| Forum Home | ||||
| Press F1 | ||||
| Thread ID: 48727 | 2004-08-30 23:41:00 | www.errorplace.com on browser - spyware? | nomad (3693) | Press F1 |
| Post ID | Timestamp | Content | User | ||
| 267213 | 2004-09-01 09:18:00 | Here are some more programs to stop things installing without your permission plus two online trojan scans at the bottom BhoDemon= here (www.siena.edu) A2 here (www.emsisoft.com) SpywareBlaster here (www.javacoolsoftware.com) cwshredder here (www.spywareinfo.com) onlinescan (www.anti-trojan.net) scan (www.windowsecurity.com) hth |
johnboy (217) | ||
| 267214 | 2004-09-01 09:55:00 | I can see two or three entries there that look a bit suss but I'm too tired to go through your HijackThis list properly after having just done my fourth cleanup in two days . Do what the others have suggested regarding cleaners - I agree with Pheonix about DAP, that would be one of the first to go in my opinion . I would also give Stinger a run in safe mode after the AV, etc . After that, do another HJT scan and get onto Google and do a search for all the entries to find out what they are . If they come up as spyware or whatever put the tick in to remove them . HJT is the last thing you need to do to "mop up" after running everything else first . Stay offline after getting all the updates until you have fixed it . Two of the computers I have just done needed the entire works thrown at them before I got rid of everything - one or two tools just can't get them all . |
Susan B (19) | ||
| 267215 | 2004-09-01 10:25:00 | DAP is no biggee. just an adware supported program. debatable if its spyware or not. certainly not a nasty that would cause problems, at worse a privacy concern. | tweak'e (174) | ||
| 267216 | 2004-09-01 11:16:00 | oh .. crap. i updated virus scan, my old one was only a month or so old found nothing. now it found 6 viruses when i initialised spybot on bootup. i have wmplayer.exe, winproc32.exe, atn_4_mm.exe, ccaa.exe, yloc.exe (spelling?). | nomad (3693) | ||
| 267217 | 2004-09-01 11:19:00 | i can't clean any of the files, delete or quarantine... ok .. time to listen and take do the advice i received. thanks guys A+!! safe mode too. | nomad (3693) | ||
| 267218 | 2004-09-01 11:31:00 | Nice little virus killer, Stinger (vil.nai.com),that doesn't need to install, just run. Gets most new and common virus and worms. Then you can use your updated AV or an Online AV scan (housecall.antivirus.com) . | Pheonix (280) | ||
| 267219 | 2004-09-01 11:47:00 | Removal info for winproc32.exe here (www.pestpatrol.com) Wmplayer is windows media player have you spelled the others correctly?? Pest patrol search site just copy and paste the files name in here (pestpatrol.com) hth |
johnboy (217) | ||
| 267220 | 2004-09-01 11:52:00 | Sorry wmplayer could also be part of a trojan here (pestpatrol.com) | johnboy (217) | ||
| 267221 | 2004-09-01 12:12:00 | cwshredder got rid of WMplayer i think. i really don't know how many viruses i do have. 6 was picked up with spybot and mcafee. mcafee has picked up more. those i think are right spelling except perhaps the last one. mcafee has picked up also 911 virus that is , also e9xr(1).chm 911 IS => 9-1(1).exe they in the windows directory. mcafee can't even clean them or delete, with that link i cannot get rid of winproc32 (delete) its not running. i checked process. i gonna do the safe mode now and the boot disk mcafee. |
nomad (3693) | ||
| 267222 | 2004-09-01 12:23:00 | If you can find the file you want deleted and you are unable to you may want to try this . This info is for XP but should apply to 2000 depending on your shut down procedure . -Open a Command Prompt window . -Close any open windows . -Close explorer . exe there are two ways -1--start > Turn off computer, hold down CTRL+SHIFT+ALT and press the CANCEL button . -2--CTRL+ALT+DEL and End task in the process tab -Go back to the Command Prompt window and change to the directory where the undeletable file is located in . At the command prompt type del <filename> . -Go back to Task Manager, click File, New Task and enter EXPLORER . EXE to restart the GUI shell . |
Rob99 (151) | ||
| 1 2 3 | |||||