ARRGHHH Al this stuff is all good IF you can get it to work. Is there anything for the uneducated?

Dani AI

Generated

Short, plain-language cleanup plan that complements without repeating exact steps already posted.

Start with a safe sequence: make a current backup of personal files (copy Documents, Desktop, Favorites to an external drive or cloud) and, if possible, create a system image or restore point. Temporarily disconnect the PC from the Internet to avoid further downloads or remote changes while cleaning. Use a reputable anti‑malware scanner that targets adware (run a full scan, let the tool quarantine/remove items, then reboot and scan again). After the initial removal pass, check installed programs and browser extensions/toolbars and remove anything unknown or recently added; reset the browser to defaults if popups or redirects persist.

For startup persistence and hidden pieces, examine startup items with a safe utility (or msconfig on older Windows). Disable suspicious entries rather than deleting them outright so the system can be recovered if needed. Inspect the hosts file (for example: C:\Windows\System32\drivers\etc\hosts) for unexpected redirects and review scheduled tasks for odd entries. Avoid deleting files or registry keys unless their purpose is certain; when making registry or file changes, export a backup first.

Post‑cleanup tasks: fully update the OS and antivirus/anti‑malware definitions, run another full scan, and change passwords for any accounts used while the PC was infected. If problems persist or the system is unstable, consider restoring from the image/restore point created earlier or doing a clean OS install.

When requesting diagnostic help on a forum, include the operating system/version, name of installed security software, and saved diagnostic logs (for example a HijackThis log). These details let experienced helpers (like ) give precise, safe removal steps without guessing.

Recommended Answers

All 2 Replies

As a starting point, I suggest you get the self-extracting version of HijackThis from here (in line 2):
http://www.malwareremoval.com/downloads.html

Close any open browser windows, click 'Scan and Save Log' with hijackthis; when it's finished scanning, a notepad will pop up with the log, copy the log and paste it into this thread.

In addition to the uninstall program you used (per this thread: http://www.daniweb.com/techtalkforums/post114885.html#post114885), I think it would be a good idea to make sure you have gotten rid of it completely:

Boot into Safe Mode and do a search for these files (be sure your system is set to show 'Hidden files and folders'):

param32.dll
guninst.exe
popup_bl.dll
systr.dll
svrhost.exe

Delete those files (if found), reboot normally, and delete any HotOffer icons from your desktop.

Empty your Recycle Bin.

You can still post a hijackthis log too if you would like to make sure you don't have anything else lurking that shouldn't be :)

Be a part of the DaniWeb community

We're a friendly, industry-focused community of developers, IT pros, digital marketers, and technology enthusiasts meeting, networking, learning, and sharing knowledge.