Discussion in 'adware, spyware & hijack cleaning' started by Archiearch, May 9, 2004.

  1. Archiearch

    Archiearch Registered Member

    May 9, 2004
    I ran hijack and fixed the problem then i save the log as a (txt) file. Now what do i do? Is that all i have to do to remove "bridge.dll" or fix that problem

  2. Unzy

    Unzy Registered Member

    Nov 2, 2003
    Hi Archiearch,

    I'm afraid there's some more work to do

    Have only HijackThis running and fix :

    R3 - URLSearchHook: PerfectNavBHO Class - {00D6A7E7-4A97-456f-848A-3B75BF7554D7} - C:\PROGRA~1\PERFEC~1\BHO\PERFEC~1.DLL

    O2 - BHO: (no name) - {000006B1-19B5-414A-849F-2A3C64AE6939} - (no file)
    O2 - BHO: (no name) - {00D6A7E7-4A97-456f-848A-3B75BF7554D7} - C:\PROGRA~1\PERFEC~1\BHO\PERFEC~1.DLL
    O2 - BHO: (no name) - {0352960F-47BE-11D5-AB93-00D0B760B4EB} - (no file)
    O2 - BHO: (no name) - {0494D0D1-F8E0-41ad-92A3-14154ECE70AC} - C:\Program Files\MyWay\myBar\2.bin\MYBAR.DLL
    O2 - BHO: (no name) - {71ED4FBA-4024-4bbe-91DC-9704C93F453E} - (no file)
    O2 - BHO: (no name) - {83DE62E0-5805-11D8-9B25-00E04C60FAF2} - C:\WINDOWS\2_0_1browserhelper2.dll
    O2 - BHO: (no name) - {9C691A33-7DDA-4C2F-BE4C-C176083F35CF} - C:\WINDOWS\System32\bridge.dll (file missing)
    O2 - BHO: (no name) - {BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8} - C:\WINDOWS\AdRoar.dll
    O2 - BHO: (no name) - {F03709B5-A499-4C5F-9414-C143670A8ECD} - C:\WINDOWS\System32\dgrpsetru.dll

    O4 - HKLM\..\Run: [AdRoarUpdate] C:\WINDOWS\ARUpdate.exe
    O4 - HKLM\..\Run: [Belt] C:\WINDOWS\Belt.exe
    O4 - HKLM\..\Run: [stcloader] C:\WINDOWS\System32\stcloader.exe
    O4 - HKLM\..\Run: [SBHC] C:\Program Files\SuperBar\sbhc.exe
    O4 - HKLM\..\Run: [EbatesMoeMoneyMaker] javaw -cp "C:\Program Files\EbatesMoeMoneyMaker\System\Code" Main lp: "C:\Program Files\EbatesMoeMoneyMaker"
    O4 - HKLM\..\Run: [Srng] \Program Files\Srng\Srng.exe
    O4 - HKLM\..\Run: [ToPicks Starter] C:\Program Files\ToPicks\Bin\Idhost.exe
    O4 - HKLM\..\Run: [WebRebates] javaw -cp "C:\Program Files\WebRebates\System\Code" Main lp: "C:\Program Files\WebRebates"
    O4 - HKLM\..\Run: [RVP] "C:\Program Files\RVP\bpc.exe"
    O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART
    O4 - HKLM\..\Run: [RunDLL] rundll32.exe "C:\WINDOWS\System32\bridge.dll",Load
    O4 - HKLM\..\Run: [updmgr] C:\Program Files\Common files\updmgr\updmgr.exe
    O4 - HKLM\..\Run: [AltnetPointsManager] C:\Program Files\Altnet\Points Manager\Points Manager.exe -s
    O4 - HKLM\..\Run: [Wast] C:\WINDOWS\Wast
    O4 - HKLM\..\Run: [websearch] javaw -cp "C:\Program Files\websearch\System\Code" Main lp: "C:\Program Files\websearch"
    O4 - HKLM\..\Run: [CMESys] "C:\Program Files\Common Files\CMEII\CMESys.exe"
    O4 - Startup: Update Grokster.lnk = F:\Program Files\Grokster\WiseUpdt.exe
    O4 - Global Startup: GStartup.lnk = C:\Program Files\Common Files\GMT\GMT.exe

    O16 - DPF: {13197ACE-6851-45C3-A7FF-C281324D5489} - http://www.2nd-thought.com/files/install.exe
    O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} (Web P2P Installer) -
    O16 - DPF: {9C691A33-7DDA-4C2F-BE4C-C176083F35CF} (brdg Class) - http://www2.flingstone.com/cab/2000XP/new/bridge.cab

    Restart PC after doing so in Safe Mode : Here's How and remove (if still present) :

    C:\WINDOWS\ARUpdate.exe <- this file
    C:\WINDOWS\Belt.exe <- this file
    C:\WINDOWS\System32\stcloader.exe <- this file
    C:\Program Files\SuperBar\ <- this folder
    C:\Program Files\EbatesMoeMoneyMaker <- this folder
    C:\Program Files\Srng\ <- this folder
    C:\Program Files\ToPicks\ <- this folder
    C:\Program Files\WebRebates <- this folder
    C:\Program Files\RVP\ <- this folder
    C:\WINDOWS\System32\P2P Networking\ <- uninstall via add/remove programs
    C:\WINDOWS\System32\bridge.dll <- this file
    C:\Program Files\Common files\updmgr\ <- this file
    C:\Program Files\Altnet\ <- this folder
    C:\WINDOWS\Wast <- this file
    C:\Program Files\websearch\ <- this folder
    C:\Program Files\Common Files\CMEII\ <- this folder
    F:\Program Files\Grokster\ <- this folder
    C:\Program Files\Common Files\GMT\ <- this folder

    Clean temp internet files

    restart again in normal mode

    Update XP and IE to the latest security patcehs at windowsupdate.com

    Check here for great cleaning tools :


    Hope this helps

