! I just read your earlier post..... so do these things before you do what i wrote in my first post.
Time to get some free stuff....
First off I would like you to download CCleaner from http://www.ccleaner.com/ and put it in a new folder. You should aim to keep this one for general use. I set it from the install checkboxes to only open from the recycle bin. It's just a neater thing.
Then download RootKitRevealer from http://www.sysinternals.com/Utilitie...tRevealer.html [the link is at the bottom of the page] and place in a folder next to CCleaner. **Read that webpage**.
Go here and get SpyBot S & D, http://www.safer-networking.org/en/index.html , install it, but not tea timer. Update it.
Get AVG AntiSpyware 7.5 from here: http://www.grisoft.com/doc/1
Install it.. you should intend keeping this.... open it and update it via the screen.
Get Adaware SE Personal from http://www.lavasoft.de/software/adaware/
- install it. Update it.
When it finishes updating files go get this free beta [blbeta.exe] from http://www.f-secure.com/blacklight/ and install it also.
Before the next step memorise these instructions... or copy em to notepad. Or just use Opera...
Ok, you're done with the net. Shut it down. Disconnect...
Check that a Restore point has been made [one should have just been made automatically because you just installed software...]. The path to this is via Start > all programs > accessories > system tools> system restore. The reason for doing this is that some trojans write themselves into the System Restore files, and in there they are totally safe from anything.
Now rclick your recycle bin and run CCleaner. [or go to its folder and dclick ccleaner.exe] You will lose a lot of handy stuff like histories etc... but there is a job to do...
Run RKR from its folder by dclicking the .exe. Make sure it is the only window open, and don't let even a mouse move!
Now go into safe mode [Restart, F8 and select Safe Mode and Enter.... You'll get a dark desktop with icons etc...]
Note: Close all open windows, and DO NOT USE the computer while these scans are running. If Explorer or other programs are open during the scan that means certain files will also be in use. Some malware will insert itself and hide in areas that are "protected" by Windows when the files are being used. This can hamper AVG's ability to clean properly and may result in reinfection.
- Run Blbeta.exe.
- Start AVG Antispyware, do the complete system scan. Click "Apply all actions" to place any infected files into Quarantine, and only then click on "Save Report" to view all completed scans; click on the scan you just performed and select "Save report."
- Do a full Adaware scan and remove all the problems it finds.
- Run SpyBot S D. Create the registry backup, then check for problems. Select and fix problems.
- Finally run HT, check for fixing these items if they exist, and fix them [fixing the first one is up to you...]:-
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/cust.../www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O21 - SSODL: Objexapi - {0371B892-E144-4AB6-B630-A240F4C83D74} - C:\WINDOWS\system32\ipvitcrt.dll
Search fo the above .dll and delete it.
Okay, reboot into normal Windows, and rerun HT.
- Go here and run this scan online:- http://www.pandasoftware.com/products/activescan?
Is everything working okay? Then open AVG AS, > infections> quarantine, select the baddies and Remove Finally.
Post the new HT log, plus any other logs from scans that find things [but not Adaware's cookie list..]
I just read your earlier post..... so do these things before you do what i wrote in my first post.
Time to get some free stuff....
First off I would like you to download CCleaner from http://www.ccleaner.com/ and put it in a new folder. You should aim to keep this one for general use. I set it from the install checkboxes to only open from the recycle bin. It's just a neater thing.
Then download RootKitRevealer from http://www.sysinternals.com/Utilitie...tRevealer.html [the link is at the bottom of the page] and place in a folder next to CCleaner. **Read that webpage**.
Go here and get SpyBot S & D, http://www.safer-networking.org/en/index.html , install it, but not tea timer. Update it.
Get AVG AntiSpyware 7.5 from here: http://www.grisoft.com/doc/1
Install it.. you should intend keeping this.... open it and update it via the screen.
Get Adaware SE Personal from http://www.lavasoft.de/software/adaware/
- install it. Update it.
When it finishes updating files go get this free beta [blbeta.exe] from http://www.f-secure.com/blacklight/ and install it also.
Before the next step memorise these instructions... or copy em to notepad. Or just use Opera...
Ok, you're done with the net. Shut it down. Disconnect...
Check that a Restore point has been made [one should have just been made automatically because you just installed software...]. The path to this is via Start > all programs > accessories > system tools> system restore. The reason for doing this is that some trojans write themselves into the System Restore files, and in there they are totally safe from anything.
Now rclick your recycle bin and run CCleaner. [or go to its folder and dclick ccleaner.exe] You will lose a lot of handy stuff like histories etc... but there is a job to do...
Run RKR from its folder by dclicking the .exe. Make sure it is the only window open, and don't let even a mouse move!
Now go into safe mode [Restart, F8 and select Safe Mode and Enter.... You'll get a dark desktop with icons etc...]
Note: Close all open windows, and DO NOT USE the computer while these scans are running. If Explorer or other programs are open during the scan that means certain files will also be in use. Some malware will insert itself and hide in areas that are "protected" by Windows when the files are being used. This can hamper AVG's ability to clean properly and may result in reinfection.
- Run Blbeta.exe.
- Start AVG Antispyware, do the complete system scan. Click "Apply all actions" to place any infected files into Quarantine, and only then click on "Save Report" to view all completed scans; click on the scan you just performed and select "Save report."
- Do a full Adaware scan and remove all the problems it finds.
- Run SpyBot S D. Create the registry backup, then check for problems. Select and fix problems.
- Finally run HT, check for fixing these items if they exist, and fix them [fixing the first one is up to you...]:-
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/cust.../www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O21 - SSODL: Objexapi - {0371B892-E144-4AB6-B630-A240F4C83D74} - C:\WINDOWS\system32\ipvitcrt.dll
Search fo the above .dll and delete it.
Okay, reboot into normal Windows, and rerun HT.
- Go here and run this scan online:- http://www.pandasoftware.com/products/activescan?
Is everything working okay? Then open AVG AS, > infections> quarantine, select the baddies and Remove Finally.
Post the new HT log, plus any other logs from scans that find things [but not Adaware's cookie list..]

I just read your earlier post..... so do these things before you do what i wrote in my first post.
Time to get some free stuff....
First off I would like you to download CCleaner from http://www.ccleaner.com/ and put it in a new folder. You should aim to keep this one for general use. I set it from the install checkboxes to only open from the recycle bin. It's just a neater thing.
Then download RootKitRevealer from http://www.sysinternals.com/Utilitie...tRevealer.html [the link is at the bottom of the page] and place in a folder next to CCleaner. **Read that webpage**.
Go here and get SpyBot S & D, http://www.safer-networking.org/en/index.html , install it, but not tea timer. Update it.
Get AVG AntiSpyware 7.5 from here: http://www.grisoft.com/doc/1
Install it.. you should intend keeping this.... open it and update it via the screen.
Get Adaware SE Personal from http://www.lavasoft.de/software/adaware/
- install it. Update it.
When it finishes updating files go get this free beta [blbeta.exe] from http://www.f-secure.com/blacklight/ and install it also.
Before the next step memorise these instructions... or copy em to notepad. Or just use Opera...
Ok, you're done with the net. Shut it down. Disconnect...
Check that a Restore point has been made [one should have just been made automatically because you just installed software...]. The path to this is via Start > all programs > accessories > system tools> system restore. The reason for doing this is that some trojans write themselves into the System Restore files, and in there they are totally safe from anything.
Now rclick your recycle bin and run CCleaner. [or go to its folder and dclick ccleaner.exe] You will lose a lot of handy stuff like histories etc... but there is a job to do...
Run RKR from its folder by dclicking the .exe. Make sure it is the only window open, and don't let even a mouse move!
Now go into safe mode [Restart, F8 and select Safe Mode and Enter.... You'll get a dark desktop with icons etc...]
Note: Close all open windows, and DO NOT USE the computer while these scans are running. If Explorer or other programs are open during the scan that means certain files will also be in use. Some malware will insert itself and hide in areas that are "protected" by Windows when the files are being used. This can hamper AVG's ability to clean properly and may result in reinfection.
- Run Blbeta.exe.
- Start AVG Antispyware, do the complete system scan. Click "Apply all actions" to place any infected files into Quarantine, and only then click on "Save Report" to view all completed scans; click on the scan you just performed and select "Save report."
- Do a full Adaware scan and remove all the problems it finds.
- Run SpyBot S D. Create the registry backup, then check for problems. Select and fix problems.
- Finally run HT, check for fixing these items if they exist, and fix them [fixing the first one is up to you...]:-
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/cust.../www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O21 - SSODL: Objexapi - {0371B892-E144-4AB6-B630-A240F4C83D74} - C:\WINDOWS\system32\ipvitcrt.dll
Search fo the above .dll and delete it.
Okay, reboot into normal Windows, and rerun HT.
- Go here and run this scan online:- http://www.pandasoftware.com/products/activescan?
Is everything working okay? Then open AVG AS, > infections> quarantine, select the baddies and Remove Finally.
Post the new HT log, plus any other logs from scans that find things [but not Adaware's cookie list..]
jeni, let's se if i can get this right...... [it'll be read by others!!] when you select safe mode n hit Enter, you will get a bar streaking across the bottom of that screen; then if it's a real cold start from a poweroff you will see a list of drivers n .dlls reel down the screen as they load, otherwise it's straight to a black screen with safe mode at all 4 corners and a one line desrciption of your system at top. Then comes the std blue logon screen populated with Administrator, and any users with admin privileges. You log in and the black screen returns with a window about restore or safe mode, and when you click yes you get your icons.... and from there you can do what i requested above...
So please.. am i to understand that you can run normal windows mode, but not safe mode??? If you can run in normal mode at least run HT and fix those 3 things i put in post #2 above.
In Safe mode the puter loads a bare minimum of drivers and dlls so that it can function - I cannot understand how it can make it to normal but not safe mode.....
| DaniWeb Message | |
| Cancel Changes | |