4,383 Posted Topics

Member Avatar for zdarova

You should print out these instructions, or copy them to a Notepad file for reading while in Safe Mode, because you will not be able to connect to the Internet to read from this site. Please reboot your computer in [b]Safe Mode[/b] by doing the following :[list] [*]Restart your computer …

Member Avatar for crunchie
0
94
Member Avatar for suhailenator

Please [u]download[/u] [b]ComboFix[/b] by sUBs from [url=http://download.bleepingcomputer.com/sUBs/ComboFix.exe][color=red][b]HERE[/b][/color][/url] or [url="http://subs.geekstogo.com/ComboFix.exe"][color=red][b]HERE[/b][/color][/url][list] [*] [color=blue][b]You must [u]download it to and run it from[/u] your Desktop[/b][/color] [*]Physically disconnect from the internet. [*] Now [b]STOP all your monitoring programs[/b] (Antivirus/Antispyware, Guards and Shields) as they could easily interfere with ComboFix. [*] Double click combofix.exe & follow …

Member Avatar for crunchie
0
196
Member Avatar for dukeassa

[b]Download [color=blue]HijackThis[/color] from [url=http://majorgeeks.com/download.php?det=5554][u]here.[/u][/url][/b] Download it to your desktop and NOT a temporary folder. == Please [u]download[/u] [b]ComboFix[/b] by sUBs from [url=http://download.bleepingcomputer.com/sUBs/ComboFix.exe][color=red][b]HERE[/b][/color][/url] or [url="http://subs.geekstogo.com/ComboFix.exe"][color=red][b]HERE[/b][/color][/url][list] [*] [color=blue][b]You must [u]download it to and run it from[/u] your Desktop[/b][/color] [*]Physically disconnect from the internet. [*] Now [b]STOP all your monitoring programs[/b] (Antivirus/Antispyware, Guards …

Member Avatar for crunchie
0
188
Member Avatar for HeidiGiller

Also, please [u]download[/u] [b]ComboFix[/b] by sUBs from [url=http://download.bleepingcomputer.com/sUBs/ComboFix.exe][color=red][b]HERE[/b][/color][/url] or [url="http://subs.geekstogo.com/ComboFix.exe"][color=red][b]HERE[/b][/color][/url][list] [*] [color=blue][b]You must [u]download it to and run it from[/u] your Desktop[/b][/color] [*]Physically disconnect from the internet. [*] Now [b]STOP all your monitoring programs[/b] (Antivirus/Antispyware, Guards and Shields) as they could easily interfere with ComboFix. [*] Double click combofix.exe & …

Member Avatar for crunchie
0
142
Member Avatar for wasting_death

Hi and welcome to the Daniweb forums :). You got more nasties than good guys there :). Please [u]download[/u] [b]ComboFix[/b] by sUBs from [url=http://download.bleepingcomputer.com/sUBs/ComboFix.exe][color=red][b]HERE[/b][/color][/url] or [url="http://subs.geekstogo.com//ComboFix.exe"][color=red][b]HERE[/b][/color][/url][list] [*] [b]Save it to your Desktop[/b] [*]Physically disconnect from the internet. [*] Now [b]STOP all your monitoring programs[/b] (Antivirus/Antispyware, Guards and Shields) [*] Click …

Member Avatar for crunchie
0
223
Member Avatar for lmike
Member Avatar for bugmenot
0
610
Member Avatar for WatermelonX

Ok guys. Can all those having problems please read the stickies at the head of the forum and then start their own thread. Will make it so much easier on everyone :). [b]This thread is now closed. If you need it reopened, please send a PM to one of our …

Member Avatar for crunchie
0
190
Member Avatar for Mahouteki
Member Avatar for crunchie
0
130
Member Avatar for Cutty Sark

Hi and welcome to the Daniweb forums :). [url=http://www.daniweb.com/forums/thread83821.html]Hijackthis new version. Please update.[/url] == Download [url=http://downloads.andymanchesta.com/RemovalTools/SDFix.zip][b][color=red]SDFix[/b][/color][/url] and save it to your desktop. Please then reboot your computer in [b]Safe Mode[/b] by doing the following :[list] [*]Restart your computer [*]After hearing your computer beep once during startup, but before the Windows …

Member Avatar for crunchie
0
158
Member Avatar for honda.sir

Hi and welcome to the Daniweb forums :). Please download FixWareout from this site: [url]http://www.bleepingcomputer.com/files/lonny/Fixwareout.exe[/url] Save it to your desktop and run it. Click Next, then Install, make sure "Run fixit" is checked and click Finish. The fix will begin; follow the prompts. You will be asked to reboot your …

Member Avatar for crunchie
0
93
Member Avatar for NTXPablo

Whilst Gerbil is offline, can you please do the following; [b]A.[/b] Please [b]RUN HijackThis[/b][list=1] [*] Click the [U][B]SCAN[/B][/U] button to produce a log. [*] [U]Place a check mark beside each one of the following items:[/U] [color=#9933cc][b] O2 - BHO: {47059018-7f25-7e68-a464-797a7d1802db} - {bd2081d7-a797-464a-86e7-52f781095074} - C:\WINDOWS\system32\ejtkbemq.dll (file missing) [/b][/color] [color=#9933cc][b] O2 - …

Member Avatar for NTXPablo
0
227
Member Avatar for po-e

First of all could you click Start>Settings>Control Panel>Add or Remove Programs and uninstall 'Window Search', 'Window Searching', 'Lop.com', 'LOP SEARCH', 'Browser Enhancer', or 'Ultimate Browser Enhancer' if listed. You may be given a code to insert, do so and reboot when done. If not listed there, run the [color=blue]Lop Remover[/color] …

Member Avatar for crunchie
0
119
Member Avatar for takamanaka

You should print out these instructions, or copy them to a Notepad file for reading while in Safe Mode, because you will not be able to connect to the Internet to read from this site. Please reboot your computer in [b]Safe Mode[/b] by doing the following :[list] [*]Restart your computer …

Member Avatar for crunchie
0
130
Member Avatar for Niteshay

Seeing how [b]overwhelmed[/b] seems to have abandoned you, can you let us know exactly what problems you are experiencing still. Download the [url=http://www.funkytoad.com/content/view/13/31/][color=blue]HostsXpert.[/color][/url] Run it and press "Restore Original Hosts" and press "OK". Exit Program. Note that if you have a custom host file, this will remove it. You can …

Member Avatar for crunchie
0
156
Member Avatar for truguate

Download [url=http://downloads.andymanchesta.com/RemovalTools/SDFix.zip][b][color=red]SDFix[/b][/color][/url] and save it to your desktop. Please then reboot your computer in [b]Safe Mode[/b] by doing the following :[list] [*]Restart your computer [*]After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually; [*]Instead of Windows loading as normal, a …

Member Avatar for crunchie
0
521
Member Avatar for cpeck

Hi. First of all you need to update hijackthis to version 1.98.2. Run hijackthis & go to *Config\Misc Tools\Check for update on-line*. If the site is down, go [url=http://www.computercops.biz/downloads-file-328.html][u]here.[/u][/url] Remove the old version by opening the program, going to config\misc tools, then uninstall & exit. You then have to delete …

Member Avatar for Deonsion
0
213
Member Avatar for jez5758

Please download [url=http://siri.urz.free.fr/Fix/SmitfraudFix.zip][b][color=red]SmitfraudFix[/color][/b][/url] (by [b]S!Ri[/b]) Extract the content (a folder named [b]SmitfraudFix[/b]) to your Desktop. Open the [b]SmitfraudFix[/b] folder and double-click [b]smitfraudfix.cmd[/b] Select option #1 - [b]Search[/b] by typing [b]1[/b] and press "[b]Enter[/b]"; a text file will appear, which lists infected files (if present). Please copy/paste the content of that …

Member Avatar for crunchie
0
124
Member Avatar for roxasandsora

Hi and welcome to Daniweb forums :). Right click on hijackthis.exe and rename it to analysethis, do another scan and post the fresh log please.

Member Avatar for Michael_Knight
0
180
Member Avatar for mrZ

Download [url=http://downloads.andymanchesta.com/RemovalTools/SDFix.zip][b][color=red]SDFix[/b][/color][/url] and save it to your desktop. Please then reboot your computer in [b]Safe Mode[/b] by doing the following :[list] [*]Restart your computer [*]After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually; [*]Instead of Windows loading as normal, a …

Member Avatar for crunchie
0
175
Member Avatar for WVWRZ500N

Hi and welcome to Daniweb forums :). [url=http://www.daniweb.com/forums/thread83821.html]Hijackthis new version.[/url] == Scan with [b]HijackThis[/b] and then place a check next to all the following, if present: [color=#9933cc][b] R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = [/b][/color] [color=#9933cc][b] R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = [/b][/color] [color=#9933cc][b] O2 - BHO: Adssite Search Assistant - …

Member Avatar for jbennet
0
421
Member Avatar for mayank24
Member Avatar for russjass

Hi and welcome to Daniweb forums :). Can you disable Windows Defender as it may interfere with the removal process. Please leave it disabled until your PC has been given the all clear. - Open Windows Defender - Click Tools - Click General Settings - Scroll down to Real Time …

Member Avatar for crunchie
0
115
Member Avatar for MDX

Hi and welcome to Daniweb forums :). Scan with [b]HijackThis[/b] and then place a check next to all the following, if present: [color=#9933cc][b] R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [url]http://www.dell4me.com/myway[/url] [/b][/color] [color=#9933cc][b] R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [url]http://www.dell4me.com/myway[/url] [/b][/color] [color=#9933cc][b] R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) …

Member Avatar for crunchie
0
171
Member Avatar for capt Gary

Hi and welcome to Daniweb forums :). [url=http://www.daniweb.com/forums/thread83821.html]Hijackthis new version[/url] == Please [u]download[/u] [b]ComboFix[/b] by sUBs from [url=http://download.bleepingcomputer.com/sUBs/ComboFix.exe][color=red][b]HERE[/b][/color][/url] or [url="http://subs.geekstogo.com/ComboFix.exe"][color=red][b]HERE[/b][/color][/url][list] [*] [color=blue][b]You must [u]download it to and run it from[/u] your Desktop[/b][/color] [*]Physically disconnect from the internet. [*] Now [b]STOP all your monitoring programs[/b] (Antivirus/Antispyware, Guards and Shields) as they …

Member Avatar for crunchie
0
194
Member Avatar for andrewcc

Hi and welcome to Daniweb forums :). Please right click on hijackthis.exe and rename it to analysethis before posting another log. Please download [url=http://www.atribune.org/ccount/click.php?id=4][color=blue]VundoFix.exe[/color][/url] to your desktop.[list] [*] Double-click [b]VundoFix.exe[/b] to run it. [*]Click the [b]Scan for Vundo[/b] button. [*] Once it's done scanning, click the [b]Remove Vundo[/b] button. [*] …

Member Avatar for crunchie
0
136
Member Avatar for Universaltech20

I suggest that before deleting [b]any[/b] legitimate 023 entry with (file missing) after it, that you confirm that the actual program/service does not exist. You should delete the actual file too here; C:\WINDOWS\system32\ebkp.dll

Member Avatar for gerbil
0
243
Member Avatar for rcaspi

Hi and welcome to Daniweb forums :). Please download [url=http://www.atribune.org/ccount/click.php?id=4][color=blue]VundoFix.exe[/color][/url] to your desktop.[list] [*] Double-click [b]VundoFix.exe[/b] to run it. [*]Click the [b]Scan for Vundo[/b] button. [*] Once it's done scanning, click the [b]Remove Vundo[/b] button. [*] You will receive a prompt asking if you want to remove the files, click …

Member Avatar for crunchie
0
144
Member Avatar for faithymuti

Sorry. If the Administrator has deliberately set those protocols then we cannot help you circumvent them. Ask the Administrator for rights to use those features. I am sure if it is urgent and work related, there will be no problem.

Member Avatar for crunchie
0
134
Member Avatar for Warrior[PU]

This one too; R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) Make sure that Internet Explorer is closed (all instances) before hitting the 'fix' button or it will not work.

Member Avatar for Warrior[PU]
0
95
Member Avatar for raven3961

[b]This thread is now closed. If you need it reopened, please send a PM to one of our Mods.[/b] [color=purple][b]Include the link to the thread and detail why you need it reopened. If this is not your thread please start a New Topic. [/b][/color]

Member Avatar for crunchie
0
388
Member Avatar for dustin21

You have two antivirus programs running. Two = bad. They will conflict with each other and cause you problems. Get rid of one. == Can you please do the following. =============== Go to [b]Add/Remove programs[/b] and uninstall the following, if present: [b][color=#ff0000]Viewpoint Manager[/color][/b] [b][color=#ff0000]Viewpoint Toolbar[/color][/b] The above could appear anywhere …

Member Avatar for overwhelmed
0
230
Member Avatar for MPRadamacue

Hi and welcome to Daniweb forums :). Can you please do the following. =============== Can you disable [b]Windows Defender[/b] as it may interfere with the removal process. Please leave it disabled until your PC has been given the all clear. [LIST] [*]Open [b]Windows Defender[/b] [*]Click [b]Tools[/b] [*]Click [b]General Settings[/b] [*]Scroll …

Member Avatar for crunchie
0
152
Member Avatar for bakra

1. Please [b][u]open Notepad[/u][/b][list] [*] Click [b]Start[/b] , then [b]Run[/b] [*][b]Type notepad .exe[/b] in the Run Box.[/list] 2. Now [b]copy/paste[/b] the entire content of the codebox below into the Notepad window: [Quote] KillAll:: RENV:: ----a-w 847,872 2008-01-13 23:25:32 C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter3 .exe ----a-w 4,670,704 2008-01-13 16:39:02 C:\Program Files\Yahoo!\Messenger\YahooMessenger .exe …

Member Avatar for crunchie
0
226
Member Avatar for Malwarehunter94

You need to do the second part of smitfraud fix first. You should print out these instructions, or copy them to a Notepad file for reading while in Safe Mode, because you will not be able to connect to the Internet to read from this site. Please reboot your computer …

Member Avatar for crunchie
0
342
Member Avatar for ANNOYEDCOM

Hi and welcome to Daniweb forums :). Please [u]download[/u] [b]ComboFix[/b] by sUBs from [url=http://download.bleepingcomputer.com/sUBs/ComboFix.exe][color=red][b]HERE[/b][/color][/url] or [url="http://subs.geekstogo.com//ComboFix.exe"][color=red][b]HERE[/b][/color][/url][list] [*] [b]Save it to your Desktop[/b] [*]Physically disconnect from the internet. [*] Now [b]STOP all your monitoring programs[/b] (Antivirus/Antispyware, Guards and Shields) [*] Click on your [b]START[/b] button and choose [b]Run[/b]. Then [b]copy/paste[/b] the …

Member Avatar for crunchie
0
239
Member Avatar for burnsy

Running the Beta version is unacceptable. There is a sticky thread at the top of this forum with a link to the latest version. Please use it :). Before you save the log after running hijackthis, in Notepad, go to the **Format** Tab and make sure WordWrap is unchecked, then …

Member Avatar for crunchie
0
111
Member Avatar for kilegoty
Member Avatar for educaba

Hi and welcome to Daniweb forums :) [url=http://www.daniweb.com/forums/thread83821.html]Hijackthis new version[/url] == Please go to [url=http://virusscan.jotti.org/][u]Jotti's[/u][/url] or to [url=http://www.virustotal.com/en/virustotalf.html][u]virustotal[/u][/url] and have this file scanned. Post the results back here. C:\WINDOWS\system32\jungbpvc.exe

Member Avatar for crunchie
0
211
Member Avatar for Steph102

Please [u]download[/u] [b]ComboFix[/b] by sUBs from [url=http://download.bleepingcomputer.com/sUBs/ComboFix.exe][color=red][b]HERE[/b][/color][/url] or [url="http://subs.geekstogo.com//ComboFix.exe"][color=red][b]HERE[/b][/color][/url][list] [*] [b]Save it to your Desktop[/b] [*]Physically disconnect from the internet. [*] Now [b]STOP all your monitoring programs[/b] (Antivirus/Antispyware, Guards and Shields) [*] Click on your [b]START[/b] button and choose [b]Run[/b]. Then [b]copy/paste[/b] the entire content of the following quotebox (Including …

Member Avatar for crunchie
0
235
Member Avatar for piocho

Hi and welcome to Daniweb forums :) [url=http://www.daniweb.com/forums/thread83821.html]Hijackthis new version[/url]

Member Avatar for crunchie
0
216
Member Avatar for Comodore

Download [url=http://downloads.andymanchesta.com/RemovalTools/SDFix.zip][b][color=red]SDFix[/b][/color][/url] and save it to your desktop. Please then reboot your computer in [b]Safe Mode[/b] by doing the following :[list] [*]Restart your computer [*]After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually; [*]Instead of Windows loading as normal, a …

Member Avatar for Comodore
0
178
Member Avatar for xdankxp

Hi and welcome to Daniweb forums :). Please update hijackthis to version 2.0.2. When you save the log from the scans, make sure to uncheck wordwrap in notepad. == Please download [url=http://siri.urz.free.fr/Fix/SmitfraudFix.zip][b][color=red]SmitfraudFix[/color][/b][/url] (by [b]S!Ri[/b]) Extract the content (a folder named [b]SmitfraudFix[/b]) to your Desktop. Open the [b]SmitfraudFix[/b] folder and double-click …

Member Avatar for crunchie
0
118
Member Avatar for jkatash

Info on sweetIM; [url]http://www.bleepingcomputer.com/startups/SweetIM.exe-14631.html[/url] == Please download [url=http://siri.urz.free.fr/Fix/SmitfraudFix.zip][b][color=red]SmitfraudFix[/color][/b][/url] (by [b]S!Ri[/b]) Extract the content (a folder named [b]SmitfraudFix[/b]) to your Desktop. Open the [b]SmitfraudFix[/b] folder and double-click [b]smitfraudfix.cmd[/b] Select option #1 - [b]Search[/b] by typing [b]1[/b] and press "[b]Enter[/b]"; a text file will appear, which lists infected files (if present). Please …

Member Avatar for crunchie
0
164
Member Avatar for millerd435

Update hijackthis to version 2.0.2 and do NOT run it from the zip folder as you are currently doing,but unzip it to a permanent folder and run it from there.

Member Avatar for overwhelmed
0
138
Member Avatar for taylorjt4

Please download FixWareout from this site: [url]http://www.bleepingcomputer.com/files/lonny/Fixwareout.exe[/url] Save it to your desktop and run it. Click Next, then Install, make sure "Run fixit" is checked and click Finish. The fix will begin; follow the prompts. You will be asked to reboot your computer; please do so. Your system may take …

Member Avatar for crunchie
0
172
Member Avatar for SillyBilly

Download [url=http://downloads.andymanchesta.com/RemovalTools/SDFix.zip][b][color=red]SDFix[/b][/color][/url] and save it to your desktop. Please then reboot your computer in [b]Safe Mode[/b] by doing the following :[list] [*]Restart your computer [*]After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually; [*]Instead of Windows loading as normal, a …

Member Avatar for crunchie
0
144
Member Avatar for karinc

Download and run Winsockfix from here [url]http://www.softpedia.com/get/Tweak/Network-Tweak/WinSockFix.shtml[/url] == [b]Download [color=blue]HijackThis[/color] from [url=http://majorgeeks.com/download.php?det=5554][u]here.[/u][/url][/b] Download it to your desktop and NOT a temporary folder. Start HJT & press the "Do a system scan and save a log file" button. When the scan is finished a window will pop up giving you the …

Member Avatar for crunchie
0
211
Member Avatar for azriel

Leave the 010's alone or you will probably break your internet connection. Can you please do the following. =============== You will have to disable [b]Spybot's Teatimer[/b] before we begin, as it will interfere with the fix. To do this can you start Spybot and go to the [b]Mode[/b] button and …

Member Avatar for crunchie
0
100
Member Avatar for stephaniie

Hi and welcome to Daniweb forums :). Please download [url=http://siri.urz.free.fr/Fix/SmitfraudFix.zip][b][color=red]SmitfraudFix[/color][/b][/url] (by [b]S!Ri[/b]) Extract the content (a folder named [b]SmitfraudFix[/b]) to your Desktop. Open the [b]SmitfraudFix[/b] folder and double-click [b]smitfraudfix.cmd[/b] Select option #1 - [b]Search[/b] by typing [b]1[/b] and press "[b]Enter[/b]"; a text file will appear, which lists infected files (if …

Member Avatar for crunchie
0
110
Member Avatar for sarlota123

Personally I would choose Avast over AVG AntiVirus, but that is just my personal preference. They both do a reasonable job, but you do need to uninstall one of them.

Member Avatar for crunchie
0
89

The End.