4,383 Posted Topics

Member Avatar for sensoui

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries= R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search …

Member Avatar for Killer_Typo
0
645
Member Avatar for quinkky

Clean out your TIF's first then go to your Windows folder & delete the following: winupd.exe<<<< cmid32.dll<<<< No difference.

Member Avatar for mochastaat
0
147
Member Avatar for ocnative1964
Member Avatar for agavzy

Download dllfix from the following link. [url]http://tools.zerosrealm.com/dllfix.exe[/url] Create a folder on your desktop, doubleclick on the dllfix and install it into the folder you just created. 1.Run start.bat and press option 1. 'output.txt' will be created in the folder. Post the results of that log here.

Member Avatar for crunchie
0
242
Member Avatar for Master123

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R0 - HKCUSoftwareMicrosof tInternet ExplorerMain,Start Page = C:WINDOWSsecure.html R1 - HKCUSoftwareMicrosof tInternet ExplorerMain,Default _Page_URL = C:WINDOWSsecure.html R0 - HKLMSoftwareMicrosof …

Member Avatar for Yzk
0
210
Member Avatar for pmurthy

Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings under 'scanning,' have it set to 'scan within archives,' 'scan active processes,' 'scan registry,' 'deepscan registry' 'scan my IE Favourites for banned URL's,' 'scan my host's file.' In 'tweaks' under 'scanning engine' set it to 'unload recognised …

Member Avatar for crunchie
0
118
Member Avatar for rjlevin007

You should be able to go to Internet options\content\autocomplete & choose your preferences. If you have had gator on your comp there is a good chance there are leftovers. Please do the following. Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings under 'scanning,' have it …

Member Avatar for crunchie
0
120
Member Avatar for crazy_girl292

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O4 - HKCU\..\Run: [Blsa] C:\WINDOWS\Application Data\nsmt.exe O4 - HKCU\..\Run: [WNSA] C:\WINDOWS\SYSTEM\wnstssu.exe Reboot into safe mode following the instructions [url=http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001052409420406][u]here[/u][/url] …

Member Avatar for crunchie
0
96
Member Avatar for big68bear

Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings under 'scanning,' have it set to 'scan within archives,' 'scan active processes,' 'scan registry,' 'deepscan registry' 'scan my IE Favourites for banned URL's,' 'scan my host's file.' In 'tweaks' under 'scanning engine' set it to 'unload recognised …

Member Avatar for PiratePete
0
116
Member Avatar for ajelliott

You can just go here to access the domains directly too. [url]http://users.skynet.be/bk136527/CWS/CWSdomains.htm[/url]

Member Avatar for caperjack
0
354
Member Avatar for Jim Jones

Don't know if this will solve it or not, but needs to be removed N E way. Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O2 - …

Member Avatar for Jim Jones
0
131
Member Avatar for handyman_uk

1. Open an empty Notepad file. 2. Copy the following and paste it into the new Notepad file. REGEDIT4 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoBandCustomize"=- "NoToolbarCustomize"=- "Btn_Search"=- "SpecifyDefaultButtons"=- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoBandCustomize"=- "NoToolbarCustomize"=- "Btn_Search"=- "SpecifyDefaultButtons"=- 3. Save the file as 'isearchfix.reg' 4. Double click on this file and merge it into your registry. Your Toolbar Options …

Member Avatar for handyman_uk
0
144
Member Avatar for head_hunter
Member Avatar for antlyssie

try doing a defrag first. except for the following entries, there is nothing bad in your log.

Member Avatar for crunchie
0
217
Member Avatar for B19

Download CWShredder from [url=http://www.computercops.biz/zx/phoenix22/cws.zip][u]here[/u][/url] & run it. Select the fix button & it will get rid of everything related to CoolWebSearch that is stored in it's database. Close ALL windows, including IE, before running CWShredder. Reboot. To help prevent this from happening again, install the patches for the vulnerabilities that …

Member Avatar for crunchie
0
135
Member Avatar for computerclutz

Download CWShredder from [url=http://www.computercops.biz/zx/phoenix22/cws.zip][u]here[/u][/url] & run it. Select the fix button & it will get rid of everything related to CoolWebSearch that is stored in it's database. Close ALL windows, including IE, before running CWShredder. Reboot. To help prevent this from happening again, install the patches for the vulnerabilities that …

Member Avatar for crunchie
0
177
Member Avatar for pokok

[QUOTE=pokok]I cant find this bridgedll.exe in my notebook. I m using winxp home. I just dont know what's happening to my system. While I m using it, my cpu usage just went up to 100% and wont come down. All of the other software were slow coz of this 100%. …

Member Avatar for crunchie
0
454
Member Avatar for jay

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - Default URLSearchHook is missing O2 - …

Member Avatar for caperjack
0
170
Member Avatar for Killer_Typo

First of all we have to remove Newdotnet, either from add/remove programs, or by going [url=http://www.newdotnet.com/#remove][u]here.[/u][/url] & scrolling down to the uninstall tool. Download CWShredder from [url=http://www.computercops.biz/zx/phoenix22/cws.zip][u]here[/u][/url] & run it. Select the fix button & it will get rid of everything related to CoolWebSearch that is stored in it's database. …

Member Avatar for Killer_Typo
0
188
Member Avatar for Willy

Try clearing out your temp internet files first, then the other temp folders. C:\windows\temp & there is one in C:\Documents and Settings\Administrator\Local Settings\Temp If it is still there after that, Download HijackThis from [url=http://www.computercops.biz/downloads-file-328.html][u]here[/u][/url] & unzip it into it's own, permanent folder, [color=red](Not a temporary folder or the desktop & …

Member Avatar for crunchie
0
120
Member Avatar for F083153WM

Please print this out for yourself, you may need it. :) First of all we have to remove Newdotnet, either from add/remove programs, or by going [url=http://www.newdotnet.com/#remove][u]here.[/u][/url] & scrolling down to the uninstall tool. Uninstall the following from add/remove programs: webHancer Bargain Buddy P2P Networking Then, download RapidBlaster killer from …

Member Avatar for crunchie
0
616
Member Avatar for ashwin

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R0 - HKCU\Software\Micros oft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Micros oft\Internet Explorer\Main,Local Page = O1 - Hosts: 62.189.6.85 _sip._tls.sip5.phoneserve.com …

Member Avatar for ashwin
0
157
Member Avatar for frustrated

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R3 - URLSearchHook: (no name) - {1C78AB3F-A857-482e-80C0-3A1E5238A565} - (no file) O2 - BHO: {6596829B-37D4-40ad-971B-1E9041725C52} - {29F7B7FA-ADC8-48ea-9E1C-EA87A05AE642} - C:\WINDOWS\System32\sbb.dll O3 …

Member Avatar for crunchie
0
343
Member Avatar for sabasu

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O2 - BHO: (no name) - {A579FC44-3619-4D65-A6F8-58C19525141F} - c:\winnt\system32\ilemba.dll (file missing) O4 - HKCU\..\Run: [System Update4] c:\docume~1\me\applic~1\svchost.exe O4 - …

Member Avatar for crunchie
0
170
Member Avatar for Amir04

My advise would be to upgrade to Internet Explorer version 6 with service pack 1, primarily for security reasons. Otherwise you can try a repair by going to add/remove programs.

Member Avatar for crunchie
0
184
Member Avatar for dexjava

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = [url]http://easy-search.biz[/url] R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = [url]http://easy-search.biz[/url] R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page …

Member Avatar for crunchie
0
248
Member Avatar for crazy

Cool. I would also uninstall messenger plus then reinstall it without the 3rd party sponsor, LOP.

Member Avatar for crunchie
0
117
Member Avatar for Catweazle

[url]http://www.spywareinfo.com/~merijn/htlogtutorial.html[/url] [url]http://hjt.wizardsofwebsites.com/[/url]

Member Avatar for crunchie
0
96
Member Avatar for bandmm

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O4 - HKCU\..\RunOnce: [Updater] rundll32 C:\DOCUME~1\Brad\APPLIC~1\mshy\mshy.dll,UpdateDll s O8 - Extra context menu item: &iSearch The Web - res://C:\WINDOWS\System32\toolbar.dll/SEARCH.HTML O16 …

Member Avatar for crunchie
0
125
Member Avatar for simon3030

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O3 - Toolbar: (no name) - {62999427-33FC-4baf-9C9C-BCE6BD127F08} - (no file) Can you get me the full name of this …

Member Avatar for crunchie
0
160
Member Avatar for Whyzkid99

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O1 - Hosts: 207.36.196.189 auto.search.msn.com O1 - Hosts: 207.36.196.189 search.netscape.com O1 - Hosts: 207.36.196.189 ieautosearch Cannot see anything else …

Member Avatar for crunchie
0
187
Member Avatar for Ron Wolpa

In addition to what caperjack has instructed, please do the following: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O4 - HKCU\..\Run: [AddClass] C:\WINDOWS\MSXMIDI.EXE Reboot into safe …

Member Avatar for crunchie
0
302
Member Avatar for JayEDesmaris

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = O1 - Hosts: 12.129.205.209 search.netscape.com12.129.205.209 sitefinder.verisign.com O2 - BHO: …

Member Avatar for crunchie
0
155
Member Avatar for kilalchemist

Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = [url]http://red.clientapps.yahoo.com/cus...rch/search.html[/url] R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = [url]http://red.clientapps.yahoo.com/cus...//www.yahoo.com[/url] R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page …

Member Avatar for crunchie
0
125
Member Avatar for luvleeserrah

Hi there. You have a few problems there so we'll see what we can do. The next is perhaps the most important, so please follow exactly. Unzip HJT into it's own permanent folder before doing anything in order for it to create backups. [color=red](Not a temporary folder or directly on …

Member Avatar for crunchie
0
115
Member Avatar for feyr

O4 - Global Startup: CorrectConnect.lnk = C:\Program Files\CConnect\CConnect.exe : Broadband ISP diagnostic tool - as used by NTL and Cox Communications.

Member Avatar for DMR
0
154
Member Avatar for morridal

Hi & welcome. Your main problem is that your system is in serious need of updating. Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : F2 - REG:system.ini: …

Member Avatar for crunchie
0
138
Member Avatar for Lil'Paul

Download dllfix from the following link. [url]http://tools.zerosrealm.com/dllfix.exe[/url] Create a folder on your desktop, doubleclick on the dllfix and install it into the folder you just created. 1.Run start.bat and press option 1. 'output.txt' will be created in the folder. Post the results here. Update Adaware reference file but do not …

Member Avatar for crunchie
0
191
Member Avatar for cdshirley

Hi & welcome. Please do the following. Follow these instructions first: Wintools removal [url=http://www.pchell.com/support/wintools.shtml][u]here.[/u][/url] When done uninstall messenger plus from add/remove programs. You can then reinstall it & choose not to install the 3rd party sponsor, LOP. Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings …

Member Avatar for crunchie
0
108
Member Avatar for elizachannon

Hello fellow ozzy & welcome to the forum. You have only posted half a log. We need the entire log to give a proper diagnosis. Please post the complete log after doing the following. Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings under 'scanning,' have …

Member Avatar for crunchie
0
427
Member Avatar for Jackal

Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings under 'scanning,' have it set to 'scan within archives,' 'scan active processes,' 'scan registry,' 'deepscan registry' 'scan my IE Favourites for banned URL's,' 'scan my host's file.' In 'tweaks' under 'scanning engine' set it to 'unload recognised …

Member Avatar for crunchie
0
140
Member Avatar for ehat

I'll get ehat to run this too DMR. Download dllfix from the following link. [url]http://tools.zerosrealm.com/dllfix.exe[/url] Create a folder on your desktop, doubleclick on the dllfix and install it into the folder you just created. 1.Run start.bat and press option 1. 'output.txt' will be created in the folder. Post the results …

Member Avatar for caperjack
0
379
Member Avatar for Patrick

Going off your log do the following please: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [url]http://srch-us6.hpwis.com/[/url] R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar …

Member Avatar for Patrick
0
210
Member Avatar for ShhBeQuiet9772

Have your friend Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings under 'scanning,' have it set to 'scan within archives,' 'scan active processes,' 'scan registry,' 'deepscan registry' 'scan my IE Favourites for banned URL's,' 'scan my host's file.' In 'tweaks' under 'scanning engine' set it …

Member Avatar for crunchie
0
109
Member Avatar for computernerd18

Ok. Hopefully you have not rebooted since running Adaware as you may not have been able to log back in due to this entry. F2 - REG:system.ini: UserInit=C:\Windows\System32\wsaupdater.exe, Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left …

Member Avatar for crunchie
0
320
Member Avatar for DaSwede

Download dllfix from the following link. [url]http://tools.zerosrealm.com/dllfix.exe[/url] Create a folder on your desktop, doubleclick on the dllfix and install it into the folder you just created. 1.Run start.bat and press option 1. 'output.txt' will be created in the folder. Post the results back here please. Also Download & instal Adaware …

Member Avatar for crunchie
0
212
Member Avatar for mwb

Can you please post a normal HJT log afer uninstalling Mywebsearch from add remove. Download CWShredder from [url=http://www.computercops.biz/zx/phoenix22/cws.zip][u]here[/u][/url] & run it. Select the fix button & it will get rid of everything related to CoolWebSearch that is stored in it's database. Close ALL windows, including IE, before running CWShredder. Reboot. …

Member Avatar for crunchie
0
139
Member Avatar for knaiad

[QUOTE=caperjack]sorry for the delay ,but we are all just volunteer's My 2 jobs keep me busy! and I have to fight with my 16 yr old daughter for the computer at night !![/QUOTE] LOL. I"m a single dad & have the same trouble with my 15 year old daughter. Funny …

Member Avatar for crunchie
0
466
Member Avatar for Candi69

Unzip HJT into it's own permanent folder before doing anything in order for it to create backups. [color=red](Not a temporary folder or directly on the desktop & not directly on your hard drive).[/color] Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in …

Member Avatar for crunchie
0
114
Member Avatar for JERBEROS

Unzip HJT into it's own permanent folder before doing anything in order for it to create backups. [color=red](Not a temporary folder or directly on the desktop & not directly on your hard drive).[/color] Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in …

Member Avatar for crunchie
0
104

The End.