Home > General > Hjt-huntbar

Hjt-huntbar

Style Default Style Contact Us Help Home Top RSS Terms and Rules Copyright © TechGuy, Inc. Registry Data Items Infected: (No malicious items detected) Folders Infected: C:\Program Files\iWon (Adware.iWon) -> Quarantined and deleted successfully. Can you give me any idea how I can remove them from my computer? Keep it in the forums, so everyone benefitsBecome a BleepingComputer fan: Facebook and Twitter Back to top #11 maroper maroper Topic Starter Members 45 posts OFFLINE Local time:02:59 AM Posted

Hawk :beer: Vista will never be gone as long as Windows 7 is here! Huntbar Started by maroper , Feb 18 2009 11:39 PM This topic is locked 14 replies to this topic #1 maroper maroper Members 45 posts OFFLINE Local time:02:59 AM Posted Back to top #10 bellaluca bellaluca Member Members 26 posts Posted 02 August 2004 - 07:52 PM http://www.pcpitstop...879LWBB8VUS0UZE Hey Hawk....I did the schtuff you suggested...found webtools....uninstalled it....didnt to cleanup...have to back Arris SB8200, Cox certified [Cox] by odog469. anchor

Should I just let AdwareSafe remove everything? O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Instant Internet by FiOS [VerizonFiOS] by Branch847. Double-click that icon to launch the program.If asked to update the program definitions, click "Yes".

click find and search for "wtools" 6. C:\Program Files\STC\log6.txt (Fake.Dropped.Malware) -> Quarantined and deleted successfully. C:\Program Files\iWon\iWonSlot\Cache\00790E99.wav (Adware.iWon) -> Quarantined and deleted successfully. Failure to reboot normally (not into safe mode) will prevent MBAM from removing all the malware.

DO NOT perform a scan yet.Reboot your computer in "Safe Mode" using the F8 method. I Fix 4 U, Sep 14, 2004 #12 rbochner Thread Starter Joined: Jun 27, 2004 Messages: 18 I was in safe mode (plain safe mode, not the one with the networking Did you disable System Restore? :beer: Give it a try & see oatman: http://www.download....4-10247783.html It doesn't remove as you indicated but IMHO, it is much better than an online scan. rbochner, Sep 13, 2004 #9 I Fix 4 U Joined: Jul 19, 2004 Messages: 5,646 ok then here are my instructions. 1.

C:\Program Files\iWon\iWonBar\Cache\00491C6E (Adware.iWon) -> Quarantined and deleted successfully. Double-click on the hyperlink for Download Installer and save SASDEFINITIONS.EXE to your desktop. Allow the setup.exe to load if asked by any of your security programs.The Express scan will automatically begin. (This is a short scan of files currently running in memory, boot sectors, C:\Program Files\iWon\iWonSlot (Adware.iWon) -> Quarantined and deleted successfully.

Thread Status: Not open for further replies. ican see it in your hjt log. Back to top #15 Jacee Jacee Madam Admin Maude Admins 28,147 posts Gender:Female Posted 02 August 2004 - 11:16 PM http://www.pchell.co.../wintools.shtml WinTools and HuntBar...... then exit regedit and search (start menu search) for all files and folders and search for wintools.

C:\Program Files\iWon\iWonSlot\Cache\00790CA5.bmp (Adware.iWon) -> Quarantined and deleted successfully. Click online, Search for updates, Download all available updates. http://www.kephyr.co...bar/index.phtml Regards, Hawk :beer: Vista will never be gone as long as Windows 7 is here! http://www.pcpitstop...879LWBB8VUS0UZE Back to top #9 Hawk Hawk Advanced Member Anti-Spyware Brigade 10,619 posts Gender:Male Location:THE GREAT WHITE NORTH Posted 02 August 2004 - 05:59 PM Ah, this doesn't look too good.

HKEY_CLASSES_ROOT\CLSID\{10125c2e-6821-4070-b24e-2e992501ad55} (Adware.Iwon) -> Quarantined and deleted successfully. Page 1 of 3 1 2 3 Next > Advertisement rbochner Thread Starter Joined: Jun 27, 2004 Messages: 18 You helped me once before and I'm hoping you can again. Vista will never be gone as long as Windows 7 is here! C:\Program Files\iWon\iWonBar\Cache\007ABBFB.bmp (Adware.iWon) -> Quarantined and deleted successfully.

i usually fix stuff like this but i hate wintools. Also make sure that the System Files and Folders are showing / visible. A menu will appear with several options.

Ran Search and Destroy in advanced mode and fixed all problems.

To do this, restart your computer and after hearing your computer beep once during startup (but before the Windows icon appears) press the F8 key repeatedly. instructions coming shortly I Fix 4 U, Sep 13, 2004 #8 rbochner Thread Starter Joined: Jun 27, 2004 Messages: 18 Ok. C:\Program Files\STC\log2.txt (Fake.Dropped.Malware) -> Quarantined and deleted successfully. go to files and click export, select all, and save it as a file in a good place (this is a backup) 4.

rbochner, Sep 14, 2004 #11 I Fix 4 U Joined: Jul 19, 2004 Messages: 5,646 i dont know about flash, but i think if you go back in safemode and keep Back to top #3 bellaluca bellaluca Member Members 26 posts Posted 02 August 2004 - 03:04 PM ....okay, i'm freakin' here....i ran all these tests, got some spydoctor, spybot s&d, ad-aware....they Click "OK" and then click the "Finish" button to return to the main menu.If asked if you want to reboot, click "Yes" and reboot normally.To retrieve the removal information after reboot, Download CleanUp!

After doing this, we would appreciate if you post a link to your log back here so we know that your getting help from the HJT Team.Please be patient. Several functions may not work. Site Changelog Community Forum Software by IP.Board Sign In Use Facebook Use Twitter Need an account? Click on “Save Log” and then save it to NotePad.

Hawk :beer: Vista will never be gone as long as Windows 7 is here! Before I post my HijackThis log, a quick question as to whether this will clear up my flash problem. I would suggest you do an AV & spyware scan as your CPU is still running a bit high. Yesterday, I went to My Computer, clicked on remove or add programs and deleted Bearshare.

HKEY_CLASSES_ROOT\Interface\{9388907f-82f5-434d-a941-bb802c6dd7c1} (Adware.ISTBar) -> Quarantined and deleted successfully. It is the FIRST one in FREE TOOLS below.