![]() |
IOBit Software
|
|
|
||||||
| Malware Removal Malware removal forum. Please see the READ ME FIRST thread before you post. Forum is staffed by a small number of volunteers, please be patient. |
![]() |
|
|
Thread Tools | Display Modes |
|
#1
|
|||
|
|||
|
I need help removing a toolbar that got installed earlier today - mixi DJ. I uninstalled it in control panel, but it is still showing up. I have no idea how to get rid of these, and I hope someone can help me.
I have read the READ AND RUN ME FIRST Malware removal guide and am pretty sure I have followed all of the instructions, and have what I think are the right logs attached here. I am running Windows 7 on a 64 bit operating system. Any help would be greatly appreciated. Deb |
| Sponsored links |
|
|
|
#2
|
||||
|
||||
|
Can you please attach the MGlogs.zip from running MGTools.exe.
__________________
Have we been helpful and you would like to show your gratitude? Support MajorGeeks Majorgeeks Geek Wear. Hats, T-Shirts, Hoodies “The truth is, everyone is going to hurt you. You just got to find the ones worth suffering for.” |
|
#3
|
|||
|
|||
|
I was afraid I didn't have all the right stuff attached. Sorry about that.
|
|
#4
|
||||
|
||||
|
Uninstall the below:
Rerun Hitman and have it delete Malware remnants. Also, under the "Repairs" section, what options does it give you for: Quote:
Fix items using RogueKiller.Double-click RogueKiller.exe to run. (Vista/7 right-click and select Run as Administrator) When it opens, press the Scan button Now click the Registry tab and locate this 1 detection:
Place a checkmark each of these items, leave the others unchecked. Now press the Delete button. When it is finished, there will be a log on your desktop called: RKreport[2].txt Attach RKreport[2].txt to your next message. (How to attach) Reboot the machine. Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished): Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
After clicking Fix exit HJT. Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry. Quote:
to the registry. If you do not get a success message, it definitely did not work. Delete these:
Please download Junkware Removal Tool to your desktop.
Rerun Hitman, just a scan and attach log. Same for RogueKiller. Now run the C:\MGtools\GetLogs.bat file by double clicking on it. (Right click and run as admin if using Vista or Windows7) Then attach the new C:\MGlogs.zip file that will be created by running this. Let me know of any problems you may have encountered with the above instructions and also let me know how things are running now!
__________________
Have we been helpful and you would like to show your gratitude? Support MajorGeeks Majorgeeks Geek Wear. Hats, T-Shirts, Hoodies “The truth is, everyone is going to hurt you. You just got to find the ones worth suffering for.” |
| The Following User Says Thank You to Kestrel13! For This Useful Post: | ||
zdeb99 (02-19-13) | ||
|
#5
|
|||
|
|||
|
I am in the process of trying to do what you listed in your post, but it is going to take me another day to do it. I will post the answers to your specific questions as soon as I can. Thank you so much for taking the time to help me - I'm just so darn busy right now
![]() Deb |
| Sponsored links |
|
|
|
#6
|
||||
|
||||
|
OK Deb, I'll be floating about somewhere whenever you are ready.
__________________
Have we been helpful and you would like to show your gratitude? Support MajorGeeks Majorgeeks Geek Wear. Hats, T-Shirts, Hoodies “The truth is, everyone is going to hurt you. You just got to find the ones worth suffering for.” |
| The Following User Says Thank You to Kestrel13! For This Useful Post: | ||
zdeb99 (02-23-13) | ||
|
#7
|
|||
|
|||
|
I finally was able to complete all the steps, though I think something was wrong before I got all the way through. When I started the steps, the toolbar was still in place, but I had only done one or two things, and the toolbar was gone. I thought it was ok until I ran some of the programs you mentioned and things you had seen were not showing up for me.
Starting at the beginning, for the following, it was "ignore" or "repair" under the "Repairs" section, what options does it give you for: Quote: Repair Winsock HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9 hosts C:\Windows\system32\drivers\etc\ --------------------- The following items you mentioned were nowhere to be found: TASK][SUSP PATH] Updater19962.exe : C:\Users\Deb\AppData\Local\Updater19962\Updater19962.exe /extensionid=19962 /extensionname="Supreme Savings" /chromeid=ihkeoookbpemkdccdccdmacnidhooohk [7] -> FOUND O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file) O2 - BHO: CrossriderApp0019962 - {11111111-1111-1111-1111-110111991162} - C:\Program Files (x86)\Supreme Savings\Supreme Savings.dll I did receive a success message when running the following: REGEDIT4 [-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{36377DD7-B3EB-42f5-986F-680BAF59BA9D}] And of the following.... Delete these: C:\ProgramData\1ACBAA7916.sys C:\Users\Deb\AppData\Local\Updater19962 C:\Program Files (x86)\Supreme Savings ... only the first one listed was there for me to delete. I have attached the logs you requested. The only thing I notice now is that some online games I play load very slowly or sometimes don't load at all and seem frozen. If I mess with it enough, it usually loads, but I never noticed that before all of this. Thank you for your help and your patience with me. I appreciate it! Deb |
|
#8
|
||||
|
||||
|
If you are not having any other malware problems, it is time to do our final steps:
__________________
Have we been helpful and you would like to show your gratitude? Support MajorGeeks Majorgeeks Geek Wear. Hats, T-Shirts, Hoodies “The truth is, everyone is going to hurt you. You just got to find the ones worth suffering for.” |
| The Following User Says Thank You to Kestrel13! For This Useful Post: | ||
zdeb99 (02-27-13) | ||
|
#9
|
|||
|
|||
|
I waited a few days to make sure everything was running smoothly. Since it was, I just completed the final steps.
Thank you so much for helping, Kestrel13! - I appreciate it very much! Have a great day!! Deb ![]() |
|
#10
|
||||
|
||||
|
Most welcome, Deb. Safe surfing!
![]()
__________________
Have we been helpful and you would like to show your gratitude? Support MajorGeeks Majorgeeks Geek Wear. Hats, T-Shirts, Hoodies “The truth is, everyone is going to hurt you. You just got to find the ones worth suffering for.” |
| Sponsored links |
|
|
![]() |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| "mixi.dj toolbar" how do i remove it? | Twix | Malware Removal | 6 | 02-15-13 03:06 |
| Removing Gaming Harbor Toolbar after Unistall Fails | rydangel | Software | 4 | 09-10-09 08:34 |
| removing Security 7.1 toolbar | Lynn Kerber | Malware Removal | 21 | 11-13-07 17:48 |
| Removing Security Toolbar 7.1 | helen01bond | Malware Removal | 1 | 10-21-07 21:46 |
| Toolbar - removing items | jdeh | Software | 13 | 10-05-04 23:29 |