#10789 closed defect (not a bug)
TBB 3.5.1 not starting (Can't load xpcom)
| Reported by: | Sherief | Owned by: | mikeperry |
|---|---|---|---|
| Priority: | Medium | Milestone: | |
| Component: | Applications/Tor bundles/installation | Version: | |
| Severity: | Keywords: | ||
| Cc: | mcs, brade, gk, mttp, admin@… | Actual Points: | |
| Parent ID: | Points: | ||
| Reviewer: | Sponsor: |
Description
A number of users using version 3.5.1 cannot run TBB at all and "start tor browser" gives only this error message "Can't load xpcom".
I told the affected users to do the following:
1) Run TBB as Administrator.
2) Put the Tor Browser folder on the Desktop (or anywhere with read/write permissions).
3) Download a Firefox ESR [0] and see if it produces the same error.
All previous attempts did not work for anyone then one user replaced the xul.dll from 3.5.1 and used the one in version 3.5 and things worked for him. Meanwhile, I sent that user an email requesting the misbehaving xul.dll (gk's suggestion).
[0] https://www.mozilla.org/en-US/firefox/organizations/all.html
Child Tickets
Attachments (1)
Change History (29)
comment:1 Changed 5 years ago by
comment:2 Changed 5 years ago by
531cdac6dceb82ba578b4b894de3602eb78313750deb8391dd4563b9a409a478 for SHA256(xul.dll_bak)
531cdac6dceb82ba578b4b894de3602eb78313750deb8391dd4563b9a409a478 for SHA256(xul.dll) from torbrowser-install-3.5.1_en-US.exe
comment:3 Changed 5 years ago by
A number of users using version 3.5.1 cannot run TBB at all and "start tor browser" gives only this error message "Can't load xpcom".
What Windows version? What antivirus installed?
comment:4 Changed 5 years ago by
Difference for imported libs by xuls for 3.5 and 3.51
Name DLL: msvcr100.dll Name DLL: NETAPI32.dll Name DLL: ole32.dll +Name DLL: OLEACC.dll Name DLL: OLEAUT32.dll Name DLL: PSAPI.DLL Name DLL: RASAPI32.DLL
comment:6 Changed 5 years ago by
Download a Firefox ESR [0] and see if it produces the same error.
All DLLs for original Firefox is signed. If problem happens for some security software that prevents loading modified dlls while allow any changes if signed code, then original Firefox can't be used as indicator.
comment:7 Changed 5 years ago by
Some information Sherief forgot to add to the bug: the users were on Windows 7 and 8 and using a vanilla Firefox 24 ESR produced for one user exactly the same error while it started up successfully for others IIRC.
Changed 5 years ago by
| Attachment: | reproduce_fun_in_windowsxp.c added |
|---|
Reproduces env with virus or antivirus
comment:8 Changed 5 years ago by
It's not bug with Firefox or Torbrowser, no code used to load of xul.dll was changed since 24ESR appear:
nsBrowserApp.cpp, nsXPCOMGlue.cpp, FileUtils.cpp
You can to reproduce scenario probably happens for such bug with attached code.
comment:9 Changed 5 years ago by
Very non-informative message box. Those message happens if something wrong with one of 13 dlls from dependentlibs.list or list file itself. Broken, blocked, by indexer or by antivirus or something yet.
If xul.dll replacement helped for some case it doesn't means all cases is about problem with loading and running this one dll.
comment:10 Changed 5 years ago by
Another clue from an affected user:
I think the issue is with this software : http://www.webroot.com/us/en/
As soon as I uninstall it, TOR works. But with this software installed - it does not.
comment:11 Changed 5 years ago by
They offers free trial, but at least 3 different products for PC.
http://www.webroot.com/us/en/home/products/trials
Which one to try?
comment:14 Changed 5 years ago by
| Cc: | admin@… added |
|---|
comment:15 Changed 5 years ago by
Found report about WSA (v8.0.4.46) (Webroot® SecureAnywhere™) blocking mozglue.dll for vanilla 24ESR. User tried to install fresh firefox but it failed with Application Error (0xc0000022)" and after installing ESR they got "Couldn't load XPCOM."
comment:16 Changed 5 years ago by
I told the affected users to do the following:
1) Run TBB as Administrator.
2) Put the Tor Browser folder on the Desktop (or anywhere with read/write permissions).
3) Download a Firefox ESR [0] and see if it produces the same error.
Webroot
comment:17 Changed 5 years ago by
comment:18 follow-up: 22 Changed 5 years ago by
Put the Tor Browser folder on the Desktop (or anywhere with read/write permissions).
Could you to ask users used Webroot to install TBB to new directory explicitly.
comment:20 Changed 5 years ago by
Creating of new user account or installing to different path unlikely can help with case of webroot.
It blocking every changes even if new directory, it's matter only name of file it seems. It named browser protection.
https://community.webroot.com/t5/Webroot-SecureAnywhere-Antivirus/Webroot-doesn-t-like-Google-Chrome/m-p/80691#M5160
https://community.webroot.com/t5/Webroot-SecureAnywhere-Antivirus/Webroot-doesn-t-like-Google-Chrome/m-p/80727#M5163
If user want to install new version of browser they should to manually white-list every blocked files, and don't blame excelent brilliant unbreakable perfect closed-source AV software.
https://community.webroot.com/t5/Webroot-SecureAnywhere-Antivirus/Webroot-doesn-t-like-Google-Chrome/m-p/81317#M5190
Webroot already rooted windowz boxes, relax.
comment:21 Changed 5 years ago by
| Resolution: | → not a bug |
|---|---|
| Status: | new → closed |
comment:22 Changed 5 years ago by
Replying to cypherpunks:
Put the Tor Browser folder on the Desktop (or anywhere with read/write permissions).
Could you to ask users used Webroot to install TBB to new directory explicitly.
I'm not understanding why this would make a difference.
comment:23 Changed 5 years ago by
Was this ticket closed because the issue is resolved? Or what? If so, what's the resolution?
comment:24 Changed 5 years ago by
In a comment on the blog somebody said:
https://blog.torproject.org/blog/tor-browser-352-released#comment-47052
comment:25 Changed 5 years ago by
Was this ticket closed because the issue is resolved? Or what? If so, what's the resolution?
It's not bug of TBB code, installer, or anything that open-source coders can to fix.
And no workarounds exists that open-source coders can to write.
"Solution: If you have webroot antivirus, go to ---IDENTITY PROTECTION ---Application Protection ---and allow gkmedias.dll in C:\users\..\tor browser\browser"
Or yet 12 another dlls.
It's bug (or feature, whatever they named it) Webroot. Users of Webroot chose to pay for such pain, we should to respect their choice.
comment:26 Changed 5 years ago by
I'm not understanding why this would make a difference.
Webroot showing blocked dlls with path. Idea was that webroot detects changed dll and protect app with such blocking against malware infection. If new path then should be another app, then why to block dll? But seems like it's feature to block every new dll if webroot already known such name and hash different. Or it hardcodes dlls names for browsers and protect it such way.
comment:27 Changed 5 years ago by
Or it hardcodes dlls names for browsers and protect it such way.
https://community.webroot.com/t5/Webroot-SecureAnywhere-Antivirus/Webroot-doesn-t-like-Google-Chrome/m-p/80709#M5162
They need to whitelist every new update for browser. 99.9% protection ftw! Next level is to turn off your box then 100% protection guaranteed.
comment:28 Changed 5 years ago by
Very non-informative message box. Those message happens if something wrong with one of 13 dlls from dependentlibs.list or list file itself.
https://bugzilla.mozilla.org/show_bug.cgi?id=972932
You could to add more details and help with fix.

Formed in 2009, the Archive Team (not to be confused with the archive.org Archive-It Team) is a rogue archivist collective dedicated to saving copies of rapidly dying or deleted websites for the sake of history and digital heritage. The group is 100% composed of volunteers and interested parties, and has expanded into a large amount of related projects for saving online and digital history.


[update] The user sent his xul.dll file:
https://3.5.1.s3.amazonaws.com/xul.dll_bak