== Created Last 30 ================

    2009-11-22 17:34:11 0 dc----w- c:\windows\system32\CatRoot2
    2009-11-22 16:08:33 0 dcsha-r- C:\cmdcons
    2009-11-22 16:05:04 98816 -c--a-w- c:\windows\sed.exe
    2009-11-22 16:05:04 77312 -c--a-w- c:\windows\MBR.exe
    2009-11-22 16:05:04 260608 -c--a-w- c:\windows\PEV.exe
    2009-11-22 16:05:04 161792 -c--a-w- c:\windows\SWREG.exe
    2009-11-20 17:54:43 28552 -c--a-w- c:\windows\system32\drivers\pavboot.sys
    2009-11-20 17:54:26 0 dc----w- c:\program files\Panda Security
    2009-11-20 16:42:31 0 dc----w- C:\HostsXpert
    2009-11-17 16:45:27 0 dc----w- C:\$AVG
    2009-11-17 16:45:14 12464 -c--a-w- c:\windows\system32\avgrsstx.dll
    2009-11-17 16:45:13 360584 -c--a-w- c:\windows\system32\drivers\avgtdix.sys
    2009-11-17 16:44:54 0 dc----w- c:\windows\system32\drivers\Avg
    2009-11-17 16:44:52 0 dc----w- c:\docume~1\alluse~1.win\applic~1\AVG Security Toolbar
    2009-11-17 16:44:44 333192 -c--a-w- c:\windows\system32\drivers\avgldx86.sys
    2009-11-17 16:01:55 13692 -c--a-w- c:\windows\system32\wpa.bak
    2009-11-14 01:12:48 38224 -c--a-w- c:\windows\system32\drivers\mbamswissarmy.sys
    2009-11-14 01:12:46 19160 -c--a-w- c:\windows\system32\drivers\mbam.sys
    2009-11-14 01:12:46 0 dc----w- c:\program files\Malwarebytes' Anti-Malware
    2009-11-13 15:20:22 42764 -csha-w- c:\windows\system32\drivers\fidbox.idx
    2009-11-13 15:20:22 3112736 -csha-w- c:\windows\system32\drivers\fidbox.dat
    2009-11-13 15:20:22 2324 -csha-w- c:\windows\system32\drivers\fidbox2.idx
    2009-11-13 15:20:22 13344 -csha-w- c:\windows\system32\drivers\fidbox2.dat
    2009-11-13 15:19:55 3050 -c--a-w- C:\rollback.ini
    2009-11-13 14:47:01 0 dc----w- c:\docume~1\alluse~1.win\applic~1\ParetoLogic
    2009-11-13 14:13:07 0 dc----w- c:\docume~1\alluse~1.win\applic~1\F-Secure
    2009-11-13 13:27:02 55656 -c--a-w- c:\windows\system32\drivers\avgntflt.sys
    2009-11-11 15:52:08 0 dc----w- c:\docume~1\alluse~1.win\applic~1\avg9
    2009-11-10 20:49:09 221184 -c--a-w- c:\windows\system32\wmpns.dll
    2009-10-26 23:47:47 73728 -c--a-w- c:\windows\system32\javacpl.cpl
    2009-10-26 23:47:47 411368 -c--a-w- c:\windows\system32\deploytk.dll

    ==================== Find3M ====================

    2009-09-11 14:18:39 136192 -c--a-w- c:\windows\system32\msv1_0.dll
    2009-09-04 21:03:36 58880 -c--a-w- c:\windows\system32\msasn1.dll
    2009-08-29 08:08:21 916480 -c----w- c:\windows\system32\wininet.dll
    2009-08-26 08:00:21 247326 -c--a-w- c:\windows\system32\strmdll.dll
    2007-11-13 19:47:02 217 -c--a-w- c:\program files\setup.ini
    2007-05-15 04:35:52 271 -c-ha-w- c:\program files\hpothb07.tif
    2007-05-15 04:35:52 162 -c-ha-w- c:\program files\hpothb07.dat
    2002-03-11 09:06:30 1822520 -c--a-w- c:\program files\instmsiw.exe
    2002-03-11 08:45:04 1708856 -c--a-w- c:\program files\instmsia.exe

    ============= FINISH: 12:04:00.10 ===============

    +
    0 Votes
    Jacky Howe

    there is a possibility its the hosts file.

    +
    0 Votes
    seanferd

    http://www.google.com/search?q=api.mybrowser.com

    Check the HOSTS file for any entries beyond localhost 127.0.0.1

  • +
    0 Votes
    cliff680

    Have you tried clearing your Internet Cache?

    +
    0 Votes
    tomerms

    Now are you talking about clearing the temp files, web history and cookies?

    +
    0 Votes
    SPC_TCOL

    did you try an different browser like Firefox?
    You should use a different browser anyway.

    +
    0 Votes
    tomerms

    No I did not, and I really don't like Firefox, to used to IE. I might try and give a shot. Thanks

    +
    0 Votes
    SPC_TCOL

    But you know that Firefox is safer then IE, not that it's safe, but safer.

    +
    0 Votes
    SteveCCC

    Try to access the site directly: 74.125.67.100

    If it works then you probably have an issue with your DNS. go to your control panel and select Network connections then right click on Local Area Connection and choose properties. After that select Internet Protocol TCP/IP and go into those properties and verify your DNS is set to auto obtain. Might as well ensure your IP is also on auto even if going through a router IMO.

    +
    0 Votes
    tomerms

    I tried the IP address directly in the address bar, and got nowhere. Then I tried to ping the IP address and had 100% packet loss. Thanks,

    +
    0 Votes

    DNS

    fox2002152003

    Please check the DNS (Primary and Alternate) and also double check with your firewall.

    +
    0 Votes
    Jacky Howe

    Click Start, Run type cmd and press Enter.

    type netsh winsock reset at the command prompt, and then press ENTER.

    +
    0 Votes
    tomerms

    I have already tried this, also tried flush /dns without any luck. I am now offshore at work, I am going to try and have my wife or son send me an invite so I can connect remotely and try a few other things, like uninstalling IE8 and install firefox. Then if that doesn't work, I'm going to try to download and install IE7 and see what happens there LOL. Thanks Jacky

    +
    0 Votes
    Jacky Howe

    Download HijackThis and run it and then go to the site below to analyze it.

    http://aumha.org/downloads/hijackthis.exe

    HijackThis log file analysis

    Hijack This opens you a possibility to find and fix nasty entries on your computer easier. Therefore it will scan special parts in the registry and on your harddisk and compare them with the default settings. If there is some abnormality detected on your computer HijackThis will save them into a logfile. In order to find out what entries are nasty and what are installed by the user, you need some background information.

    A logfile is not so easy to analyze. Even for an advanced computer user. With the help of this automatic analyzer you are able to get some additional support. Just paste your complete logfile into the textbox at the bottom of this page. Due to a few misunderstandings, I just want to make it clear that this site provides only an online analysis, and not HijackThis the program.

    http://hijackthis.de/

    +
    0 Votes
    tomerms

    Jacky,
    I will try this, I am waiting for my wife to email me the report that I did a couple of days ago. Then I will go and get it analized. Thanks,
    Marlon

    +
    0 Votes
    Jacky Howe

    posted.

    Edit: to add

    Could you get someone to check the Hosts file

    Press the WinKey + r and type or copy this command: notepad C:/Windows/System32/drivers/etc/hosts click OK or press Enter.


    look for anything that might resemble this:

    64.86.17.32 google.com
    64.86.17.32 google.com.af
    64.86.17.32 google.com.ag
    64.86.17.32 google.com.ar
    64.86.17.32 google.com.au
    64.86.17.32 google.com.bn
    64.86.17.32 google.com.br
    64.86.17.32 google.com.by
    64.86.17.32 google.com.bz
    64.86.17.32 google.com.cu
    64.86.17.32 google.com.ec
    64.86.17.32 google.com.fj


    Normally there would be only one entry:

    127.0.0.1 localhost

    +
    0 Votes
    tomerms

    Jacky,
    I will have to try this when I get home in 2 weeks, I work offshore and I'm out on the rig right now. But here is the copy of my highjackthis report that was analyzed.

    http://hijackthis.de/#anl

    If you have a problem seeing it here is my file that you can put into the text box. Thank you for all your help Jacky!


    DDS (Ver_09-10-26.01) - NTFSx86
    Run by Marlon at 12:03:35.85 on Sun 11/22/2009
    Internet Explorer: 8.0.6001.18702
    Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1015.417 [GMT -6:00]

    AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}

    ============== Running Processes ===============

    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    svchost.exe
    C:\Program Files\AVG\AVG9\avgchsvx.exe
    C:\Program Files\AVG\AVG9\avgrsx.exe
    svchost.exe
    C:\Program Files\AVG\AVG9\avgcsrvx.exe
    C:\WINDOWS\system32\spoolsv.exe
    svchost.exe
    C:\Program Files\AVG\AVG9\avgwdsvc.exe
    C:\WINDOWS\system32\igfxtray.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\PROGRA~1\AVG\AVG9\avgtray.exe
    C:\Program Files\IObit\Advanced SystemCare 3\AWC.exe
    C:\WINDOWS\system32\svchost.exe -k imgsvc
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
    C:\Program Files\AVG\AVG9\avgemc.exe
    C:\Program Files\AVG\AVG9\avgnsx.exe
    C:\Program Files\AVG\AVG9\avgcsrvx.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Documents and Settings\Marlon\Desktop\dds.scr

    ============== Pseudo HJT Report ===============

    uStart Page = hxxp://www.yahoo.com/
    uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn2\yt.dll
    uURLSearchHooks: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn2\yt.dll
    BHO: Canon Easy-WebPrint EX BHO: {3785d0ad-bfff-47f6-bf5b-a587c162fed9} - c:\program files\canon\easy-webprint ex\ewpexbho.dll
    BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg9\avgssie.dll
    BHO: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\program files\yahoo!\companion\installs\cpn2\YTSingleInstance.dll
    TB: AVG Security Toolbar: {ccc7a320-b3ca-4199-b1a6-9f516dd69829} - c:\program files\avg\avg9\toolbar\IEToolbar.dll
    TB: Canon Easy-WebPrint EX: {759d9886-0c6f-4498-bab6-4a5f47c6c72f} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
    TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn2\yt.dll
    TB: {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
    EB: Canon Easy-WebPrint EX: {21347690-ec41-4f9a-8887-1f4aee672439} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
    uRun: [Advanced SystemCare 3] "c:\program files\iobit\advanced systemcare 3\AWC.exe" /startup
    uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
    mRun: [AlcxMonitor] ALCXMNTR.EXE
    mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
    mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
    mRun: [SoundMan] SOUNDMAN.EXE
    mRun: [YSearchProtection] "c:\program files\yahoo!\search protection\SearchProtection.exe"
    mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
    mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
    mRun: [AVG9_TRAY] c:\progra~1\avg\avg9\avgtray.exe
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} - hxxp://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab
    DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} - hxxp://download.microsoft.com/download/7/4/9/749b0dc5-2175-4d5b-a6dd-9c4bc923683e/Selfhelpcontrol.cab
    DPF: {22492231-AEF0-49FC-9180-CE8969AB1273} - hxxp://download.sp.f-secure.com/ols/f-secure-rtm/resources/fslauncher.cab
    DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
    DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} - hxxp://acs.pandasoftware.com/activescan/cabs/as2stubie.cab
    DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
    DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
    Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg9\avgpp.dll
    Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
    Notify: avgrsstarter - avgrsstx.dll
    Notify: igfxcui - igfxsrvc.dll
    SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
    LSA: Notification Packages = scecli

    ============= SERVICES / DRIVERS ===============

    R0 pavboot;pavboot;c:\windows\system32\drivers\pavboot.sys [2009-11-20 28552]
    R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-11-17 333192]
    R1 AvgTdiX;AVG Free Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-11-17 360584]
    R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2009-8-5 9968]
    R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2009-8-5 74480]
    R2 avg9emc;AVG Free E-mail Scanner;c:\program files\avg\avg9\avgemc.exe [2009-11-17 906520]
    R2 avg9wd;AVG Free WatchDog;c:\program files\avg\avg9\avgwdsvc.exe [2009-11-17 285392]
    R2 YahooAUService;Yahoo! Updater;c:\program files\yahoo!\softwareupdate\YahooAUService.exe [2008-11-9 602392]
    R3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2009-8-5 7408]

    =============== Created Last 30 ================

    2009-11-22 17:34:11 0 dc----w- c:\windows\system32\CatRoot2
    2009-11-22 16:08:33 0 dcsha-r- C:\cmdcons
    2009-11-22 16:05:04 98816 -c--a-w- c:\windows\sed.exe
    2009-11-22 16:05:04 77312 -c--a-w- c:\windows\MBR.exe
    2009-11-22 16:05:04 260608 -c--a-w- c:\windows\PEV.exe
    2009-11-22 16:05:04 161792 -c--a-w- c:\windows\SWREG.exe
    2009-11-20 17:54:43 28552 -c--a-w- c:\windows\system32\drivers\pavboot.sys
    2009-11-20 17:54:26 0 dc----w- c:\program files\Panda Security
    2009-11-20 16:42:31 0 dc----w- C:\HostsXpert
    2009-11-17 16:45:27 0 dc----w- C:\$AVG
    2009-11-17 16:45:14 12464 -c--a-w- c:\windows\system32\avgrsstx.dll
    2009-11-17 16:45:13 360584 -c--a-w- c:\windows\system32\drivers\avgtdix.sys
    2009-11-17 16:44:54 0 dc----w- c:\windows\system32\drivers\Avg
    2009-11-17 16:44:52 0 dc----w- c:\docume~1\alluse~1.win\applic~1\AVG Security Toolbar
    2009-11-17 16:44:44 333192 -c--a-w- c:\windows\system32\drivers\avgldx86.sys
    2009-11-17 16:01:55 13692 -c--a-w- c:\windows\system32\wpa.bak
    2009-11-14 01:12:48 38224 -c--a-w- c:\windows\system32\drivers\mbamswissarmy.sys
    2009-11-14 01:12:46 19160 -c--a-w- c:\windows\system32\drivers\mbam.sys
    2009-11-14 01:12:46 0 dc----w- c:\program files\Malwarebytes' Anti-Malware
    2009-11-13 15:20:22 42764 -csha-w- c:\windows\system32\drivers\fidbox.idx
    2009-11-13 15:20:22 3112736 -csha-w- c:\windows\system32\drivers\fidbox.dat
    2009-11-13 15:20:22 2324 -csha-w- c:\windows\system32\drivers\fidbox2.idx
    2009-11-13 15:20:22 13344 -csha-w- c:\windows\system32\drivers\fidbox2.dat
    2009-11-13 15:19:55 3050 -c--a-w- C:\rollback.ini
    2009-11-13 14:47:01 0 dc----w- c:\docume~1\alluse~1.win\applic~1\ParetoLogic
    2009-11-13 14:13:07 0 dc----w- c:\docume~1\alluse~1.win\applic~1\F-Secure
    2009-11-13 13:27:02 55656 -c--a-w- c:\windows\system32\drivers\avgntflt.sys
    2009-11-11 15:52:08 0 dc----w- c:\docume~1\alluse~1.win\applic~1\avg9
    2009-11-10 20:49:09 221184 -c--a-w- c:\windows\system32\wmpns.dll
    2009-10-26 23:47:47 73728 -c--a-w- c:\windows\system32\javacpl.cpl
    2009-10-26 23:47:47 411368 -c--a-w- c:\windows\system32\deploytk.dll

    ==================== Find3M ====================

    2009-09-11 14:18:39 136192 -c--a-w- c:\windows\system32\msv1_0.dll
    2009-09-04 21:03:36 58880 -c--a-w- c:\windows\system32\msasn1.dll
    2009-08-29 08:08:21 916480 -c----w- c:\windows\system32\wininet.dll
    2009-08-26 08:00:21 247326 -c--a-w- c:\windows\system32\strmdll.dll
    2007-11-13 19:47:02 217 -c--a-w- c:\program files\setup.ini
    2007-05-15 04:35:52 271 -c-ha-w- c:\program files\hpothb07.tif
    2007-05-15 04:35:52 162 -c-ha-w- c:\program files\hpothb07.dat
    2002-03-11 09:06:30 1822520 -c--a-w- c:\program files\instmsiw.exe
    2002-03-11 08:45:04 1708856 -c--a-w- c:\program files\instmsia.exe

    ============= FINISH: 12:04:00.10 ===============

    +
    0 Votes
    Jacky Howe

    there is a possibility its the hosts file.

    +
    0 Votes
    seanferd

    http://www.google.com/search?q=api.mybrowser.com

    Check the HOSTS file for any entries beyond localhost 127.0.0.1