Too much ad pop out

Discuss anything not covered in another forum (life, the universe etc.)... Please keep it PG-13 and avoid spam.
Post Reply
ntvh
Regular Member
Posts: 403
Joined: Tue Oct 23, 2001 3:37 pm

Too much ad pop out

Post by ntvh »

Would somebody please help me to prevent the popup or spyware that keep popup all the ads such as [url]http://ads1.revenue.net/ . I am using spykiller2004, popupcop2.5.0.33, Spybot search & destroy 1.3 and the resultis..... the pop up ad still pop out like uncontrol. Please help don't known what to do any more>!!!!!!! :confused: :confused: Thank you for your help
User avatar
ColdFusion
Posts: 3542
Joined: Mon Oct 30, 2000 12:00 am
Location: Vancouver, BC

Post by ColdFusion »

format :rolleyes:
ntvh
Regular Member
Posts: 403
Joined: Tue Oct 23, 2001 3:37 pm

Post by ntvh »

What do you mean format? I don't know much about computer THX
User avatar
ColdFusion
Posts: 3542
Joined: Mon Oct 30, 2000 12:00 am
Location: Vancouver, BC

Post by ColdFusion »

ntvh wrote:What do you mean format? I don't know much about computer THX
Spyware is just so annoying that once u get it on ur system its hard to get rid of it. I was suggesting format because it would save you alot of work, but probibaly not such a good idea because you probibaly have no idea what im talking about. I noticed you dont have Adaware in your list of anti-spyware software. Goto http://www.lavasoftusa.com and download Adaware. Install it, download the updates, and scan. Adaware is probibaly one of the best spyware programs out there. Good Luck
ntvh
Regular Member
Posts: 403
Joined: Tue Oct 23, 2001 3:37 pm

Post by ntvh »

Yes I do have Lava Ad ware SE personal 1.05. Did the scan and sill pop up. Right now I'm try Xoftspy 4.01 hope this will help. please advise. :thumb:
User avatar
Massa
Senior Member
Posts: 2432
Joined: Thu Dec 12, 2002 2:45 am
Location: Houston, TX

Post by Massa »

If you feel somewhat adventurous and have some time:

Download HijackThis (a google search will get you a mirror) and scan. Then, post your log here and we will tell you where to start.
Good luck,

Dave
Brk
SG VIP
Posts: 29518
Joined: Sun Dec 09, 2001 12:00 pm

Post by Brk »

The ONLY apps you need are Spybot, SpywareBlaster, Ad-Aware and maybe Spy Sweeper. All the others stink.

Your problem most likely lies in unsafe web surfing habits. All the anti-spyware programs in the world won't prevent your PC getting hit by garbage if you go back to "bad" web sites or install things or click popups without thinking.
User avatar
White_Mage
Regular Member
Posts: 202
Joined: Sun Jul 25, 2004 2:38 am
Location: Canada

Post by White_Mage »

"bad" website = Porn sites. :p
ntvh
Regular Member
Posts: 403
Joined: Tue Oct 23, 2001 3:37 pm

Post by ntvh »

per your req here is the report from Hijack
" Logfile of HijackThis v1.97.7
Scan saved at 12:09:56 AM, on 12/3/2004
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\hidserv.exe
C:\PROGRA~1\Iomega\System32\AppServices.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\system32\stisvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\MsPMSPSv.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\BRMFRSMG.EXE
C:\WINNT\Explorer.EXE
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\WINNT\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\Microsoft Broadband Networking\MSBNTray.exe
C:\Program Files\ScanSoft\PaperPort\PopUp\SmartUI.exe
C:\Program Files\palmOne\HOTSYNC.EXE
C:\Program Files\ScanSoft\PaperPort\pplinks.exe
C:\Program Files\PopUpCop\PCCloser.exe
C:\WINNT\system32\l?gonui.exe
C:\Program Files\XoftSpy\XoftSpy.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\interMute\AdSubtract\AdSub.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Vincent Nguyen\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by SBC Yahoo! DSL
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:1423
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {259F616C-A300-44F5-B04A-ED001A26C85C} - C:\Program Files\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
O2 - BHO: (no name) - {3FD71770-BC64-2996-8001-65550A817F1D} - C:\WINNT\system32\hfdafvkk.dll
O2 - BHO: (no name) - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: SolidConverter PDF - {259F616C-A300-44F5-B04A-ED001A26C85C} - C:\Program Files\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
O3 - Toolbar: (no name) - {0A8CE102-FA03-4612-9BEE-7FE5452F4CB1} - (no file)
O3 - Toolbar: PopUpCop - {DB43E4E6-FF8A-4018-8C8E-F68587A44A73} - C:\PROGRA~1\PopUpCop\PopUpCop.dll
O3 - Toolbar: AdSubtract Toolbar - {F14AABDD-0232-4e5a-9B52-4178AC0A62B5} - C:\WINNT\system32\adsubtb.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [IndexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKCU\..\Run: [SmartProg] c:\windows\smartprog.exe
O4 - HKCU\..\Run: [SpyKiller] C:\Program Files\SpyKiller\spykiller.exe /startup
O4 - HKCU\..\Run: [Clock] C:\WINNT\autolfn.exe
O4 - HKCU\..\Run: [ctfmon.exe] ctfmon.exe
O4 - Startup: AdSubtract.lnk = C:\Program Files\interMute\AdSubtract\AdSub.exe
O4 - Startup: HotSync Manager.LNK = C:\Program Files\palmOne\HOTSYNC.EXE
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: AutoCAD Startup Accelerator.lnk = C:\Program Files\Common Files\Autodesk Shared\acstart16.exe
O4 - Global Startup: Microsoft Broadband Networking.lnk = C:\Program Files\Microsoft Broadband Networking\MSBNTray.exe
O4 - Global Startup: SmartUI.lnk = C:\Program Files\ScanSoft\PaperPort\PopUp\SmartUI.exe
O8 - Extra context menu item: AdSubtract: Bypass Site - res://C:\Program Files\interMute\AdSubtract\AdSub.exe/360
O8 - Extra context menu item: AdSubtract: Cloak Image - res://C:\Program Files\interMute\AdSubtract\AdSub.exe/361
O8 - Extra context menu item: AdSubtract: Report Site - res://C:\Program Files\interMute\AdSubtract\AdSub.exe/359
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open Image in New Window - res://C:\Program Files\PopUpCop\popupcop.dll/imagenew
O8 - Extra context menu item: Open PDF in Word - res://C:\Program Files\ScanSoft\PDF Converter\IEShellExt.dll /100
O9 - Extra button: Yahoo! Login (HKLM)
O9 - Extra 'Tools' menuitem: Yahoo! Login (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Yahoo! Messenger (HKLM)
O9 - Extra button: Research (HKLM)
O9 - Extra button: Real.com (HKLM)
O9 - Extra button: FlashGet (HKLM)
O9 - Extra 'Tools' menuitem: &FlashGet (HKLM)
O9 - Extra button: AdsGone (HKLM)
O9 - Extra 'Tools' menuitem: &AdsGone Settings (HKLM)
O16 - DPF: {1EB17D1C-141D-4D9D-91CB-24D99215851D} - http://akamai.downloadv3.com/binaries/IA/netia32_EN.cab
O16 - DPF: {205FF73B-CA67-11D5-99DD-444553540006} (CInstall Class) - http://www.errorguard.com/installation/Install.cab
O16 - DPF: {231B1C6E-F934-42A2-92B6-C2FEFEC24276} (yucsetreg Class) - C:\Program Files\Yahoo!\common\yucconfig.dll
O16 - DPF: {3E13AA37-352F-4E5F-91C4-08A0BA0C9541} (InSPECS2_0 Control) - http://161.58.155.13/cab_files/InSPECS2_0.cab
O16 - DPF: {88D969C0-F192-11D4-A65F-0040963251E5} (XML DOM Document 4.0) - file://C:\TempEI4\EI40_\msxml4.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/C ... 8814583333
O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://download.yahoo.com/dl/installs/ymail/ymmapi.dll
O16 - DPF: {A8658086-E6AC-4957-BC8E-7D54A7E8A78E} (SassCln Object) - http://www.microsoft.com/security/contr ... assCln.CAB
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} (YAddBook Class) - http://download.yahoo.com/dl/installs/yab_af.cab
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697516} (NsvPlayX Control) - http://ntcast.com/tv/nsvplayx_vp6_mp3.cab
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) - http://photos.yahoo.com/ocx/us/yexplorer1_9us.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shoc ... wflash.cab

Thank you all for your help . Please help me to solve this, :thumb: :confused: :rotfl:
User avatar
Massa
Senior Member
Posts: 2432
Joined: Thu Dec 12, 2002 2:45 am
Location: Houston, TX

Post by Massa »

Ok, ones that aren't system files are going to be red:


" Logfile of HijackThis v1.97.7
Scan saved at 12:09:56 AM, on 12/3/2004
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by SBC Yahoo! DSL
***************************************************
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:1423
****************************************************
Check that this is a required proxy server

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {259F616C-A300-44F5-B04A-ED001A26C85C} - C:\Program Files\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll

O2 - BHO: (no name) - {3FD71770-BC64-2996-8001-65550A817F1D} - C:\WINNT\system32\hfdafvkk.dll
O2 - BHO: (no name) - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: SolidConverter PDF - {259F616C-A300-44F5-B04A-ED001A26C85C} - C:\Program Files\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
O3 - Toolbar: (no name) - {0A8CE102-FA03-4612-9BEE-7FE5452F4CB1} - (no file)

O3 - Toolbar: PopUpCop - {DB43E4E6-FF8A-4018-8C8E-F68587A44A73} - C:\PROGRA~1\PopUpCop\PopUpCop.dll
O3 - Toolbar: AdSubtract Toolbar - {F14AABDD-0232-4e5a-9B52-4178AC0A62B5} - C:\WINNT\system32\adsubtb.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [IndexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKCU\..\Run: [SmartProg] c:\windows\smartprog.exe
O4 - HKCU\..\Run: [SpyKiller] C:\Program Files\SpyKiller\spykiller.exe /startup
O4 - HKCU\..\Run: [Clock] C:\WINNT\autolfn.exe
O4 - HKCU\..\Run: [ctfmon.exe] ctfmon.exe
O4 - Startup: AdSubtract.lnk = C:\Program Files\interMute\AdSubtract\AdSub.exe
O4 - Startup: HotSync Manager.LNK = C:\Program Files\palmOne\HOTSYNC.EXE
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: AutoCAD Startup Accelerator.lnk = C:\Program Files\Common Files\Autodesk Shared\acstart16.exe
O4 - Global Startup: Microsoft Broadband Networking.lnk = C:\Program Files\Microsoft Broadband Networking\MSBNTray.exe
O4 - Global Startup: SmartUI.lnk = C:\Program Files\ScanSoft\PaperPort\PopUp\SmartUI.exe
O8 - Extra context menu item: AdSubtract: Bypass Site - res://C:\Program Files\interMute\AdSubtract\AdSub.exe/360
O8 - Extra context menu item: AdSubtract: Cloak Image - res://C:\Program Files\interMute\AdSubtract\AdSub.exe/361
O8 - Extra context menu item: AdSubtract: Report Site - res://C:\Program Files\interMute\AdSubtract\AdSub.exe/359
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open Image in New Window - res://C:\Program Files\PopUpCop\popupcop.dll/imagenew
O8 - Extra context menu item: Open PDF in Word - res://C:\Program Files\ScanSoft\PDF Converter\IEShellExt.dll /100
O9 - Extra button: Yahoo! Login (HKLM)
O9 - Extra 'Tools' menuitem: Yahoo! Login (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Yahoo! Messenger (HKLM)
O9 - Extra button: Research (HKLM)
O9 - Extra button: Real.com (HKLM)
O9 - Extra button: FlashGet (HKLM)
O9 - Extra 'Tools' menuitem: &FlashGet (HKLM)
O9 - Extra button: AdsGone (HKLM)
O9 - Extra 'Tools' menuitem: &AdsGone Settings (HKLM)
O16 - DPF: {1EB17D1C-141D-4D9D-91CB-24D99215851D} - http://akamai.downloadv3.com/binaries/IA/netia32_EN.cab
O16 - DPF: {205FF73B-CA67-11D5-99DD-444553540006} (CInstall Class) - http://www.errorguard.com/installation/Install.cab

O16 - DPF: {231B1C6E-F934-42A2-92B6-C2FEFEC24276} (yucsetreg Class) - C:\Program Files\Yahoo!\common\yucconfig.dll
O16 - DPF: {3E13AA37-352F-4E5F-91C4-08A0BA0C9541} (InSPECS2_0 Control) - http://161.58.155.13/cab_files/InSPECS2_0.cab
O16 - DPF: {88D969C0-F192-11D4-A65F-0040963251E5} (XML DOM Document 4.0) - file://C:\TempEI4\EI40_\msxml4.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?38049.8814583333
O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://download.yahoo.com/dl/installs/ymail/ymmapi.dll
O16 - DPF: {A8658086-E6AC-4957-BC8E-7D54A7E8A78E} (SassCln Object) - http://www.microsoft.com/security/controls/Sasser/20/SassCln.CAB
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} (YAddBook Class) - http://download.yahoo.com/dl/installs/yab_af.cab
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697516} (NsvPlayX Control) - http://ntcast.com/tv/nsvplayx_vp6_mp3.cab
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) - http://photos.yahoo.com/ocx/us/yexplorer1_9us.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab

Please note that lots of those startup items are not needed to run in the background. You could also axe all of those Acrobat, adsubtract, and popupkiller, popupstop etc entries as well.

Good luck,

Dave
User avatar
cho
Senior Member
Posts: 3409
Joined: Tue Jun 03, 2003 3:24 am
Location: Vancouver, BC

Post by cho »

White_Mage wrote:"bad" website = Porn sites. :p
lol

you speak from exprience... :rotfl: :p :D
"There is a big difference between breaking the law and having a law designed to break you. We will not be broken." -- Jinny Simms

"On the street everything is legal! I don't believe in an eye for an eye, I believe in 2 eyes for an eye." -- Bas Rutten
User avatar
White_Mage
Regular Member
Posts: 202
Joined: Sun Jul 25, 2004 2:38 am
Location: Canada

Post by White_Mage »

:eek: how did you know???
*cho* wrote:lol

you speak from exprience... :rotfl: :p :D
User avatar
cho
Senior Member
Posts: 3409
Joined: Tue Jun 03, 2003 3:24 am
Location: Vancouver, BC

Post by cho »

You admitted to it...
"There is a big difference between breaking the law and having a law designed to break you. We will not be broken." -- Jinny Simms

"On the street everything is legal! I don't believe in an eye for an eye, I believe in 2 eyes for an eye." -- Bas Rutten
User avatar
White_Mage
Regular Member
Posts: 202
Joined: Sun Jul 25, 2004 2:38 am
Location: Canada

Post by White_Mage »

:irate: Whatever!
*cho* wrote:You admitted to it...
User avatar
YARDofSTUF
Posts: 70006
Joined: Sat Nov 11, 2000 12:00 am
Location: USA

Post by YARDofSTUF »

if you use IE the google toolbar is a handy popup blocker and tool
ntvh
Regular Member
Posts: 403
Joined: Tue Oct 23, 2001 3:37 pm

Post by ntvh »

You want me to delete all the red high line are what??? THX
drdoug99
SG Elite
Posts: 6471
Joined: Tue Nov 28, 2000 12:00 am
Location: ohio

Post by drdoug99 »

oh man.....first off...SpyKiller 2004 is a bogus program....it is in fact spyware/..same with Xoftspy 4.01

please check here or post at speedguide before downloading any unknown "anti spyware" programs....it pays to do a little research.

http://www.spywarewarrior.com/rogue_anti-spyware.htm
please read this link.....

I don't trust Popup cop either...just use google toolbar or use another browser but IE...like Slimbrowser or Opera, anything but IE. :D
posted by Burke:
The ONLY apps you need are Spybot, SpywareBlaster, Ad-Aware

:nod: this is what I use and recommend for myself and any others. Also I use AVG antivirus if you don't have an anti virus... http://www.grisoft.com

as far as HiJack This goes....just remove everything. Serisouly, I"ve done it before, it just strips down everything. Ok, I just did it right now, and there's no problems... :)

and format means to erase everything and start over basically. To format your hard drive in the FAT32 or NTFS file system format, and reinstall Windows or another operating system.
ntvh
Regular Member
Posts: 403
Joined: Tue Oct 23, 2001 3:37 pm

Post by ntvh »

"as far as HiJack This goes....just remove everything. Serisouly, I"ve done it before, it just strips down everything. Ok, I just did it right now, and there's no problems... "

You mean no problem, I mean after run the hijack, the report show up and just delete them all?? THX :confused:
drdoug99
SG Elite
Posts: 6471
Joined: Tue Nov 28, 2000 12:00 am
Location: ohio

Post by drdoug99 »

ntvh wrote:"as far as HiJack This goes....just remove everything. Serisouly, I"ve done it before, it just strips down everything. Ok, I just did it right now, and there's no problems... "

You mean no problem, I mean after run the hijack, the report show up and just delete them all?? THX :confused:
Yes...check off every box....and then click fix. Note that this will totally strip down internet explorer. I use a web browser called Slimbrowser, http://www.flashpeak.com download it there if you want...and Slimbrowser was unaffected. But Internet Explorer is stipped down, this means you will have to go and customize your Internet explorer settings again, the toolbars and address bar and all that. But it will still work fine. :)
User avatar
ColdFusion
Posts: 3542
Joined: Mon Oct 30, 2000 12:00 am
Location: Vancouver, BC

Post by ColdFusion »

drdoug99 wrote:Yes...check off every box....and then click fix. Note that this will totally strip down internet explorer. I use a web browser called Slimbrowser, http://www.flashpeak.com download it there if you want...and Slimbrowser was unaffected. But Internet Explorer is stipped down, this means you will have to go and customize your Internet explorer settings again, the toolbars and address bar and all that. But it will still work fine. :)
C:\WINNT\System32\WBEM\WinMgmt.exe - That is a trojan i used to work on. Make sure you run your computer in safe mode, and remove that entire folder. Its the only way to get rid of it.
ntvh
Regular Member
Posts: 403
Joined: Tue Oct 23, 2001 3:37 pm

Post by ntvh »

learn so many good new thing. Thank you for all the tricks. :thumb: ;)
Post Reply