|
|
Taffmonster
from dog_belch (Japan) on 2006-07-13 15:06 [#01937276]
Points: 6196 Status: Lurker
|
|
anyone know how to kill the arsing elite media virus, trend house call is saying there snowt here but i am still getting arsing pop ups and a slow arse pc. keep getting an elite media group pop up and one called Mirar whatever that is and i cant find an disinfection tools online.
Any help would be appreciated!
|
|
Drunken Mastah
from OPPERKLASSESVIN!!! (Norway) on 2006-07-13 15:10 [#01937279]
Points: 35867 Status: Lurker | Show recordbag
|
|
do you have the process name? (ctrl alt del and look for processes you don't know)
|
|
Taffmonster
from dog_belch (Japan) on 2006-07-13 15:21 [#01937290]
Points: 6196 Status: Lurker
|
|
I have 3 unknowns roaming the process field and their process info (via google) is very unhelpful.
bad boy number 1: Update.exe - i have nothing that should be utilising this so its obviously part of some spyware
bad boy number 2: Tsclock.exe - no fucking clue why thast running prolly part of update
and finally: thiselt.exe which is a cunt cos when you end it it crashes explorer!
PLEASE HELP ME KILL THESE BASTARDS!!!
|
|
Taffmonster
from dog_belch (Japan) on 2006-07-13 15:22 [#01937291]
Points: 6196 Status: Lurker
|
|
oh we have a new contender!
ipwins.exe has just appeared (or at least i only just spotted it!)
|
|
Drunken Mastah
from OPPERKLASSESVIN!!! (Norway) on 2006-07-13 15:31 [#01937299]
Points: 35867 Status: Lurker | Show recordbag
|
|
ipwins.exe is related to adware Maxfiles. This file is located at "C:\Program Files\ipwins\". You should remove this file and related infections from your computer immediately.
Thiselt.exe is MediaMotor adware. Kill the process thiselt.exe and remove thiselt.exe from Windows startup.
update.exe is ambiguous
check your windows startup thingie (start -> run -> msconfig)
|
|
Taffmonster
from dog_belch (Japan) on 2006-07-13 15:46 [#01937312]
Points: 6196 Status: Lurker | Followup to Drunken Mastah: #01937299
|
|
thankin you....
my comps normally fine with regular spybot and hijack this scans but since my step dad installed a virus thinking it was some software keygen on my computer i've been unable to delete the bastard, and it seems to just import more and more problems!
|
|
Taffmonster
from dog_belch (Japan) on 2006-07-13 16:06 [#01937319]
Points: 6196 Status: Lurker
|
|
still having a problem with update exe. spybot and hijack this are finding a reg edit callec cmdservice and one called network monitor for something called controll set 001, legit sounding i know but they deffo shouldn't be there but hijack this and spybot can't seem to remove them (well it does but they are there again next scan). bloody annoying!!!
|
|
Drunken Mastah
from OPPERKLASSESVIN!!! (Norway) on 2006-07-13 16:07 [#01937321]
Points: 35867 Status: Lurker | Show recordbag
|
|
have you got ad-aware?
and what virus protection do you have?
one good way of getting rid of processes is rebooting in safe mode, to delete the files.
|
|
Taffmonster
from dog_belch (Japan) on 2006-07-13 16:12 [#01937327]
Points: 6196 Status: Lurker | Followup to Drunken Mastah: #01937321
|
|
adaware is same story, I use ewido (i install it just to run the scan and clean once a month), leaving it on the comp just means a slow system. As i say normally I am pretty free of viruses as i am very careful interneter, but that wankey virus my step dad installed has really plkayed some havoc!
|
|
Drunken Mastah
from OPPERKLASSESVIN!!! (Norway) on 2006-07-13 16:14 [#01937328]
Points: 35867 Status: Lurker | Show recordbag
|
|
just make sure your firewall is up and your anti-virus is running. get all the anti-spyware progs and run them (they all overlook stuff the others get). identify processes, write their paths down and enter safe mode and delete everything associated with them.
|
|
Fah
from Netherlands, The on 2006-07-13 16:17 [#01937329]
Points: 6428 Status: Regular
|
|
get CWshredder, it's gooooood
|
|
Taffmonster
from dog_belch (Japan) on 2006-07-13 16:25 [#01937332]
Points: 6196 Status: Lurker | Followup to Fah: #01937329
|
|
yeah i used cwshredder there wasnt any cool websearch its some lesser known hijack!
|
|
Messageboard index
|