Friday 31.10.2025 / 06:32 
		
			
		 
	 
					
					  
							
							  
	
		
		
			 
	
							
							
								
									
										
											
												afterdawn.com  > forums  > software, operating systems and more  > windows - virus and spyware problems  > need help with spyware... hjt log  
											
												
	
	
						 				 	
	
	
	
		
			
			
			
		 
	
												 
															
															
	
			
			
				
					Need help with Spyware... HjT Log
				 
				
				
					
				 
				
			 
			
			
			
				
					
					
				 
			
			
			
			
			
				
				
					
				
				
				
				
					
						
							
								
							
							
								Member
								
									1 product review 
								
							
							 
						3. June 2006 @ 14:30 Link to this message 
								  
								 
					
					
					
						
						
						
							
							Hey, need some help. Trying to fix a computer for this girl I know... ;) ;) nudge nudge whistle whistle
http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://google.com/ http://www.spartanco.com/247reg.asp http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://ka.bar.need2find.com/KA/menusearch.html?p=KA http://www.spartanco.com/247reg.asp http://click.getmirar.com  (HKLM)
http://click.mirarsearch.com  (HKLM)
http://redirect.mirarsearch.com  (HKLM)
http://download.games.yahoo.com/games/clients/y/pote_x.cab http://go.microsoft.com/fwlink/?linkid=39204 http://ak.imgfarm.com/images/nocache/funwebproducts/ei-2/CursorMa... http://cabs.elitemediagroup.net/cabs/mediaview.cab http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/... http://launch.gamespyarcade.com/software/launch/alaunch.cab http://www.shockwave.com/content/tumblebugs/axhost.cab http://awbeta.net-nucleus.com/FIX/WinATS.cab http://zone.msn.com/binFramework/v10/ZIntro.cab34246.cab http://zone.msn.com/bingame/apop/default/popcaploader_v6.cab http://fdl.msn.com/zone/datafiles/heartbeat.cab http://h30043.www3.hp.com/aio/en/check/qdiagh.cab?326 http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab  
							
						 
						
						
						
						 
					 
				
				
			
				
				
				
					
						
							Advertisement
							 
						 
					
						
							
							
						 
					 
				
				
				
					
						
							
								
							
							
								Member
								
									1 product review 
								
							
							 
						3. June 2006 @ 16:08 Link to this message 
								  
								 
					
					
					
						
						
						
							
							I used some stuff (Norton, etc) and deleted a bunch of crap. Here's a revised log::
HijackThis  v1.99.1
http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://google.com/ http://www.spartanco.com/247reg.asp http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://ka.bar.need2find.com/KA/menusearch.html?p=KA http://www.spartanco.com/247reg.asp http://click.getmirar.com  (HKLM)
http://click.mirarsearch.com  (HKLM)
http://redirect.mirarsearch.com  (HKLM)
http://download.games.yahoo.com/games/clients/y/pote_x.cab http://go.microsoft.com/fwlink/?linkid=39204 http://ak.imgfarm.com/images/nocache/funwebproducts/ei-2/CursorMa... http://cabs.elitemediagroup.net/cabs/mediaview.cab http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/... http://launch.gamespyarcade.com/software/launch/alaunch.cab http://www.shockwave.com/content/tumblebugs/axhost.cab http://awbeta.net-nucleus.com/FIX/WinATS.cab http://zone.msn.com/binFramework/v10/ZIntro.cab34246.cab http://zone.msn.com/bingame/apop/default/popcaploader_v6.cab http://fdl.msn.com/zone/datafiles/heartbeat.cab http://h30043.www3.hp.com/aio/en/check/qdiagh.cab?326 http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab  
							
						 
						
						
						
						 
					 
				
				
			
				
				
				
				
				
					
						
							
								-kemisti-
							
							
								AfterDawn Addict
								
									
								
							
							 
						4. June 2006 @ 01:14 Link to this message 
								  
								 
					
					
					
						
						
						
							
							Hi Moomoo2
http://www.atribune.org/ccount/click.php?id=7  Look2Me-Destroyer.exe to your desktop.
http://www.merijn.org/files/bfu.zip  Brute Force Uninstaller to your desktop. (rightclick on this link and choose save as, if using IE save target as)
Extract All 
BFU 
Un check the "Show Extracted Files" box and then click "Finish".
http://downloads.subratam.org/Lon/qooFix.bat  qoofix.bat (rightclick on this link and choose save as, if using IE save target as)
(Qoolfix autofix)  and follow the prompts.
HijackThis  log. 
							
						 
						
						
						
						 
					 
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								Member
								
									1 product review 
								
							
							 
						4. June 2006 @ 07:43 Link to this message 
								  
								 
					
					
					
						
						
						
							
							Hey, seems to be pretty good. What do you think?
HijackThis  v1.99.1
http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://google.com/ http://www.spartanco.com/247reg.asp http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://ka.bar.need2find.com/KA/menusearch.html?p=KA http://www.spartanco.com/247reg.asp http://click.getmirar.com  (HKLM)
http://click.mirarsearch.com  (HKLM)
http://redirect.mirarsearch.com  (HKLM)
http://download.games.yahoo.com/games/clients/y/pote_x.cab http://go.microsoft.com/fwlink/?linkid=39204 http://ak.imgfarm.com/images/nocache/funwebproducts/ei-2/CursorMa... http://cabs.elitemediagroup.net/cabs/mediaview.cab http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/... http://launch.gamespyarcade.com/software/launch/alaunch.cab http://www.shockwave.com/content/tumblebugs/axhost.cab http://awbeta.net-nucleus.com/FIX/WinATS.cab http://zone.msn.com/binFramework/v10/ZIntro.cab34246.cab http://zone.msn.com/bingame/apop/default/popcaploader_v6.cab http://fdl.msn.com/zone/datafiles/heartbeat.cab http://h30043.www3.hp.com/aio/en/check/qdiagh.cab?326 http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab  
							
						 
						
						
						
						 
					 
				
				
			
				
				
				
				
				
					
						
							
								-kemisti-
							
							
								AfterDawn Addict
								
									
								
							
							 
						4. June 2006 @ 09:37 Link to this message 
								  
								 
					
					
					
						
						
						
							
							Not good, but better, yes :)
HjT  (do a system scan only, checkmark these and press fix checked):
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:
http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://searchbar.findthewebsiteyouneed.com http://ka.bar.need2find.com/KA/menusearch.html?p=KA http://click.getmirar.com  (HKLM)
http://click.mirarsearch.com  (HKLM)
http://redirect.mirarsearch.com  (HKLM) 
http://ak.imgfarm.com/images/nocache/funwebproducts/ei-2/CursorMa... http://cabs.elitemediagroup.net/cabs/mediaview.cab http://awbeta.net-nucleus.com/FIX/WinATS.cab  
http://download.ewido.net/ewido-signatures-full-current.exe   Make sure to close Ewido before installing the update.
HjT  log. 
							
						 
						
						
						
						 
					 
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								Member
								
									1 product review 
								
							
							 
						4. June 2006 @ 18:56 Link to this message 
								  
								 
					
					
					
						
						
						
							
							Okay well then... Got some more new logs :)
HijackThis  v1.99.1
http://www.spartanco.com/247reg.asp http://www.spartanco.com/247reg.asp http://www.spartanco.com/247reg.asp http://download.games.yahoo.com/games/clients/y/pote_x.cab http://go.microsoft.com/fwlink/?linkid=39204 http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/... http://launch.gamespyarcade.com/software/launch/alaunch.cab http://www.shockwave.com/content/tumblebugs/axhost.cab http://zone.msn.com/binFramework/v10/ZIntro.cab34246.cab http://zone.msn.com/bingame/apop/default/popcaploader_v6.cab http://fdl.msn.com/zone/datafiles/heartbeat.cab http://h30043.www3.hp.com/aio/en/check/qdiagh.cab?326 http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab  
							
						 
						
						
						
						 
					 
				
				
			
				
				
				
				
				
					
						
							
								-kemisti-
							
							
								AfterDawn Addict
								
									
								
							
							 
						4. June 2006 @ 23:36 Link to this message 
								  
								 
					
					
					
						
						
						
							
							Almost there :)
O23 - Service: RemoteRegBck - Unknown owner - C:\WINDOWS\regsvc.exe (file missing) 
HjT  log. 
							
						 
						
						
						
						 
					 
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								Member
								
									1 product review 
								
							
							 
						11. June 2006 @ 09:04 Link to this message 
								  
								 
					
					
					
						
						
						
							
							Oops, meant to drop you a line back. The day that you last posted I actually had to return the computer to its owner. However, I did what you last said to do, (I just did not have the net access to send you the HjT  log.) However, the last step was successful. 
HjT  log?
HijackThis  v1.99.1
http://www.emachines.com http://www.wizards.com/magic http://www.emachines.com http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.1.1.74.cab http://pictures01.aim.com/ygp/aol/plugin/upf/AOLUPF.en-US-AIM.9.5... HjT  logs? Any resources you could link me to? :D
 
							
						 
						
						
						
						 
					 
				
				
			
				
				
				
					
						
							Advertisement
							 
						 
					
						
							
							  
					 
				
				
				
					
						
							
								-kemisti-
							
							
								AfterDawn Addict
								
									
								
							
							 
						11. June 2006 @ 09:30 Link to this message 
								  
								 
					
					
					
						
						
						
						
						
						
						 
					 
				
				
			
			
			
			
			
		
		
	
			
			
		
	 
 
	
	
	
		
			
		 
	 
	
	
	
		
			  
		 
	
	
					
						
							afterdawn.com  > forums  > software, operating systems and more  > windows - virus and spyware problems  > need help with spyware... hjt log