Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

internet problems

Status
Not open for further replies.

bobthebuilder69

Technical User
Mar 11, 2004
5
GB
I have a broadband internet connection. Internet explorer works when the computer is turned on or restarted and runs for about 5mins before crashing. Here i am wondering if a system process is kicking in that disables the internet. I am not sure though.
Internet programs such as MSN messenger work all the time, even when IE crashes, with no problem but internet explorer does not work.

Once internet explorer has crashed when you try to type a site in or open IE, and it tries to go to your home page, it comes up with this in the bottom left had corner where the page address normally comes up.(This is for Google)

'Connecting to site 216.239.59.99'

It then does not connect and goes to the 'page cannot be displayed' page.
While writing this post into the site it has crashed meaning I have restarted the computer just to post it.

I have the latest Sophos anti virus software and Spybot and the virus software does not pick anything up however Spybot picks up something every time even when removed called,

'DSO Exploit' they are registry changes.

I am wondering if this could have any thing to do with it. Below are the details on these problems found.

DSO Exploit: Data source object exploit (Registry change, fixed)
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

DSO Exploit: Data source object exploit (Registry change, fixed)
HKEY_USERS\S-1-5-21-682003330-688789844-1343024091-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

DSO Exploit: Data source object exploit (Registry change, fixed)
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

DSO Exploit: Data source object exploit (Registry change, fixed)
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

DSO Exploit: Data source object exploit (Registry change, fixed)
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

I have renamed these registry entries and rerun Spybot and it didn’t find them.

Thanks

Steven
 
Also you may want to try the following.

1) Make a note of the location of the exploit shown in Spybot, something similar to:

HKEY_USERS\S-1-5-21-1614895754-73586283-725345543-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

2) Click on Start, Run, and type REGEDIT and Press Enter to open the Windows Registry Editor

3) Find the location of the exploit above in the registry by clicking on the pluses(+) next to each title

4) After opening the Zones section and clicking on '0' look to the right window, under 'name' is the key '1004' and the type is REG_SZ simply right click and delete this REG_SZ value.Then right click and create new>DWORD Value, name it 1004, then right click on that and goto modify, give it the Hex Value of 3, Click ok.

If there is only a DWORD Value for the key (in this case 1004), then double click on the key and change the HEX value to 3 and click Ok.

5) Close the Registry Editor and Reboot your computer

6) The DSO Exploit should now be removed and it should no longer appear in the Spybot Search and Destroy log as a problem.


Found from:
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top