4,383 Posted Topics

Member Avatar for lia

Hi A8888. First of all- welcome to Daniweb :). We ask that members not piggy-back questions on to a thread previously started by another member here in the Viruses, Spyware & other Nasties forum, (regardless of how similar your problem might seem). Not only does it divert the focus of …

Member Avatar for crunchie
0
203
Member Avatar for maria8583

Can you please do the following. =============== Open a [b]command prompt[/b] by: 1. Clicking "[b]Start[/b]", then "[b]Run...[/b]". 2. Enter "[b]cmd[/b]" ([i]without the quotes[/i]). 3. Enter "[b]services.msc[/b]" ([i]without the quotes[/i]). - Now, locate and '[b][i]stop[/i][/b]' the following services, if present: [b][color=#ff0000]Software Secure Service (SSISvr32) - SoftwareSecure Inc[/color][/b] ... ([b][i]C:\WINDOWS\system32\ssisvr32.exe[/i][/b]) Look carefully, …

Member Avatar for maria8583
0
65
Member Avatar for Bubles

All you guys whose posts I have just deleted take note please!! We ask that members not piggy-back questions on to a thread previously started by another member here in the Viruses, Spyware & other Nasties forum, (regardless of how similar your problem might seem). Not only does it divert …

Member Avatar for crunchie
0
527
Member Avatar for Conscio7563

Your log still is improperly formatted. Take a look here and post yours the same please; [url]http://www.daniweb.com/techtalkforums/post292758-1.html[/url] In notepad hit the format button on the toolbar and place a tick next to word wrap. EDIT. You should also get rid of that version of hijackthis as it is a beta …

Member Avatar for gerbil
0
185
Member Avatar for shorty_d09

Please download FixWareout from one of these sites: [url]http://downloads.subratam.org/Fixwareout.exe[/url] [url]http://swandog46.geekstogo.com/Fixwareout.exe[/url] Save it to your desktop and run it. Click Next, then Install, make sure "Run fixit" is checked and click Finish. The fix will begin; follow the prompts. You will be asked to reboot your computer; please do so. Your …

Member Avatar for crunchie
0
286
Member Avatar for S7evin

Can you please do the following. =============== Go to [b]Add/Remove programs[/b] and uninstall the following, if present: [b][color=#ff0000]Marketscore[/color][/b] The above could appear anywhere within the entry. Be careful not to remove any [i]personal[/i] or [i]system[/i] software. =============== Run [b]HiJackThis[/b] then: 1. Click "[b][i]Open the Misc Tools Section[/i][/b]" 2. Click "[b][i]Open …

Member Avatar for crunchie
0
77
Member Avatar for Roger T

Please download FixWareout from one of these sites: [url]http://downloads.subratam.org/Fixwareout.exe[/url] [url]http://swandog46.geekstogo.com/Fixwareout.exe[/url] Save it to your desktop and run it. Click Next, then Install, make sure "Run fixit" is checked and click Finish. The fix will begin; follow the prompts. You will be asked to reboot your computer; please do so. Your …

Member Avatar for crunchie
0
109
Member Avatar for savaged

Please download FixWareout from one of these sites: [url]http://downloads.subratam.org/Fixwareout.exe[/url] [url]http://swandog46.geekstogo.com/Fixwareout.exe[/url] Save it to your desktop and run it. Click Next, then Install, make sure "Run fixit" is checked and click Finish. The fix will begin; follow the prompts. You will be asked to reboot your computer; please do so. Your …

Member Avatar for crunchie
0
252
Member Avatar for klaura

Can you please do the following. =============== Remove(uninstall) the 'lop' infection by going to [url=http://66.220.17.157/help.html]here[/url], then downloading and running the uninstaller(s) that relate to the application(s) your wanting to remove. The following selections are available: "[b][color=#ff0000]Start page[/color][/b]", "[b][color=#ff0000]Search engine[/color][/b]", "[b][color=#ff0000]Accessories Toolbar[/color][/b]". =============== Scan with [b]HijackThis[/b] and then place a check …

Member Avatar for crunchie
0
84
Member Avatar for Jefi

Can you please do the following. =============== You will have to disable [b]Spybot's Teatimer[/b] before we begin, as it will interfere with the fix. To do this can you start Spybot and go to the [b]Mode[/b] button and select [b]Advanced.[/b] Go to [b]Tools > Resident[/b] and uncheck the box next …

Member Avatar for crunchie
0
112
Member Avatar for geezer

Still got a nice, clean log there :). Try defragmenting the drive(s) and also the following; Download [url=http://www.ccleaner.com/ccdownload.asp]CCleaner[/url] and install, then run it. [list=1] [*][b]Uncheck[/b] "Cookies" under "Internet Explorer". [*]Click on [b]Run Cleaner[/b] in the lower right-hand corner. This can take quite a while to run. [*]Close when finished. [/list]

Member Avatar for geezer
0
144
Member Avatar for jud1204

Hi and welcome to Daniweb forums :). [b]Please go [url=http://www.pchell.com/support/wintools.shtml][u]here[/u][/url] for Wintools removal instructions.[/b] == [b]Viewpoint Manager[/b] is considered to be foistware, rather than malware, since it is installed without users approval, but doesn't spy or do anything "bad". Please read this article: [url]http://www.clickz.com/news/article.php/3561546[/url] I suggest that you remove the …

Member Avatar for crunchie
0
171
Member Avatar for Metalbolic

Please download and install [url=http://www.ewido.net/en/product/][b][color=blue]AVG antispyware tool[/color][/b][color=blue][/color][/url][list][*][color=red]Close all other Applications[/color] Select language click [b]Ok[/b][*]Click [b]I Agree [/b][*]Click[b] next[/b][*]Click [b]Install[/b][*]Click[b] Finish[/b][*]Wait and AVG antispyware will open to the main screen automatically.[*]Wait again a few minutes and AVG antispyware Should Auto update itself. If it doesn't click [b]update[/b] at top of screen.[*][b][color=red]This …

Member Avatar for crunchie
0
161
Member Avatar for jthomps3

Hi 04ImprezaWRX. First of all- welcome to Daniweb :). We ask that members not piggy-back questions on to a thread previously started by another member here in the Viruses, Spyware & other Nasties forum, (regardless of how similar your problem might seem). Not only does it divert the focus of …

Member Avatar for crunchie
0
155
Member Avatar for dannyhuangster

Please go to [url=http://virusscan.jotti.org/][u]Jotti's[/u][/url] or to [url=http://www.virustotal.com/en/virustotalf.html][u]virustotal[/u][/url] and have this file scanned. Post the results back here. d:\hack\ultra edition\update.scr\dll\nvidia.exe

Member Avatar for crunchie
0
111
Member Avatar for MiDude

Please go to [url=http://virusscan.jotti.org/][u]Jotti's[/u][/url] or to [url=http://www.virustotal.com/en/virustotalf.html][u]virustotal[/u][/url] and have this file scanned. Post the results back here. C:\WINDOWS\system32\msdtc_32.exe =========== Can you also right click on hijackthis and change the name to analyse and post a new log.

Member Avatar for crunchie
0
111
Member Avatar for cyrusmsa

Please download [url=http://siri.urz.free.fr/Fix/SmitfraudFix.zip][b][color=red]SmitfraudFix[/color][/b][/url] (by [b]S!Ri[/b]) Extract the content (a folder named [b]SmitfraudFix[/b]) to your Desktop. Open the [b]SmitfraudFix[/b] folder and double-click [b]smitfraudfix.cmd[/b] Select option #1 - [b]Search[/b] by typing [b]1[/b] and press "[b]Enter[/b]"; a text file will appear, which lists infected files (if present). Please copy/paste the content of that …

Member Avatar for cyrusmsa
0
93
Member Avatar for Topgun1969

Download [url=http://downloads.andymanchesta.com/RemovalTools/SDFix.zip][b][color=red]SDFix[/b][/color][/url] and save it to your desktop. Please then reboot your computer in [b]Safe Mode[/b] by doing the following :[list] [*]Restart your computer [*]After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually; [*]Instead of Windows loading as normal, a …

Member Avatar for crunchie
0
153
Member Avatar for duka
Member Avatar for zRunner

Please download Qoofix by RubbeR DuckY from [url]http://www.malwarebytes.org/Qoofix.zip[/url] [list=1] [*]Unzip all files to a convenient location such as C:\Qoofix. [*]Go to the folder you unzipped all files and run Qoofix.exe. [*]Click [b]Begin Removal[/b] and wait for the scan to finish. [*]If an infection has been found, select [b]yes[/b] to restart …

Member Avatar for crunchie
0
302
Member Avatar for >shadow<

Maybe you should have finished off what you started in this thread: [url]http://www.daniweb.com/techtalkforums/thread71776.html[/url] This thread is now closed.

Member Avatar for crunchie
0
50
Member Avatar for Karensue

I will list also the ones that TT4Titans listed for removal. Any 04 entry that is 'fixed' must also have it's file/folder manually deleted by you too. Can you please do the following. =============== The header for [b]HiJackThis[/b] is very important: It helps to determine what steps might need to …

Member Avatar for crunchie
0
158
Member Avatar for Rockman

Please post the logs that PhilliePhan has asked for. It is an important step in your cleanup. In my opinion Symantec should pay it's [i]customers[/i] to install Norton on their machines :(.

Member Avatar for PhilliePhan
0
142
Member Avatar for Syntax_Error

Please download [url=http://siri.urz.free.fr/Fix/SmitfraudFix.zip][b][color=red]SmitfraudFix[/color][/b][/url] (by [b]S!Ri[/b]) Extract the content (a folder named [b]SmitfraudFix[/b]) to your Desktop. Open the [b]SmitfraudFix[/b] folder and double-click [b]smitfraudfix.cmd[/b] Select option #1 - [b]Search[/b] by typing [b]1[/b] and press "[b]Enter[/b]"; a text file will appear, which lists infected files (if present). Please copy/paste the content of that …

Member Avatar for crunchie
0
142
Member Avatar for Element150

Download the [url=http://www.funkytoad.com/download/hoster.zip][color=blue]Hoster.[/color][/url] Run it and press "Restore Original Hosts" and press "OK". Exit Program. Note that if you have a custom host file, this will remove it. ==== Can you please do the following. =============== Can you disable [b]Windows Defender[/b] as it may interfere with the removal process. Please …

Member Avatar for crunchie
0
124
Member Avatar for Corporal

Please download [url=http://siri.urz.free.fr/Fix/SmitfraudFix.zip][b][color=red]SmitfraudFix[/color][/b][/url] (by [b]S!Ri[/b]) Extract the content (a folder named [b]SmitfraudFix[/b]) to your Desktop. Open the [b]SmitfraudFix[/b] folder and double-click [b]smitfraudfix.cmd[/b] Select option #1 - [b]Search[/b] by typing [b]1[/b] and press "[b]Enter[/b]"; a text file will appear, which lists infected files (if present). Please copy/paste the content of that …

Member Avatar for crunchie
0
143
Member Avatar for stella_b

Hi and welcome to Daniweb forums :). Please go [url=http://windowsupdate.microsoft.com/][u]here[/u][/url] & install ALL critical updates required for your system, [b]including service pack 1a for XP.[/b] Most malware is designed to attack unpatched XP systems - exploiting the available 'holes' - and can bypass third-party protection on an unpatched system. The …

Member Avatar for crunchie
0
196
Member Avatar for crunchie

To all first time hijackthis log posters. Please bookmark this forum before or after posting your problem to ensure you are able to once again locate your thread. Please, if you intend to post, reply to any help given as it can be quite frustrating to spend a lot of …

0
281
Member Avatar for mstraxs

Go into device manager & see if any of the hardware has a question mark next to it. You might also want to try to uninstall the pci card, then reinstall it. Try to update the drivers on the net too.

Member Avatar for FatCamel
0
230
Member Avatar for classact66

Hi jsh. First of all- welcome to Daniweb :). We ask that members not piggy-back questions on to a thread previously started by another member here in the Viruses, Spyware & other Nasties forum, (regardless of how similar your problem might seem). Not only does it divert the focus of …

Member Avatar for crunchie
0
677
Member Avatar for >shadow<

Download [url=http://downloads.andymanchesta.com/RemovalTools/SDFix.zip][b][color=red]SDFix[/b][/color][/url] and save it to your desktop. Please then reboot your computer in [b]Safe Mode[/b] by doing the following :[list] [*]Restart your computer [*]After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually; [*]Instead of Windows loading as normal, a …

Member Avatar for crunchie
0
246
Member Avatar for dani 5150

Please download [url=http://siri.urz.free.fr/Fix/SmitfraudFix.zip][b][color=red]SmitfraudFix[/color][/b][/url] (by [b]S!Ri[/b]) Extract the content (a folder named [b]SmitfraudFix[/b]) to your Desktop. Open the [b]SmitfraudFix[/b] folder and double-click [b]smitfraudfix.cmd[/b] Select option #1 - [b]Search[/b] by typing [b]1[/b] and press "[b]Enter[/b]"; a text file will appear, which lists infected files (if present). Please copy/paste the content of that …

Member Avatar for crunchie
0
206
Member Avatar for pepsidriver24

pepsidriver24, Hi and welcome to the Daniweb forums :). =============== Before we begin, let's move [b]HiJackThis[/b] to it's own folder; like [b]c:\HJT[/b]. When we're done '[i]cleaning[/i]' off your system, we're going to '[i]flush[/i]' the temporary folders which, with [b]HiJackThis[/b] [color=#ff0000][i]in it's current location, we'll lose both the program and the …

Member Avatar for crunchie
0
154
Member Avatar for Dario I

Hi and welcome to Daniweb forums :). Please download FixWareout from one of these sites: [url]http://downloads.subratam.org/Fixwareout.exe[/url] [url]http://swandog46.geekstogo.com/Fixwareout.exe[/url] Save it to your desktop and run it. Click Next, then Install, make sure "Run fixit" is checked and click Finish. The fix will begin; follow the prompts. You will be asked to …

Member Avatar for crunchie
0
142
Member Avatar for tiredofcrap

Hi and welcome to Daniweb forums :). Please go [url=http://windowsupdate.microsoft.com/][u]here[/u][/url] & install ALL critical updates required for your system, [b]including service pack 1a for both XP and IE6.[/b] Most malware is designed to attack unpatched XP systems - exploiting the available 'holes' - and can bypass third-party protection on an …

Member Avatar for crunchie
0
146
Member Avatar for yaduks

Download the [url=http://www.funkytoad.com/download/hoster.zip][color=blue]Hoster.[/color][/url] Run it and press "Restore Original Hosts" and press "OK". Exit Program. Note that if you have a custom host file, this will remove it. You can edit the host file with this program too. == Scan with [b]HijackThis[/b] and then place a check next to all …

Member Avatar for crunchie
0
107
Member Avatar for Silenty
Member Avatar for culmor30

Hi and welcome to Daniweb forums :). Please download and install [url=http://www.ewido.net/en/product/][b][color=blue]AVG antispyware tool[/color][/b][color=blue][/color][/url][list][*][color=red]Close all other Applications[/color] Select language click [b]Ok[/b][*]Click [b]I Agree [/b][*]Click[b] next[/b][*]Click [b]Install[/b][*]Click[b] Finish[/b][*]Wait and AVG antispyware will open to the main screen automatically.[*]Wait again a few minutes and AVG antispyware Should Auto update itself. If it …

Member Avatar for crunchie
0
202
Member Avatar for ballcharmer
Member Avatar for micknevis

Please go to [url=http://virusscan.jotti.org/][u]Jotti's[/u][/url] or to [url=http://www.virustotal.com/en/virustotalf.html][u]virustotal[/u][/url] and have these filse scanned. Post the results back here. [b]bakupnt4.exe[/b] (you will have to locate it) C:\WINDOWS\system32\[b]algs.exe[/b] C:\WINDOWS\[b]mvsr32.exe[/b]

Member Avatar for crunchie
0
177
Member Avatar for GreenDay2001

What files did you delete? [b]Download [color=blue]HijackThis[/color] [b][color=red]self-extracting[/color][/b] zip version from [url=http://www.malwareremoval.com/downloads.html][u]here.[/u][/url][/b] Once downloaded, double click on the file & it will install into it's own, permanent folder. Start HJT & press the "Do a system scan and save a log file" button. When the scan is finished a window …

Member Avatar for GreenDay2001
0
130
Member Avatar for vejida

[b]Close all (browser) windows & rescan with hijackthis.[/b] When the scan is finished place a check in the box to the left of the following entries & click [color=red]'fix checked':[/color] O1 - Hosts: 12.129.205.209 search.netscape.com12.129.205.209 sitefinder.verisign.com That is the only bad thing I can see. Have you tried uninstalling, the …

Member Avatar for crunchie
0
290
Member Avatar for svax

Boot into safe mode. [b]Clear out your Temporary internet files and other temp files. Go to Start > Settings > Control Panel >Internet Options.[/b] Under the General tab click the Delete temporary internet files, delete all Offline content as well. Clear out Cookies. Also, go to [b]Start > Find/search > …

Member Avatar for crunchie
0
143
Member Avatar for kendon

Hi and welcome to Daniweb forums :). Download [url=http://downloads.andymanchesta.com/RemovalTools/SDFix.zip][b][color=red]SDFix[/b][/color][/url] and save it to your desktop. Please then reboot your computer in [b]Safe Mode[/b] by doing the following :[list] [*]Restart your computer [*]After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually; …

Member Avatar for crunchie
0
133
Member Avatar for ling1010

Download [url=http://downloads.andymanchesta.com/RemovalTools/SDFix.zip][b][color=red]SDFix[/b][/color][/url] and save it to your desktop. Please then reboot your computer in [b]Safe Mode[/b] by doing the following :[list] [*]Restart your computer [*]After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually; [*]Instead of Windows loading as normal, a …

Member Avatar for crunchie
0
258
Member Avatar for zackal

Please download [url=http://siri.urz.free.fr/Fix/SmitfraudFix.zip][b][color=red]SmitfraudFix[/color][/b][/url] (by [b]S!Ri[/b]) Extract the content (a folder named [b]SmitfraudFix[/b]) to your Desktop. Open the [b]SmitfraudFix[/b] folder and double-click [b]smitfraudfix.cmd[/b] Select option #1 - [b]Search[/b] by typing [b]1[/b] and press "[b]Enter[/b]"; a text file will appear, which lists infected files (if present). Please copy/paste the content of that …

Member Avatar for crunchie
0
202
Member Avatar for kcto88

Please go [url=http://windowsupdate.microsoft.com/][u]here[/u][/url] & install ALL critical updates required for your system, including [b]service pack 1a[/b] for both XP and IE6. Most malware is designed to attack unpatched XP systems - exploiting the available 'holes' - and can bypass third-party protection on an unpatched system. The most that can be …

Member Avatar for crunchie
0
118
Member Avatar for racecar22

Never use hijackthis to fix the 010 entries!! Always close every instance of Internet Explorer before 'fixing' with hijackthis!! Any 04 entry that is fixed must also have the related file deleted!! -- Please download [url=http://siri.urz.free.fr/Fix/SmitfraudFix.zip][b][color=red]SmitfraudFix[/color][/b][/url] (by [b]S!Ri[/b]) Extract the content (a folder named [b]SmitfraudFix[/b]) to your Desktop. Open the …

Member Avatar for crunchie
0
133
Member Avatar for graves

Let's see :). Please download [b][url=http://www.merijn.org/files/bfu.zip][color=red]Brute Force Uninstaller[/color][/url][/b] to your desktop. (rightclick on this link and choose save as, if using IE save target as)[list] [*]Right click the BFU folder on your desktop, and choose [b]Extract All[/b] [*]Click "Next" [*]In the box to choose where to extract the files to, …

Member Avatar for crunchie
0
119
Member Avatar for happyemu

Hi and welcome to Daniweb forums :). [b]First of all we have to remove Newdotnet,[/b] either from add/remove programs, or by going [url=http://www.newdotnet.com/removal.html][u]here[/u][/url] and scrolling down to the uninstall tool. ==== Please download [url=http://siri.urz.free.fr/Fix/SmitfraudFix.zip][b][color=red]SmitfraudFix[/color][/b][/url] (by [b]S!Ri[/b]) Extract the content (a folder named [b]SmitfraudFix[/b]) to your Desktop. Open the [b]SmitfraudFix[/b] folder …

Member Avatar for crunchie
0
95

The End.