Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Login to participate.
|
|||||||
Another CiD ad victim
![]() |
|
|
|
Thread Tools |
|
#1
|
|||
|
|||
|
Another CiD ad victim
--------------------------------------------------------------------------------
I have also got the damn thing. Can you please help me? I am a novise at this, so please explain it as simple as you can. Also i am norwegian, so my inglish is not perfect. THX |
|
#2
|
||||
|
||||
|
I am not on my normal computer or I would have a saved speech for this, but go to
Start, Control panel, Add/remove programs and uninstall anything that starts with Cid. Then Run through the 15 step preliminary removal UPDATED 8-step Viruses/Spyware/Malware Preliminary Removal Instructions |
|
|
|
#3
|
||||
|
||||
|
Hey blind ive got it here,
1)Uninstall any of the following program(s) using Add/Remove Programs if they are present. To do this, go to Start > Settings > Control Panel and double-click on Add/Remove Programs. From within Add/Remove Programs highlight each one and select Remove. Netpumper BitRoll Browser Enhancer CiD Help CiD Manager Download Plugin for Internet Explorer Lop.com LOP SEARCH Messenger Plus Ultimate Browser Enhance Window Search Window Searching Zone Media 2)Setup" is now displayed. Click on the Uninstall button. Note: options displayed on the first screen are not related to the sponsor program. 3)The sponsor screen is now displayed (if you don't see it, search for it in your Task Bar). To prove that someone is currently reading the screen, you have to type the code that is displayed. Once you enter the code, press Uninstall. 4)If you entered the code properly, the program will ask you to confirm that you want to uninstall. You must answer "Yes" to this question, else, you won't have another chance of uninstalling. 5)Reboot your computer 6)Run another scan with Hijackthis and attach a new log |
|
#4
|
|||
|
|||
|
CiD ads
The damn thing is still here after 9 hours of scanning my pc according to the 15 step program. The Panda antiroot came up with nothing. Help!!!!
|
|
#5
|
||||
|
||||
|
Navigate to c:\winnt\system32\drivers\etc\hosts
With the hosts file open delete the following entries: 127.0.0.1 bin.errorprotector.com 127.0.0.1 br.errorsafe.com 127.0.0.1 br.winantivirus.com 127.0.0.1 br.winfixer.com 127.0.0.1 cdn.drivecleaner.com 127.0.0.1 cdn.errorsafe.com 127.0.0.1 cdn.winsoftware.com 127.0.0.1 de.errorsafe.com 127.0.0.1 de.winantivirus.com 127.0.0.1 download.cdn.drivecleaner.com Close your hosts file. While still in the etc folder -> Right click on the hosts file and select properties, make sure that Read-only is checked ------------------------------------------------------------------------------------------------------- You aren't running Firewall Software. Please download and install one of these first! Use a Firewall - It is very important that you use a Firewall on your computer. If you use the Windows Firewall you might think that's enough but it only controls inbound traffic. Simply using a Firewall in its default configuration can lower your risk greatly. Here are some firewalls which are free for personal use and most commonly used: Comodo Kerio Online Armor Zonealarm -------------------------------------------------------------------------------------------------------- Boot into Safe Mode - Print out this section
Remove bad HijackThis entries
Show hidden files through windows explorer
Use Windows Explorer to navigate to and delete the following files: Folder: C:\Documents and Settings\All Users.WINNT\Programdata\Part title burn dvd <-This folder only Rehide system Files
Restart your computer into normal mode Run a new scan with Hijackthis from normal mode and attach the log ------------------------------------------------------------------------------------------------------- :Run Kaspersky Online AV Scanner: Order to use it you have to use Internet Explorer. Go to Kaspersky and click the Accept button at the end of the page. Note for Internet Explorer 7 users: If at any time you have trouble with the accept button of the licence, click on the Zoom tool located at the right bottom of the IE window and set the zoom to 75 %. Once the license accepted, reset to 100%.
So your next reply should include 1)New Hijackthis log 2)The kaspersky log These instructions are for the use of pajoe only. Please don't post your own virus/spyware problems in this thread. Instead, open a new thread in our security and the web forum. |
|
#6
|
|||
|
|||
|
I have NOT seen the ad's for the last hours. I hope that it's gone. I am extremely thankful for your help.
|
|
#7
|
||||
|
||||
|
Still a lot of infections showing on there. When you ran housecall did you have it fix everything it found? It shows some infections in quarantine.
Combofix
Combofix will automatically save the log file to C:\combofix.txt |
![]() |
| Thread Tools | |
|
|
| Similar Topics | ||||
| Topic | Category | Replies | Last Post | |
| Yet another WHATABOUTADOG victim | Virus & Malware removal | 10 | 05-02-2008 10:16 PM | |
| Another vundo victim | Virus & Malware removal | 3 | 02-10-2008 11:23 AM | |
| Microsoft Victim | Windows OS | 14 | 01-18-2008 05:43 PM | |
| Another CiD Victim | Virus & Malware removal | 1 | 05-26-2007 12:06 AM | |
| WORM victim! | Virus & Malware removal | 6 | 09-21-2005 09:48 AM | |
All times are GMT -4. The time now is 10:44 PM.


