Updating CWShredder
First off, KUDOS Prime on a great article! A must read for... everyone!
Ok, I've always had NAV and AdAware. I check WindowsUpdade a couple times a week. I did let my anti-virus subscription lapse for about a month and when I got it back Norton found the ByteVerify trojan and took care of that. After reading your article, I used your link to download CWShredder, Spybot, and HijackThis. When I start CWS, I hit the Update button and get this:
Current version: CWShredder v1.47.3
Connecting...
Fetching CWShredder update information...
Unable to retrieve CWShredder update information.
I've tried many times in the last 24 hrs. and it always comes up this way!
Am I reading to much into this? Do I already have the latest update?
I've also attached my HiJackThis logfile. I don't know that there is any problem, but any suggestions on how to tweak this would be appreciated!
Ok, I've always had NAV and AdAware. I check WindowsUpdade a couple times a week. I did let my anti-virus subscription lapse for about a month and when I got it back Norton found the ByteVerify trojan and took care of that. After reading your article, I used your link to download CWShredder, Spybot, and HijackThis. When I start CWS, I hit the Update button and get this:
Current version: CWShredder v1.47.3
Connecting...
Fetching CWShredder update information...
Unable to retrieve CWShredder update information.
I've tried many times in the last 24 hrs. and it always comes up this way!
Am I reading to much into this? Do I already have the latest update?
I've also attached my HiJackThis logfile. I don't know that there is any problem, but any suggestions on how to tweak this would be appreciated!
0
This discussion has been closed.
Comments
Wow, you still have a ton of stinkers.
No worries, the CWShredder updater never works for me, either.
Get rid of these:
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [CoolSwitch] C:\WINDOWS\System32\taskswitch.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [mmtask] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
O4 - HKLM\..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\evntsvc.exe -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O16 - DPF: {0E25CA6C-52AE-47E0-BF44-BC5B3A0403F4} - http://www.anywebcam.com/awc/SGT.ocx
O16 - DPF: {1552B1CD-8CB7-4776-B6CB-16EA461928E5} (Cpuid Control) - http://powe45.vwh.net/downloads/upgradefinder.cab
O16 - DPF: {3CA95C27-2150-4E4A-93A3-D557C88EBF2D} - http://beta.anywebcam.com/awc/MGT.ocx
O16 - DPF: {3E13AA37-352F-4E5F-91C4-08A0BA0C9541} (InSPECS2_0 Control) - http://161.58.155.13/cab_files/InSPECS2_0.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20020323/qtinstall.info.apple.com/qt505/us/win/QuickTimeInstaller.exe
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://207.188.7.150/06155dd44c6bb599d101/netzip/RdxIE2.cab
O16 - DPF: {6B4788E2-BAE8-11D2-A1B4-00400512739B} (PWMediaSendControl Class) - http://216.249.24.142/code/PWActiveXImgCtl.CAB
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.installengine.com/engine/isetup.cab
O16 - DPF: {B5ED2DB1-5728-4355-94F0-4A1C856B88F2} (GUNID.UNID) - http://www.anywebcam.com/awc/GUNID.CAB
O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox Plug-in) - http://di.imgag.com/imgag/cp/install/Crusher.cab
O16 - DPF: {BDA25AB2-5805-49CE-9C98-29FCDDF652EB} - http://beta.anywebcam.com/awc/GM.ocx
O16 - DPF: {E13F1132-4CA0-4005-84D3-51406E27D269} (BTDownloadCtrl Control) - http://www.bravetree.com/downloader/BTDownloadCtrl.cab
O16 - DPF: {E8E72919-8219-4337-9260-7DD62C782AEF} - http://beta.anywebcam.com/awc/MGET.ocx
O16 - DPF: {EEA66484-4228-4FA0-9327-3A06990602B5} (DownloadManagerInstall Control) - http://byteswarm.com/agent/1.2/DMInstall.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{C09531B8-45B3-474F-AA3F-55EE86925704}: NameServer = 199.120.83.1,65.170.181.2
O17 - HKLM\System\CCS\Services\Tcpip\..\{FF48BE21-AD8C-49EE-A18D-54EEE0242AB3}: NameServer = 199.120.83.1
Reboot, and then download and run AdAware (make sure you update it before you run it)
And stop installing all those activeX controls! You need to practice better internet habits!
I would suggest trying out a different browser, such as FireFox.
Welcome to short-media
Tex
FireFox .8 or Mozilla 1.7b are very good browsers. Similar backbone inside both, and Mozilla CAN be installed MINUS email but WITH composer, which lets you spell check things then cut-n-paste into forums. It is like FireFox plus spell-check.... Plus URL address bar searchability via Google or 15 other searchers.
For instance, having NEVER been there, type maxtor into the URL address bar entry area, and you will go to maxtor's mfr site FAST. this IS NOT ACTIVEx, THIS IS java+xulISH xml WORKING.
John D.-- who also says, if you want to know about me, type 'johndanielsonii' into Mozilla's URL address bar in version 1.7b-- no quotes, just that word inside them.
To keep all those ActiveX controls off your PC, install SpywareBlaster.
Cheers
Tex
Thanks, Mr.Kwitko!!
I now have the latest update of CWShredder!
I also followed Prime's advice and was able to clean out everything on the list without problems until I got to the items starting out 017-*. I could remove the last item on the list without any apparent problems, but when I tried to remove the next to last one I could no longer get on the internet! I used Windows System Restore to go back (I don't know how to use the backups that HijackThis makes) and deleted all but that one again. Could you give me some clarification why that needs to be removed and how to do so without losing access to the net?
Dexter...