toggle menu
Icrontic
Categories
Discussions
Best of Icrontic
Sign In
·
Register
Sign In
·
Register
Categories
Discussions
Activity
Best of Icrontic
Sign In
·
Register
×
Home
›
Science & Tech
›
Spyware & Virus Removal
Discussion
Loads of spyware - spybot errors
Title
Author
Category
(All)
Announcements
Gaming
Team Fortress 2
World of Warcraft
Minecraft
Civilization
Backlog of Shame
Science & Tech
Hardware
Internet & Media
Lifestyle
Movies & TV
Music
Style
Food & Drink
Fitness
Home & Auto
Community
Events
Trading Post
Folding@Home
search subcategories
search archived
Tags
What to search
discussions
comments
polls
Date within
1 day
3 days
1 week
2 weeks
1 month
2 months
6 months
1 year
of
Examples: Monday, today, last week, Mar 26, 3/26/04
Search
Loads of spyware - spybot errors
pandaking
September 2004
edited October 2004
in
Spyware & Virus Removal
...
0
Comments
SpywareShooter
127.0.0.1
September 2004
edited September 2004
Welcome to Short Media forums.
Before doing the following, please
Set your computer to show hidden files and folders
,
Disable System Restore
, and
Reboot in Safe Mode
.
Once you have done that, Run HijackThis and have it fix the following:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.alicesgarden.net
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.meshcomputers.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.alicesgarden.net
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://rvorlikodtyzcjkcknpxlwdr.com...pgt59wHmqK.html
O2 - BHO: (no name) - {921C1B7E-FCDB-4474-638F-C1BECDBBB555} - C:\PROGRA~1\INTERN~2\FreeEnc.exe
O2 - BHO: (no name) - {C9DFEED8-6105-402C-35B6-DA58096E2D99} - C:\PROGRA~1\INTERN~2\FreeEnc.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [proxy dumb ace part] C:\Documents and Settings\All Users\Application Data\browse flag proxy dumb\Exiteggs.exe
O4 - HKLM\..\Run: [second mail support build] C:\Documents and Settings\All Users\Application Data\logobrowsesecondmail\FragLogo.exe
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe" /WinStart
Then find and locate the files listed above and
Quarentine Them
.
Once you have done that, reboot, scan with HiijackThis again, and post a new log.
0
pandaking
October 2004
edited October 2004
...
Print Screen.bmp
400.7K
0
This discussion has been closed.
Comments
Before doing the following, please Set your computer to show hidden files and folders, Disable System Restore, and Reboot in Safe Mode.
Once you have done that, Run HijackThis and have it fix the following:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.alicesgarden.net
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.meshcomputers.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.alicesgarden.net
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://rvorlikodtyzcjkcknpxlwdr.com...pgt59wHmqK.html
O2 - BHO: (no name) - {921C1B7E-FCDB-4474-638F-C1BECDBBB555} - C:\PROGRA~1\INTERN~2\FreeEnc.exe
O2 - BHO: (no name) - {C9DFEED8-6105-402C-35B6-DA58096E2D99} - C:\PROGRA~1\INTERN~2\FreeEnc.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [proxy dumb ace part] C:\Documents and Settings\All Users\Application Data\browse flag proxy dumb\Exiteggs.exe
O4 - HKLM\..\Run: [second mail support build] C:\Documents and Settings\All Users\Application Data\logobrowsesecondmail\FragLogo.exe
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe" /WinStart
Then find and locate the files listed above and Quarentine Them.
Once you have done that, reboot, scan with HiijackThis again, and post a new log.