really need some help here...

Discussion in 'Malware Help (A Specialist Will Reply)' started by pleasehelp2007, Jan 8, 2007.

  1. pleasehelp2007

    pleasehelp2007 Private E-2

    I am new here and I am not to savy on all this technical stuff, so bare with me.

    I use AOL and my ex has been hacking into my computer and changing my password and reading all my email and who knows what else.

    What can I use to stop this?????

    I am so frustrated and feel so violated.

    Any help from here would be so greatly apprieciated :)
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    This is not really a malware problem!

    You need to change your AOL password since your ex must have it. The best thing to do would really be to change your screen name and password.
     
  3. pleasehelp2007

    pleasehelp2007 Private E-2

    I have done that a TON of times. He has some kind of program that can break into my account and change my password and then allows him total access.
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Are you talking about breaking into your AOL account or are you talking about breaking into your PC?
     
  5. pleasehelp2007

    pleasehelp2007 Private E-2

    directly into my AOL account
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    If you have changed your screen name and you have changed your passwords, that would imply your ex has access to your PC and is some how monitoring what you are doing. Is your PC phyiscally accessible by your ex? If not, perhaps a keylogger was installed along with remote access capability.

    I suggest you work thru the below so we can gather more information. Also tell me how many user accounts are on your PC, and is on there for you ex? Also is the Guest account disabled?

    Please follow our standard cleaning procedures which are necessary for us to provide you support. Also there are steps included for installing, running, and posting HijackThis logs as attachments.
    • Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support
    • Make sure you check version numbers and get all updates.
    • Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.
    • After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps in the below link to properly use HijackThis and attach a log:
    Downloading, Installing, and Running HijackThis

    Make sure you also rename HijackThis.exe as suggested in the procedures. Use analyse.exe for the new name. This is very important due to some new infections going around.


    • When you return to make your next post, make sure you attach the following logs and that you have run these scans in the following order too:
      • CounterSpy
      • AVG Antispyware log - ONLY IF NEEDED you were not able to run CounterSpy
      • Bitdefender - from step 6
      • Panda Scan - from step 6
      • runkeys.txt - the log from GetRunKey.bat
      • newfiles.txt - the log from ShowNew.bat
      • HijackThis
    NOTE: You can only attach 3 files in a single message so it will require that you use two messages to attach all of these logs!
     
  7. pleasehelp2007

    pleasehelp2007 Private E-2

    If you have changed your screen name and you have changed your passwords, that would imply your ex has access to your PC and is some how monitoring what you are doing. Is your PC phyiscally accessible by your ex? If not, perhaps a keylogger was installed along with remote access capability.

    No, it is not physically accessible at all.


    I suggest you work thru the below so we can gather more information. Also tell me how many user accounts are on your PC, and is on there for you ex? Also is the Guest account disabled?

    What do you mean by accounts? Is it how many email addys I have?
    There isnt any on here for my ex and I dont know how to disable the guest account.


    Please follow our standard cleaning procedures which are necessary for us to provide you support. Also there are steps included for installing, running, and posting HijackThis logs as attachments.

    This is alot of stuff to do - is it all neccesary? If so, I will do what ever it takes to stop this creep from doing this anymore.
     
  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    No! How many user account exist on your PC for login. Don't forget there is also an account named Administrator which only appears when you boot in safe mode. And if your ex has the password for this account or it has not passord, then that is a big problem.

    Well actually at this point I don't even know what operating system you have since you never told us. But in Windows XP from Control Panel, User Accounts how many accounts do you see and does the Guest account show as Guest account is off


    It's the only way we can check to see in greater detail what may or may not have been done to your PC and if any malware is installed. Keyloggers (especially commercial ones) can be difficult to locate and remove. Also a remote desktop feature may have been activated and your ex could be getting into your PC that way. However that would not give him/her the ability to get into your AOL account unless you have it setup to automatically log in without entering the password (which would be a very bad thing to do because it gives you zero security).
     
  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Also if your ex is chaning your password to AOL, then how are you able to get into AOL?
     
  10. pleasehelp2007

    pleasehelp2007 Private E-2

    Quote:
    No! How many user account exist on your PC for login. Don't forget there is also an account named Administrator which only appears when you boot in safe mode. And if your ex has the password for this account or it has not passord, then that is a big problem.

    Ok, I went and looked. I am the only computer administrator and the guest option is in off mode.


    Quote:
    Well actually at this point I don't even know what operating system you have since you never told us. But in Windows XP from Control Panel, User Accounts how many accounts do you see and does the Guest account show as Guest account is off

    It is Windows XP



    Quote:
    It's the only way we can check to see in greater detail what may or may not have been done to your PC and if any malware is installed. Keyloggers (especially commercial ones) can be difficult to locate and remove. Also a remote desktop feature may have been activated and your ex could be getting into your PC that way. However that would not give him/her the ability to get into your AOL account unless you have it setup to automatically log in without entering the password (which would be a very bad thing to do because it gives you zero security).

    I dont have it stored at all - I manually log in each time.
    I went to the links you gave to do these scans, and forgive me for being stupid here, but they go from one link to the next and I have no idea what so ever where to begin as far as what to download. I have come across a lot of differant things to do and I am confused as where to start or what to do.
     
  11. pleasehelp2007

    pleasehelp2007 Private E-2

    Quote:
    Also if your ex is chaning your password to AOL, then how are you able to get into AOL?

    I would be online and then all of a sudden I would be kicked off. I would go and type in my password and it would not work, so then I would have to go through the process of creating a new one. Then within a matter of minutes I would be kicked off again and have to go through it all over again.
    It hasnt happened in a few months now, but I have no idea what is going on now if he is still getting in another way now.
     
  12. pleasehelp2007

    pleasehelp2007 Private E-2

    Also, from what I have heard, alls one need to hack into someones e-mail account is there e-mail address. There is apparently programs out there that can do this or there is directions. I did a google search - hacking computers and there is a ton of info out there on how to do it.....problem lies is how do you prevent it besides the fact of not letting them find out your email address?
     
  13. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Please use the quote icon to rap messages in quotes when necessary. It is at the top of the message edit window. It make it easier to read who is saying what.
    Yes but are there other user accounts showing too? Also have you changed your PC password after breaking up with your EX? If not, change it now. Also change the password to the Administrator login, which again can only be viewed when you boot in safe mode.


    You need to start at the very beginning of that thread and read everything and work on everything ONE STEP at a time from the beginning don't skip around and don't jump ahead. The beginning of the thread is where you begin.
     
  14. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    What process is that? If you cannot get logged in because your password was changed, what do you do call them on the phone.
     
  15. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You will have to speak to AOL and ask them why their security is so bad that passwords can easily be cracked.

    If you changed your screen name how is your ex finding out what your new screen name is to even attack you. Are your friends giving it to him? (If so, change it and don't give it to those friends anymore because they are not friends.)

    If you run the steps in the READ & RUN ME we will have a better idea if your PC is protected or unprotected and if you are infected with malware or if you are clean.
     
  16. pleasehelp2007

    pleasehelp2007 Private E-2

    QUOTE=chaslang;913135]Please use the quote icon to rap messages in quotes when necessary. It is at the top of the message edit window. It make it easier to read who is saying what.


    [/QUOTE]Yes but are there other user accounts showing too? Also have you changed your PC password after breaking up with your EX? If not, change it now. Also change the password to the Administrator login, which again can only be viewed when you boot in safe mode.


    You need to start at the very beginning of that thread and read everything and work on everything ONE STEP at a time from the beginning don't skip around and don't jump ahead. The beginning of the thread is where you begin.[/QUOTE]

     
  17. pleasehelp2007

    pleasehelp2007 Private E-2

    I had spent litterally hours on the phone with AOL and everyone over there was totally clueless as to what was going on. They could tell the password was changed, but that was it.

    I just changed my screen name within the last week, but I cant get rid of the master screen name and that is the one he was hacking into. So I am afraid as soon as he breaks in again, he will see my new screen name. I havent given it to anyone that would give it to him. That is why I am here to see if anyone has heard of this and how to stop it from happening.
     
  18. pleasehelp2007

    pleasehelp2007 Private E-2

    Quote:
    Originally Posted by pleasehelp2007
    I would be online and then all of a sudden I would be kicked off. I would go and type in my password and it would not work, so then I would have to go through the process of creating a new one. .

    With AOL, there is a online process that you walk through and it asks you a secret security question and after answering that, you go through the process of creating a new password. I even changed that question on the phone with AOL, thinking maybe I had a keylogger, even that didnt work. I changed all the passwords and secret security questions a million times - it didnt matter, somehow it was cracked by some program.
     
  19. pleasehelp2007

    pleasehelp2007 Private E-2

    Am I doing this quote thingy right? LOL
     
  20. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    We cannot help you resolve problems with AOL's lack of security. We actually don't recommend using AOL at all. However you do need to delete or change the master screen name. That is part of your problem. If he knows that then he still knows who you are. You need to talk to AOL and get the master account name changed along with a totally new password too. Also don't use any screen names that you may have used before since he would possibly know them.

    You still need to run the READ & RUN ME if you would like us to check you PC for any form of malware which includes possible keyloggers or remote login access software. We cannot help you without this information because we cannot sit in front of your PC to see what is going on. This is our only visibility as to what is happening.
     
  21. pleasehelp2007

    pleasehelp2007 Private E-2

    I am going to ditch AOL then. I will run the RUN & READ ME and let you know what my findings are.

    Thank you for your help!
     
  22. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome and good luck cancelling AOL. The make it annoyingly difficult and try to convince you to keep it and will even offer it free for a number of months to try and keep you hooked. Tell the person on the line that if they cannot help you stop service that you wish to speak to a supervisor who can help you do what you want.
     
  23. pleasehelp2007

    pleasehelp2007 Private E-2

    I am having a problem here...

    I downloaded everything and now I am at the point of starting to run all of these programs. I did what it said and went into safe mode, but once there it made everything so HUGE that I couldnt even start to run the Ccleaner as I couldnt hit the run cleaner key as it wasnt there as it was so big it couldnt fit the page. What do I do about this?

    Also, when I booted back into normal mode so I could read again, there were programs that came up that said needed authorization to run when windows started. I hope they were the things I just downloaded and not spyware as it said to caution about?
     
  24. pleasehelp2007

    pleasehelp2007 Private E-2

    I also struggled with the getrunkey and the shownew

    I dont know if I did them right at all...
     
  25. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    If you cannot run in safe mode for whatever reason, just use normal bootmode.

    I cannot answer you question about GetRunKey and ShowNew because you did not give me enough information to know what you are referring too.
     
  26. pleasehelp2007

    pleasehelp2007 Private E-2

    Ok - I have been going at this all day!

    I am at the getrunkey and shownew scanning now in the list of directions.

    I opened getrunkey and there is four differant icons to click. I click on them to run and it just goes into this differant window and does nothing.

    I dont think I even did it right as I really didnt understand the directions.

    Any advise please?!
     
  27. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    The directions on the download pages tell you not to do this. You appear to be trying to run the programs from inside the ZIP file which will not work. Also the only files you are to run yourself are GetRunKey.bat and ShowNew.bat. If you are not seeing the .bat, you did not do step 2 of the READ & RUN ME. You MUST EXTRACT all the files from the ZIP files into a folder on your harddisk. We recommended a folder named C:\MGtools but any folder will work as long as all files are extracted from the ZIPs. You can even extract all files from both GetRunKey and ShowNew into the same folder.

    Once you have all files extracted, you need to run Windows Explorer (as explained in the download page) and run the GetRunKey.bat and ShowNew.bat files by double clicking on them from Windows Explorer. The steps must be followed in the order written for them to be as effective as we want.

    Have you run ALL other steps in the READ & RUN ME? Like CounterSpy, Spybot, BitDefender, and PandaActiveScan? If not, you should not even be trying to run GetRunKey and ShowNew yet.
     
  28. pleasehelp2007

    pleasehelp2007 Private E-2

    I am sorry - forgive me for being stupid here. confused

    I am just not understanding how to extract the files and put them into a folder on my harddisk and then get them to run in windows explorer..

    I did the directions to the T in the READ & RUN ME, I managed to do all of that and ran all the other scans, but I am stuck here.
     
  29. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Some examples of doing this are in the procedure for downloading and installing HijackThis. Take a look at the below link and see how it is done for HijackThis. A similar procedure is used for extracting GetRunKey.zip and ShowNew.zip.

    Downloading, Installing, and Running HijackThis

    You really need to spend some time learning a little more about basic PC operations. Things like ZIP files and other compressed programs are used all the time and you need to understand this. This is not something we have time to teach you in a malware cleaning forum. At this point I'm really wondering if your problems or your perceived problems are really more due to your inexperience with PCs rather than malware. Don't take this the wrong way. I'm not trying to be insulting. I'm just stating a fact based on what I'm seeing your experience level to be.


    May be the below will also be of use:

    http://ois.unomaha.edu/casde/webshop/webshop/WNZPTUT/WINZIPOK.HTM

    http://www.ceannmor.com/using_winzip.htm

    http://www.users.globalnet.co.uk/~nog/t171/zipping/index.htm

    http://www.cse.csiro.au/library/help/guides/winzip/winunzip.pdf
     
  30. pleasehelp2007

    pleasehelp2007 Private E-2


    I have been using computers for over 8 years now. I know enough to get around and how to download and such. I do not have experiance in downloading and moving files and such around to differant places.

    No, it is not a perceived problem - I am not that stupid!
    I was finally told months after the fact of pulling my hair out trying to figure out what was going on, that in fact my e-mail was being hacked into by my ex. I have even made 2 police reports.

    My concern now, even though I dumped AOL, is if there is something on my computer that he can still moniter all of my activities and follow me to my new e-mail provider or if this was just an isolated thing with AOL only since that is the only e-mail address he had.

    I will work through this some more and read up on the links you sent me and try and figure this out so I can get the getrunkey and shownew programs run and results saved so you can see the results of all my scans and hopefully have a clearer picture what is going on.

    Thank you again for your help and time.
     
  31. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Wow! In 8 years you have never needed to download and extract a ZIP file before? That's truly incredible.

    Please attach whatever log files you have right now so I can start looking at them. You should at least have the below logs:
    • CounterSpy
    • AVG Antispyware log - ONLY IF NEEDED you were not able to run CounterSpy
    • Bitdefender - from step 6
    • Panda Scan - from step 6
    • HijackThis
    Hopefully you have been able to install and rename HijackThis as requested in step 7 or we are going to have more issues.

    Now on to your problems with trying to use GetRunKey and ShowNew. Try the below!

    I have attached a file named MGtools.zip for you to use. Download it to your Desktop. Then double click on the MGtools.zip file on your Desktop and extract the MGtools.exe file from inside the ZIP to your Desktop. Now double click on the MGtools.exe file to run it. It will create a C:\MGtools folder and extract all the files into this folder. It will then automatically run both GetRunKey.bat and ShowNew.bat. When finished you will see a log from ShowNew opened in a notepad window. Just close this notepad windows. The two required log files will be in your root folder. They are C:\runkeys.txt and C:\newfiles.txt Attach them to your next message. From now on if I ask for a new log from either of these programs, just goto the C:\MGtools folder and double click on the appropriate file to get the log. This woud be either GetRunKey.bat or ShowNew.bat depending on which or both are requested.
     

    Attached Files:

    Last edited: Jan 11, 2007
  32. pleasehelp2007

    pleasehelp2007 Private E-2

    Ok- here we go!

    Let me know if I did this right, I think I figured out the getrunkey and shownew. If so, then all's I have left is the hijack this and I will do that if I did the rest of this right.

    Thank you:)
     

    Attached Files:

  33. pleasehelp2007

    pleasehelp2007 Private E-2

    here are the other two
     

    Attached Files:

  34. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Yes please attach your HijackThis log! But first make sure you follow the directions in step 0 of the READ ME related to MSconfig. According to your GetRunKey log, you are not in Normal Startup mode.

    The only thing you did not do right was CounterSpy log. I have no idea what you did to get that but that is not a log from CounterSpy. It is a ZIP file with a bunch of XML files in it. It would be nice to see a real log from CounterSpy and to know that you fixed what it found.

    Your logs are not showing any major malware problems, but you do have some issues. You are running too many antispyware applications and some of them are junk and need to be removed. Also you need to get some updates and uninstall some old versions of software.

    First a few questions though!

    1. You said you "dumped" AOL. I still see all of their software installed. You should uninstall all of this now. It even has a safety and security center which is running and will conflict with other stuff you have installed. All of the below should be uninstalled since they came with AOL:
    2. Do you use ComcastToolbar.exe? Is ComCast your ISP?

    3. Do you use WeatherBug? It is considered adware but it is not really harmful other than slowing down your PC and impacting browsing performance.

    4. I see McAfee running! Did this come from AOL as part of their security center? If so, you should still remove it and use something else.

    5. I see you are using a password manager. This is a little surprising considering you have been having problems with someone stealing passwords. Why would you trust anyone else (even software) to handle and know your passwords?

    I also see the below installed:
    Are any of these paid versions? In this version of INVISUS only a scanner or does it include realtime protection and is that where CA Pest Patrol came from? INVISUS used to make a product that was a clone of Pest Patrol and then they started cloning CounterSpy?


    Uninstall the below old versions of software:
    J2SE Runtime Environment 5.0 Update 10
    J2SE Runtime Environment 5.0 Update 4
    J2SE Runtime Environment 5.0 Update 6
    J2SE Runtime Environment 5.0 Update 8
    J2SE Runtime Environment 5.0 Update 9
    Java 2 Runtime Environment, SE v1.4.2_04
    Mozilla Firefox (1.5.0.9)

    Make sure you reboot after uninstalling the above!

    After reboot, now install the current version of Sun Java from: Sun Java Runtime Environment

    Then install the current version of FireFox from: Mozilla Firefox
     
  35. pleasehelp2007

    pleasehelp2007 Private E-2

    I did do that! I must have restarted it and it goes back to this mode after you restart it? I did these scans on differant days. Should I redo them or are they fine? Where should the MSconfig be set at after I am all done scanning?

    Beats me what happened! I will redo it.

    I use Adaware SE and spyware blaster as freeware and then I paid for a years subscription to spysweeper which is a joke cause it scans and comes up with nothing found, yet my adaware catches things all the time. The other ones, even though I uninstalled them, they are still in my programs and I cant get rid of them. Like with say the Trustsoft antispyware, I stopped using that and unistalled it long ago, but somehow it is stuck on my computer. How do I get them off?



    I said I was going to dump them! Yes, it has been a long process all week as I have had them for over 6 years with the same e-mail addy, so going through all my storage and transferring things over to Comcast has been grueling not to mention trying to figure out all the places and such that have my e-mail that I need to get the addy changed. I just faxed AOL yesterday to terminate my account and they said it takes 72 hours. So when it is gone, then I will unistall all of their software. I have the McAfee through them too, so I dont want to be without security till then. Comcast offers them too, and I was going to download their version when AOL is gone, but I see you dont recommend McAfee, so I will go with the one you suggest.

    I downloaded it, but it still hasnt been installed because it asked for my zipcode or city and state where you live and when I entered it it said it wasnt a valid zipcode or city. So I called Comcast and they sent the ticket to their tech department as this is some clitch in their software they need to fix.

    I did a long time ago, but got rid of it when I learned it is bad news to have. I unistalled this too, but like I said before it is stuck on my computer. When I go to unistall the program that is showing in my programs - this is the message I get: Error loading C:\PROGRA~1\MYWEBS~1\bar\1.bin\w6Bar.dll
    The specified module could not be found

    So is there a special way to get this junk off?

    Yes - it is AOL's. What do you recommend?

    This is something I downloaded this summer thinking that would stop my hacker from getting into my account - didnt work, so havent even used it anymore.

    I honestly dont know or remember this INVISUS. Get rid of it!? Must have been one of my hasty decisions to stop my hacker - I was looking all over for something to stop him.....


    I was wondering about the above. I never knew if you should just leave it after you perform an update or if it can be unistalled without messing up the program.

    OK - off to work some more on this and I will get you those other two scans.

    Thank you again!
     
  36. pleasehelp2007

    pleasehelp2007 Private E-2

    Doesnt Mozilla Firefox automatically let you know when they update their version?
     
  37. pleasehelp2007

    pleasehelp2007 Private E-2

    Ok, I re-did CounterSpy. One biff though - I deleted all 7 instead of quarantining them, I hope that doesnt matter. I did have the restore button enabled.

    Now off to Hijack this.
     

    Attached Files:

  38. pleasehelp2007

    pleasehelp2007 Private E-2

    Here is HijackThis
     

    Attached Files:

  39. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    MSconfig does not restart or configure itself. It is something you do.

    You don't need to re-run any scans. MSconfig should be set to Normal Startup and not changed while we are cleaning your PC unless we specifically ask you to use it for something (which is rare but does happen). MSconfig is only meant to be a diagnostic/debugging tool. It should not be used as a permanent startup manager.


    Actually Spy Sweeper is probably the best tool out there. I'm not sure what your "other" tools like Ad-Aware are finding but in many cases they just find trivial non-issues and make you think they are big problems (like cookies, MRU's and misc dead registry keys). However, experience has shown us that you can run a dozen antispyware scanning tools and each may pickup things that other either miss or ignore. The key thing is what do they fix and how bad of a problem is the malware to begin with. Many scanners don't fix a lot of what they find and many also don't even find all the malware on your PC. That is the reason that the READ & RUN ME exists and is a multistep process. It helps us to find the bigger problems that really need to removed.

    We will take care of this.


    We don't recommend McAfee and typical tools that ISP give you because in most cases they are full security suites which are massive resource hogs. About 25 to 30 percent of people coming here complaining that their PCs are slow and assuming that it is caused by malware are WRONG. It is their internet security suites. I would recommend that you just download (but not install yet) AVG Free Edition and ZoneAlarmFree . Then uninstall all the pieces of AOL that relate to their security package. So let's do that now along with uninstall a bunch of other things we have been discussing.

    So Uninstall the below NOW! If any of these give you any error messages or do not uninstall, just tell me later when you come back.

    CA Pest Patrol Realtime Protection
    Safety and Security Center Uninstaller
    Sunbelt CounterSpy <--- we are finished with this and you have Spy Sweeper anyway!
    the INVISUS Spyware Scanner
    Viewpoint Media Player
    WeatherBug Browser Bar - powered by MyWebSearch

    Don't continue with the below until you have attempted to uninstall the above!

    Also run this ViewpointKiller to remove Viewpoint Media software because this adware junk from AOL will typical reinstall itself.

    Also while we are removing things, Run this Disable/Remove Windows Messenger to remove Windows Messenger.

    After you get ALL of the steps finished, now you need to install AVG Free and ZoneAlarmFree to get your protection back in place.


    Counter Spy got rid of much of it. Anything that remains, we will fix manually.


    If it is still installed, uninstall it (I did not notice it). It looks like you installed another one just recently on Jan 8, 2007. That is when Animabilis Software shows up. Which is also a password manager. So uninstall any of these password managers that you may have installed and then also delete the below related to it. (that is assuming that you don't use this and I would not recommend it).

    C:\Documents and Settings\Valued Customer\Desktop\Password-Manager-Installer.exe
    C:\Documents and Settings\Valued Customer\Application Data\Password Manager
    C:\Program Files\Animabilis Software


    You should always uninstall the old Sun Java version before updating to the new version.


    You need to rename HijackThis properly. You renamed the folder instead of the HijackThit.exe file. You need to renamed the executable program. You have this:

    C:\Program Files\analyse.exe\HijackThis.exe

    It should be:

    C:\Program Files\HJT\analyse.exe


    After doing ALL of the above, attach new logs from ShowNew and HJT.
     
    Last edited: Jan 17, 2007
  40. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Only if you configure it to automatically update.
     
  41. pleasehelp2007

    pleasehelp2007 Private E-2

    I went into my add or remove programs and these 3 were not in there to remove:

    CA Pest Patrol Realtime Protection
    the INVISUS Spyware Scanner
    WeatherBug Browser Bar - powered by MyWebSearch

    are they located somewhere else, and if so where do I go?

    Thank you again :)
     
  42. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

  43. pleasehelp2007

    pleasehelp2007 Private E-2

    I did a file search and found them that way before you replied, I deleted them, but I'm sure they maybe hidden elsewhere too. I unistalled AOL and took everything associated with them off in my add/delete programs. But when I went and did this file search and typed in AOL, it came up with 2 pages of found AOL stuff!

    Will this procedure above remove all of my leftover AOL too?


    I removed McAfee with AOL and installed the AVG - I hope that was OK as I didnt want to be without and you said : "Don't continue with the below until you have attempted to uninstall the above!"
    I havent done the Zonealarm yet though, so I wanted to make sure before I continued on with the scans. I am assuming this was referencing to not having two virus scanners running at the same time.
     
  44. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Please follow the directions I gave you completely and attach the logs I asked for. You must only do what I ask you to do. If you prefer to do your own work that's fine and we are finished. I did not ask you to do a file search. The problems we are looking for are in the registry. A file search has nothing to do with this.

    What procedure are you referring to? Your procedure?
     
  45. pleasehelp2007

    pleasehelp2007 Private E-2

    Quote:
    Originally Posted by pleasehelp2007
    I did a file search and found them that way before you replied, I deleted them, but I'm sure they maybe hidden elsewhere too. I unistalled AOL and took everything associated with them off in my add/delete programs. But when I went and did this file search and typed in AOL, it came up with 2 pages of found AOL stuff!

    Goodness.... I know you didnt ask me to do a file search! You asked me to get rid of those listed items and when I couldnt find them in my add/remove programs, I thought I would try to search for them. Like I said above, I did this BEFORE you replied back to me. I was trying to do what you asked is all. I am completely clueless as to do this on my own or I wouldnt be here. You guys do a wonderful service here and should be PAID for your time!


    No, your Getting Uninstall Programs List From The Registry procedure.
     

    Attached Files:

  46. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Please post the logs I asked for in messages numbers 39 and 42. I did not ask for a GetRunKey log.

    The Getting Uninstall Programs List only gets a list. It does not make any changes to your PC.
     
  47. pleasehelp2007

    pleasehelp2007 Private E-2

    You told me not to get you those logs ( Viewpointkiller and disable/remove windows messenger) until I get this junk above unistalled.

    and I quote:
    so then you sent me this:
    you wanted this so you could create a patch to get rid of what I couldnt find before I could move on..... correct?
     
  48. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    My message said:
    The key word is attempted! Which you did!

    Yes and I still need you to do this!
     
  49. pleasehelp2007

    pleasehelp2007 Private E-2

    which box am I supposed to check after downloading this windows messenger?

    - disable windows messenger for the computer user

    - disable windows messenger machine wide

    - hide messenger from the outlook express

    - unistall windows messenger
     
  50. pleasehelp2007

    pleasehelp2007 Private E-2


    I cant figure out how to do this- grrrrrrrr
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds