View Single Post
Old 12-10-2006, 07:10 PM   #23 (permalink)
Deckard
Mentor, Analyst - Security Team
 
Deckard's Avatar
 
Join Date: May 2006
Location: Oregon
Posts: 2,503
OS: MacOS X, Debian, OpenBSD, Windows


?

I thought we deleted MyWebSearch. And yet, it's back.


Uninstall
Click Start > Control Panel > Add / Remove Programs and uninstall the following programs (if they exist):
Crystalys Media
MyEmoticons
MyWebSearch
Please let me know if any of these were unable to uninstall.


Reboot
Reboot your system to Safe Mode by repeatedly tapping the F8 key until the menu appears and choosing Safe Mode from the list. On some systems, this may be the F5 key so try that if F8 doesn't work. Login on with your usual account. Make sure to close any open windows.


Deletions
Delete the following Files indicated in RED and Folders indicated in BLUE if they still exist.
C:\Program Files\Crystalys Media
C:\Program Files\MyWebSearch
C:\Program Files\MyEmoticons

Reboot
Reboot your system to Normal Mode and log in as Joanna.


Clear Cookies
Clear your IE cookies. Start>Settings>Control Panel>Internet Options>General. Under Temporary Internet Files, click on Delete Cookies. Then click Delete Files.

Clear your Firefox cookies. From the open browser, go to Tools>Options>Privacy>Cookies>Clear.


Submit For Analysis
Please submit the following file to VirusTotal Scan:
C:\winks\Angry Dog\run.exe
At the top of the window you should see "Select file" and a blank box. Copy and paste the red text from above into the box. Then click "Send". When it is finished, please copy the information listed the two tables (i.e., the scan results and "Additional Information") into Notepad and save it on your Desktop so you can paste it with your next reply.


Online Scan
Please perform an BitDefender Online Scan using Internet Explorer. Once finished, click on the Details button to view the results. To the upper right of the results you will see an option saying "Click here to export the scan results". Please do so and save it to your desktop. Copy and paste the results of the scan with your next post.


With Your Next Post...
Please paste the following with your next reply (in this order please):
  1. VirusTotal report,
  2. BitDefender scan report,
  3. a new HiJackThis log taken after BitDefender finishes.
__________________
The chance to begin again in a golden land of opportunity and adventure.

Need HijackThis help? Please read MicroBell's Five Step Process before posting.
Please donate and help keep this site free to all.


UNITE/ASAP: Proud member since 2006
Deckard is offline