4,383 Posted Topics
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries= R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search … | |
Re: Clean out your TIF's first then go to your Windows folder & delete the following: winupd.exe<<<< cmid32.dll<<<< No difference. | |
Re: Download dllfix from the following link. [url]http://tools.zerosrealm.com/dllfix.exe[/url] Create a folder on your desktop, doubleclick on the dllfix and install it into the folder you just created. 1.Run start.bat and press option 1. 'output.txt' will be created in the folder. Post the results of that log here. | |
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R0 - HKCUSoftwareMicrosof tInternet ExplorerMain,Start Page = C:WINDOWSsecure.html R1 - HKCUSoftwareMicrosof tInternet ExplorerMain,Default _Page_URL = C:WINDOWSsecure.html R0 - HKLMSoftwareMicrosof … | |
Re: Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings under 'scanning,' have it set to 'scan within archives,' 'scan active processes,' 'scan registry,' 'deepscan registry' 'scan my IE Favourites for banned URL's,' 'scan my host's file.' In 'tweaks' under 'scanning engine' set it to 'unload recognised … | |
Re: You should be able to go to Internet options\content\autocomplete & choose your preferences. If you have had gator on your comp there is a good chance there are leftovers. Please do the following. Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings under 'scanning,' have it … | |
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O4 - HKCU\..\Run: [Blsa] C:\WINDOWS\Application Data\nsmt.exe O4 - HKCU\..\Run: [WNSA] C:\WINDOWS\SYSTEM\wnstssu.exe Reboot into safe mode following the instructions [url=http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001052409420406][u]here[/u][/url] … | |
Re: Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings under 'scanning,' have it set to 'scan within archives,' 'scan active processes,' 'scan registry,' 'deepscan registry' 'scan my IE Favourites for banned URL's,' 'scan my host's file.' In 'tweaks' under 'scanning engine' set it to 'unload recognised … | |
Re: You can just go here to access the domains directly too. [url]http://users.skynet.be/bk136527/CWS/CWSdomains.htm[/url] | |
Re: Don't know if this will solve it or not, but needs to be removed N E way. Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O2 - … | |
Re: 1. Open an empty Notepad file. 2. Copy the following and paste it into the new Notepad file. REGEDIT4 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoBandCustomize"=- "NoToolbarCustomize"=- "Btn_Search"=- "SpecifyDefaultButtons"=- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoBandCustomize"=- "NoToolbarCustomize"=- "Btn_Search"=- "SpecifyDefaultButtons"=- 3. Save the file as 'isearchfix.reg' 4. Double click on this file and merge it into your registry. Your Toolbar Options … | |
Re: Steam is used for Half-Life. | |
Re: try doing a defrag first. except for the following entries, there is nothing bad in your log. | |
Re: Download CWShredder from [url=http://www.computercops.biz/zx/phoenix22/cws.zip][u]here[/u][/url] & run it. Select the fix button & it will get rid of everything related to CoolWebSearch that is stored in it's database. Close ALL windows, including IE, before running CWShredder. Reboot. To help prevent this from happening again, install the patches for the vulnerabilities that … | |
Re: Download CWShredder from [url=http://www.computercops.biz/zx/phoenix22/cws.zip][u]here[/u][/url] & run it. Select the fix button & it will get rid of everything related to CoolWebSearch that is stored in it's database. Close ALL windows, including IE, before running CWShredder. Reboot. To help prevent this from happening again, install the patches for the vulnerabilities that … | |
Re: [QUOTE=pokok]I cant find this bridgedll.exe in my notebook. I m using winxp home. I just dont know what's happening to my system. While I m using it, my cpu usage just went up to 100% and wont come down. All of the other software were slow coz of this 100%. … | |
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - Default URLSearchHook is missing O2 - … | |
Re: First of all we have to remove Newdotnet, either from add/remove programs, or by going [url=http://www.newdotnet.com/#remove][u]here.[/u][/url] & scrolling down to the uninstall tool. Download CWShredder from [url=http://www.computercops.biz/zx/phoenix22/cws.zip][u]here[/u][/url] & run it. Select the fix button & it will get rid of everything related to CoolWebSearch that is stored in it's database. … | |
Re: Try clearing out your temp internet files first, then the other temp folders. C:\windows\temp & there is one in C:\Documents and Settings\Administrator\Local Settings\Temp If it is still there after that, Download HijackThis from [url=http://www.computercops.biz/downloads-file-328.html][u]here[/u][/url] & unzip it into it's own, permanent folder, [color=red](Not a temporary folder or the desktop & … | |
Re: Please print this out for yourself, you may need it. :) First of all we have to remove Newdotnet, either from add/remove programs, or by going [url=http://www.newdotnet.com/#remove][u]here.[/u][/url] & scrolling down to the uninstall tool. Uninstall the following from add/remove programs: webHancer Bargain Buddy P2P Networking Then, download RapidBlaster killer from … | |
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R0 - HKCU\Software\Micros oft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Micros oft\Internet Explorer\Main,Local Page = O1 - Hosts: 62.189.6.85 _sip._tls.sip5.phoneserve.com … | |
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R3 - URLSearchHook: (no name) - {1C78AB3F-A857-482e-80C0-3A1E5238A565} - (no file) O2 - BHO: {6596829B-37D4-40ad-971B-1E9041725C52} - {29F7B7FA-ADC8-48ea-9E1C-EA87A05AE642} - C:\WINDOWS\System32\sbb.dll O3 … | |
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O2 - BHO: (no name) - {A579FC44-3619-4D65-A6F8-58C19525141F} - c:\winnt\system32\ilemba.dll (file missing) O4 - HKCU\..\Run: [System Update4] c:\docume~1\me\applic~1\svchost.exe O4 - … | |
Re: My advise would be to upgrade to Internet Explorer version 6 with service pack 1, primarily for security reasons. Otherwise you can try a repair by going to add/remove programs. | |
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = [url]http://easy-search.biz[/url] R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = [url]http://easy-search.biz[/url] R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page … | |
Re: Cool. I would also uninstall messenger plus then reinstall it without the 3rd party sponsor, LOP. | |
Re: [url]http://www.spywareinfo.com/~merijn/htlogtutorial.html[/url] [url]http://hjt.wizardsofwebsites.com/[/url] | |
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O4 - HKCU\..\RunOnce: [Updater] rundll32 C:\DOCUME~1\Brad\APPLIC~1\mshy\mshy.dll,UpdateDll s O8 - Extra context menu item: &iSearch The Web - res://C:\WINDOWS\System32\toolbar.dll/SEARCH.HTML O16 … | |
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O3 - Toolbar: (no name) - {62999427-33FC-4baf-9C9C-BCE6BD127F08} - (no file) Can you get me the full name of this … | |
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O1 - Hosts: 207.36.196.189 auto.search.msn.com O1 - Hosts: 207.36.196.189 search.netscape.com O1 - Hosts: 207.36.196.189 ieautosearch Cannot see anything else … | |
Re: In addition to what caperjack has instructed, please do the following: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : O4 - HKCU\..\Run: [AddClass] C:\WINDOWS\MSXMIDI.EXE Reboot into safe … | |
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = O1 - Hosts: 12.129.205.209 search.netscape.com12.129.205.209 sitefinder.verisign.com O2 - BHO: … | |
Re: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = [url]http://red.clientapps.yahoo.com/cus...rch/search.html[/url] R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = [url]http://red.clientapps.yahoo.com/cus...//www.yahoo.com[/url] R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page … | |
Re: Hi there. You have a few problems there so we'll see what we can do. The next is perhaps the most important, so please follow exactly. Unzip HJT into it's own permanent folder before doing anything in order for it to create backups. [color=red](Not a temporary folder or directly on … | |
Re: O4 - Global Startup: CorrectConnect.lnk = C:\Program Files\CConnect\CConnect.exe : Broadband ISP diagnostic tool - as used by NTL and Cox Communications. | |
Re: Hi & welcome. Your main problem is that your system is in serious need of updating. Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : F2 - REG:system.ini: … | |
Re: Download dllfix from the following link. [url]http://tools.zerosrealm.com/dllfix.exe[/url] Create a folder on your desktop, doubleclick on the dllfix and install it into the folder you just created. 1.Run start.bat and press option 1. 'output.txt' will be created in the folder. Post the results here. Update Adaware reference file but do not … | |
Re: Hi & welcome. Please do the following. Follow these instructions first: Wintools removal [url=http://www.pchell.com/support/wintools.shtml][u]here.[/u][/url] When done uninstall messenger plus from add/remove programs. You can then reinstall it & choose not to install the 3rd party sponsor, LOP. Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings … | |
Re: Hello fellow ozzy & welcome to the forum. You have only posted half a log. We need the entire log to give a proper diagnosis. Please post the complete log after doing the following. Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings under 'scanning,' have … | |
Re: Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings under 'scanning,' have it set to 'scan within archives,' 'scan active processes,' 'scan registry,' 'deepscan registry' 'scan my IE Favourites for banned URL's,' 'scan my host's file.' In 'tweaks' under 'scanning engine' set it to 'unload recognised … | |
Re: I'll get ehat to run this too DMR. Download dllfix from the following link. [url]http://tools.zerosrealm.com/dllfix.exe[/url] Create a folder on your desktop, doubleclick on the dllfix and install it into the folder you just created. 1.Run start.bat and press option 1. 'output.txt' will be created in the folder. Post the results … | |
Re: Going off your log do the following please: Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left of the following entries & click 'fix checked' : R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [url]http://srch-us6.hpwis.com/[/url] R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar … | |
Re: Have your friend Download & instal Adaware from [url=http://www.computercops.biz/downloads-file-292.html][u]here[/u][/url] & update it B4 scanning. In settings under 'scanning,' have it set to 'scan within archives,' 'scan active processes,' 'scan registry,' 'deepscan registry' 'scan my IE Favourites for banned URL's,' 'scan my host's file.' In 'tweaks' under 'scanning engine' set it … | |
Re: Ok. Hopefully you have not rebooted since running Adaware as you may not have been able to log back in due to this entry. F2 - REG:system.ini: UserInit=C:\Windows\System32\wsaupdater.exe, Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in the box to the left … | |
Re: Download dllfix from the following link. [url]http://tools.zerosrealm.com/dllfix.exe[/url] Create a folder on your desktop, doubleclick on the dllfix and install it into the folder you just created. 1.Run start.bat and press option 1. 'output.txt' will be created in the folder. Post the results back here please. Also Download & instal Adaware … | |
Re: Can you please post a normal HJT log afer uninstalling Mywebsearch from add remove. Download CWShredder from [url=http://www.computercops.biz/zx/phoenix22/cws.zip][u]here[/u][/url] & run it. Select the fix button & it will get rid of everything related to CoolWebSearch that is stored in it's database. Close ALL windows, including IE, before running CWShredder. Reboot. … | |
Re: [QUOTE=caperjack]sorry for the delay ,but we are all just volunteer's My 2 jobs keep me busy! and I have to fight with my 16 yr old daughter for the computer at night !![/QUOTE] LOL. I"m a single dad & have the same trouble with my 15 year old daughter. Funny … | |
Re: Unzip HJT into it's own permanent folder before doing anything in order for it to create backups. [color=red](Not a temporary folder or directly on the desktop & not directly on your hard drive).[/color] Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in … | |
Re: Unzip HJT into it's own permanent folder before doing anything in order for it to create backups. [color=red](Not a temporary folder or directly on the desktop & not directly on your hard drive).[/color] Close all (browser) windows & rescan with hijackthis. When the scan is finished place a check in … |
The End.