Sypbot cant rid ISearchTech.YSB

Discussion in 'Malware Help (A Specialist Will Reply)' started by wkah, Aug 5, 2005.

  1. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You implied you ran it last time when you said:
    Run the Active X version as I said in my last message.
     
  2. wkah

    wkah Private E-2

    the executable file was downloaded on a workstation, saved on a shared directory with the file server. When the file server opened the file, nothing seemed to happen.
    So I tried to visit the web site from the file server, that was when the site was blocked. I do not know if the origional exacutable file was the active x kind or not.
    How can i tell?
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Let's try this. In Internet Explorer, click Tools, Internet Options and then select the Security tab. Now click on the red Restricted Sites icon. Then click the Custom Level button and move the slider down from High to Medium selection. You will get a warning about this telling you that High is recommend. Just say yes to the change. Then click Apply and OK!

    Now try to run http://www.ysbweb.com/ist/softwares/remove/ist_remove.exe

    After it runs (hopefully) change the setting back to High (the default) for the the Restricted Zone.
     
    Last edited: Oct 19, 2005
  4. wkah

    wkah Private E-2

    I made the change in IE from High to Medium security. Even though I got a warning the settings would not remain. In any event, I did not have trouble downloading the file. The problem is it won't run (hour glass for 5 seconds) from the download or from the web site (open) http://www.ysbweb.com/ist/softwares/remove/ist_remove.exe
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    What program gave you the warning? Was it McAfee or Ewido? If so, disable them before making the change. Then run the program.
     
  6. wkah

    wkah Private E-2

    Sorry for the Delay (Hurricane Wilma: no power).

    In Internet Explorer, click Tools, Internet Options and then select the Security tab. Now click on the red Restricted Sites icon. Then click the Custom Level button and move the slider down from High to Medium selection. You will get a warning about this telling you that High is recommend. Just say yes to the change. Then click Apply and OK!

    The warning I get is the one you mentioned above. Just the settings do not hold. When I go back in I am still on HIGH even though I clicked apply to Med.
     
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Uninstall McAfee and Ewido and try again. They could be blocking your attempts to make changes.

    I will not be around from 11/04 to 11/15. One of our other malware fighters will try to pickup from here.
     
  8. wkah

    wkah Private E-2

    I do not have McAfee. I uninstalled Ewido & tried again. I am able to download the file http://www.ysbweb.com/ist/softwares/remove/ist_remove.exe.....but am unable to open. hourglass for 2 seconds then nothing. I am not able to change the internet security down from high, event though I click reset, apply, OK. When I check the settings, they are still on high. Even so, It will let me download & save on high settings but will not let me run from the saved file or from the dialogue box.
     
  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    According to the HijackThis log you posted in message # 36 you do have McAfee installed.
     
  10. wkah

    wkah Private E-2

    Obviously I don't use it but if I add/delete it, can I reinstall it without the disk (i can't find it)?
     
  11. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    If it is installed (which it is) you are already using it.

    Without your disk you would have to download a copy of the installation program and reinstall and register your software again. Do you have your serial number? Are you a paid subscriber and are you getting regular updates? If not, you may as well just uninstall it and then install one of the free antivirus applications we suggest in our stickies. But I would not install any of them yet until we first try to determine what is preventing you from making changes.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds