Home > General > UDC6_0001_D19M1908NetInstaller.exe


Place a check against each of the following, making sure you get them all and not any others by mistake:R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = nun-4oko70kdqu1R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = nun-4oko70kdqu1:22R3 - Click next to use the default install location. Reboot your System Please post the Panda Result for me to check, Thanks. Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll O2 - BHO: Yahoo!

Enter your Country. Solved: Need help with WinAntivirusPro PLEASE Discussion in 'Virus & Other Malware Removal' started by r8rfnatc, Feb 1, 2007. Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: BhoApp Class - {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2} - C:\Program Files\WinBudget\bin\matrix.dll O2 - BHO: F:\Documents and Settings\John\Cookies\[email protected][1].txt -> TrackingCookie.Spylog : Cleaned. http://www.exterminate-it.com/malpedia/files/activex-malware

C:\System Volume Information\_restore{35A4A879-B4E1-4F85-811E-93C3722DA63B}\RP355\A0045538.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). Show Ignored Content Page 1 of 2 1 2 Next > As Seen On Welcome to Tech Support Guy! Place a check against each of the following, making sure you get them all and not any others by mistake:O9 - Extra button: (no name) - {6685509E-B47B-4f47-8E16-9A5F3A62F683} - file://C:\Program Files\Ebates_MoeMoneyMaker\Sy350\Tp350\scri350a.htm (file

Then click the "Apply all actions" button to quarantine everything detected. Enter your e-mail address and click send. For Automatic ActiveX Malware Removal please use Exterminate It! HKU\S-1-5-21-202323283-1119835325-3185786132-1006\Software\WinAntiVirus Pro 2006 -> Adware.WinAntiVirus : Cleaned with backup (quarantined).

Using this tool incorrectly could lead to disastrous problems with your operating system such as preventing it from ever starting again. C:\System Volume Information\_restore{35A4A879-B4E1-4F85-811E-93C3722DA63B}\RP355\A0045535.sys -> Adware.WinAntiVirus : Cleaned with backup (quarantined). F:\Documents and Settings\John\Cookies\[email protected][1].txt -> TrackingCookie.247realmedia : Cleaned. C:\System Volume Information\_restore{35A4A879-B4E1-4F85-811E-93C3722DA63B}\RP337\A0034726.exe -> Downloader.Small : Cleaned with backup (quarantined).

F:\Documents and Settings\John\Cookies\[email protected][2].txt -> TrackingCookie.Fastclick : Cleaned. Combofix Log Started by crabbo , Feb 18 2008 02:00 PM Please log in to reply 1 reply to this topic #1 crabbo crabbo Members 1 posts OFFLINE Local time:06:34 This will create a folder named WinPFind on your desktop. I'll be a customer for life.

Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O9 - Extra button: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe O9 - Extra button: Copy all the text contained in the code box below to your Clipboard by highlighting it and pressing (Ctrl+C): Folders to delete: C:\WINDOWS\Downloaded Program Files\CONFLICT.1 C:\WINDOWS\Downloaded Program Files\CONFLICT.2 Files to delete: IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O3 - Toolbar: Yahoo! Adam Smith Glasgow, 1760 Back to top #5 I_am_pancake2 I_am_pancake2 Member Full Member 5 posts Posted 07 July 2007 - 06:22 PM Thanks for the help, sorry the reply took so

No, create an account now. We recommend you to use DriveCleaner Removal Tool for safe problem solution. Go up to "File > Export" Make sure in that window there is a tick next to "All" under Export Branch. Page 3 of 14 < Prev 1 ← 2 3 4 5 6 → 14 Next > Advertisement kim-smells Thread Starter Joined: Oct 3, 2006 Messages: 149 here's the latest Panda

To get rid of DriveCleaner, you should: 1. Advertisements do not imply our endorsement of that product or service. In your next post can you please Select The Reply Button to the Right of my name This will send me an email of your post Copy and Paste this Could not process line: C:\WINDOWS\Downloaded Program Files\UWA6P_0001_N91M1807NetInstaller.exe Status: 0xc0000034 File C:\WINDOWS\Downloaded Program Files\UWA7P_0001_N91M0809NetInstaller.exe not found!

Hi - pop ups seem to have stopped and my google toolbar didn;t need to be reinstalled. You may have performed some of these steps already. Stay logged in Sign up now!

Richard D., Western Australia ActiveX Malware- Files List This is a complete list of ActiveX Malware files collected by Exterminate It!.

Attached Files: FixKim.zip File size: 305 bytes Views: 10 Cookiegal, Oct 11, 2006 #33 kim-smells Thread Starter Joined: Oct 3, 2006 Messages: 149 Whilst in Killbox, i tried to delete : This log file will be located at C:\avenger.txt The Avenger will also have backed up all the files, etc., that you asked it to delete, and will have zipped them and Hello inogen Sorry I missed your post I did stop watching the thread after a week.. Great job!

Companion2008-02-07 17:51 . 2008-02-07 17:51

d-------- C:\Documents and Settings\Owner.PAUL-CZ1P199GR1\Application Data\Yahoo!2008-02-07 17:49 . 2008-02-07 17:49 d-------- C:\Program Files\BT Broadband Talk Softphone2008-02-07 17:49 . 2008-02-07 17:49 d-------- C:\Documents and Settings\Owner.PAUL-CZ1P199GR1\Application IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O3 - Toolbar: Yahoo! These conventions are explained here. [%WINDOWS%]\Downloaded Program Files\popcaploader.dll [%SYSTEM%]\npcopyv.exe [%SYSTEM%]\npdownv.exe [%SYSTEM%]\npz.ocx [%SYSTEM%]\npnuninst.exe [%SYSTEMX86%]\npz.ocx [%SYSTEMX86%]\NPDownV.exe [%SYSTEMX86%]\npcopyv.exe [%SYSTEMX86%]\npnuninst.exe [%WINDOWS%]\Downloaded Program Files\CONFLICT.1\popcaploader.dll [%WINDOWS%]\Downloaded Program Files\RdxIE.dll [%WINDOWS%]\downloaded program files\cpnmgr.dll [%WINDOWS%]\Downloaded Program Files\ax_mjpeg.ocx [%WINDOWS%]\Downloaded Program Files\ffav.dll Click OK at any PendingFileRenameOperations prompt (and please let me know if you receive this message!). If your computer does not restart automatically, please restart it manually.

I still have not had any popups or attacks happen though. --------------------------------------------------------- AVG Anti-Spyware - Scan Report --------------------------------------------------------- + Created at: 4:22:00 PM 2/6/2007 + Scan result: C:\Program Files\Common Files\WinAntiVirus Pro Then click the "Start Update" button. Click Apply, and then click OK. Download WinPFind.exe to your desktop and double click on it open it and then select “extract” to extract the files.