Jump to content

khann

Members
  • Content Count

    4
  • Joined

  • Last visited

About khann

  • Rank
    Newbie
  1. Thank you, I tried all of this and still have the issue. I was never able to find the HKCR string but it apears that the minute I delete a registry item it comes back anyway? As long as I rebooted in safe mode it apeared gone but when I rebooted normally it came back. I also tried a virus sweeping regime that included Combofix, TDSS killer, Ccleaner Malawarebytes and Spybot, to no avail. I was considering reinstalling the program as a last ditch effort before I re imaged. I should have read the reviews on download.com because they did warn about spyware during the download, it is just that I have never had a problem downloading software from that site.
  2. I am running IE8.6001.18702IC If we are talking about the two registry entries at the bottom, I can find the first one no problem. The second one I expect reads , hotkey, class root, clsid, {0E1230F8-EA50-42A9-983C-D22ABC2EED3B} I cannot find it manually, if I paste everything beginning with clsid into the reg search feature I can bring it up on the right hand side. There apears to be no {0E1230... line in the clsid area. I have never deleted a registry entry but I am willing to give it a try, and I do appreciate your patience, thanks again.
  3. No Bearshare, here is a copy of the scan log. thank you SUPERAntiSpyware Scan Log https://www.superantispyware.com Generated 10/21/2012 at 09:39 PM Application Version : 5.6.1012 Core Rules Database Version : 9446 Trace Rules Database Version: 7258 Scan type : Complete Scan Total Scan Time : 00:43:43 Operating System Information Windows XP Professional 32-bit, Service Pack 3 (Build 5.01.2600) Administrator Memory items scanned : 681 Memory threats detected : 0 Registry items scanned : 40020 Registry threats detected : 2 File items scanned : 64758 File threats detected : 14 Adware.Tracking Cookie C:\Documents and Settings\Keith Hann\Cookies\KCUCEIRU.txt [ /atdmt.combing.com ] C:\Documents and Settings\Keith Hann\Cookies\ODU00H0J.txt [ /atdmt.com ] .serving-sys.com [ C:\DOCUMENTS AND SETTINGS\KEITH HANN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\T4Q5JXRC.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\DOCUMENTS AND SETTINGS\KEITH HANN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\T4Q5JXRC.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\DOCUMENTS AND SETTINGS\KEITH HANN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\T4Q5JXRC.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\DOCUMENTS AND SETTINGS\KEITH HANN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\T4Q5JXRC.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\DOCUMENTS AND SETTINGS\KEITH HANN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\T4Q5JXRC.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\DOCUMENTS AND SETTINGS\KEITH HANN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\T4Q5JXRC.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\DOCUMENTS AND SETTINGS\KEITH HANN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\T4Q5JXRC.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\DOCUMENTS AND SETTINGS\KEITH HANN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\T4Q5JXRC.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\DOCUMENTS AND SETTINGS\KEITH HANN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\T4Q5JXRC.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\DOCUMENTS AND SETTINGS\KEITH HANN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\T4Q5JXRC.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\DOCUMENTS AND SETTINGS\KEITH HANN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\T4Q5JXRC.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\DOCUMENTS AND SETTINGS\KEITH HANN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\T4Q5JXRC.DEFAULT\COOKIES.SQLITE ] Adware.IWantSearchBar HKU\S-1-5-21-1935655697-362288127-682003330-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser#{0E1230F8-EA50-42A9-983C-D22ABC2EED3B} HKCR\CLSID\{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}
  4. Hello, My name is Keith and I am new here. I am running SAS 5.6 2012 free version My computer knowledge is low to middle level. After downloading a program from a site I have always trusted I ended up having my IE home page changed and a toolbar added. I uninstalled the downloaded program and got rid of the toolbar, reset my IE home page but now when I run SAS I get an urgent message to remove "adware.iwantsearchbar" as well as several tracking cookies. I have updated and run SAS several time with no luck. I have run it in the safe mode but every time I reboot and re try it is back again. I have updated and run Malaware bytes in the safe mode and it does not detect a problem, like wise with AVG and Spybot S&D. I have also google searched and searched this forum for help. The computer apears to have no problems with the way it runs I am just concerned about the security of my system. I was going to try disableing system restore and running in the safe mode but got a little chicken when I got the Microsoft warning about loosing any restore points or the ability to restore the system. Any suggestions would be helpful Thank you
×
×
  • Create New...