spyware/adware/viruses help? 2 |
spyware/adware/viruses help? 2 |
![]()
Post
#1
|
|
![]() I'll never be who I was again.. ![]() ![]() ![]() ![]() ![]() ![]() Group: Member Posts: 2,886 Joined: Jan 2005 Member No: 77,981 ![]() |
Umm..Made a new topic as dispn0ygonekrazy requested... For more information check http://www.createblog.com/forums/index.php...=0#entry1343361 |
|
|
![]() |
![]()
Post
#2
|
|
*Influential Guitarist & Inspiring Writer* ![]() ![]() ![]() ![]() ![]() ![]() Group: Official Member Posts: 1,217 Joined: Sep 2004 Member No: 51,134 ![]() |
Yes sir i can definitely help you let me make a fix for you individually as well also alright please be patient ill get to you
Alright gotnoheart sorry it took so long to get to you, im on vacation and currently still but i have time to help you =]. Please follow the instructions thoroughly and making sure you do them in order. MooSoft <------ Download the program and run a scan for trojans. You have a trojan detected in your harddrive. Run this online virus scan: ActiveScan - Save the results from the scan! 1.) Download The Hoster Press "Restore Original Hosts" and press "OK". Exit Program. 2.) Right-Click HERE and Save As to download DelDomains.inf to your desktop. To use: RIGHT-CLICK DelDomains.inf on your desktop and select: Install (no need to restart) Note: This will remove all entries in the "Trusted Zone" and "Ranges" also. 3.) Download, install. CleanUp! You have a CoolWebSearch infection. Download CWShredder here to its own folder. Update CWShredder * Open CWShredder and click I AGREE * Click Check For Update * Close CWShredder Open HJT, Scan then put a check on the following files below. R1 - HKCU\Software\Microsoft\Internet Explorer,(Default) = http://fastsearchweb.com/srh.php?q=%s O2 - BHO: ohb Class - {0AEE4D0C-4B38-4196-AE32-70ACE5656647} - C:\WINDOWS\System32\winsrm32.dll (file missing) O2 - BHO: (no name) - {10AA115E-9874-17AF-147C-C424D9FA21F0} - C:\WINDOWS\ipin32.dll (file missing) O2 - BHO: (no name) - {A6504E6D-DF84-8F54-841C-8C1D866319B2} - C:\WINDOWS\System32\zpvupmgh.dll O3 - Toolbar: TheSearchMall.com Bar - {4B8F38C7-62FC-4762-B9A0-27E63F768167} - C:\WINDOWS\System32\winsrm32.dll (file missing) O4 - HKLM\..\RunServices: [MSN Update] dllcon.exe O4 - HKLM\..\RunServices: [Microsoft DirectX] PDSched.exe O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} - O16 - DPF: {41D13E9A-BB94-402A-8502-AFA78526B63D} (iiittt Class) - http://www.thesearchmall.com/toolbar/winsrm32.cab O16 - DPF: {BAB3E70B-A847-4A88-ACFC-778FCCC00287} (CActSetupObj Object) - http://www.odysseusmarketing.com/actsetup.cab Boot into Safe Mode: Restart your computer and as soon as it starts booting up again continuously tap F8. A menu should come up where you will be given the option to enter Safe Mode. Now run CWShredder. Click I Agree, then Fix and then Next, let it fix everything it asks about. Reboot your computer into normal windows. Post a new HiJackThis log along with the results from ActiveScan. |
|
|
![]() ![]() |