-= SpywareBlaster Damaged - Spyware Gard Error Updating =-

Discussion in 'adware, spyware & hijack cleaning' started by DemianGod, Apr 26, 2004.

Thread Status:
Not open for further replies.
  1. DemianGod

    DemianGod Registered Member

    Joined:
    Apr 26, 2004
    Posts:
    3
    Whe i run the Spywareblaster say:
    This program has been damaged, possibly by a bad sector of the hard drive or a virus. Please reinstall it.

    When i try to run liveupdate in SpywareGuard, while "getting file imformation from server", say: "the server returned the following unexpected response:" , when i click in OK, download a pair of files, and then.. nothing, do nothing...the "next" button is disabled and i need to close the Liveupdate window.

    I have the same problem other users.. i have the about:blank as start page in internet explorer, "search for..." appears in the page.

    Please help, i already installed "spy bot search & destroy" "ad-aware 6" all with updates... run "CWShredder.exe" and "runme.bat" from PV directory, and.. "HijackThis.exe" but i do not click in FIX Button...

    I wanna install that both programs, becose i don´t like the Antivirus softwares...

    Thanks for your time and your help...
     
  2. DemianGod

    DemianGod Registered Member

    Joined:
    Apr 26, 2004
    Posts:
    3
    My Log is:

    Logfile of HijackThis v1.97.7
    Scan saved at 10:28:06 p.m., on 26/04/2004
    Platform: Windows 2000 SP4 (WinNT 5.00.2195)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINNT\System32\smss.exe
    C:\WINNT\system32\winlogon.exe
    C:\WINNT\system32\services.exe
    C:\WINNT\system32\lsass.exe
    C:\WINNT\system32\svchost.exe
    C:\Archivos de programa\VirtualCamera\VCamSrv.exe
    C:\WINNT\System32\svchost.exe
    C:\WINNT\System32\WBEM\WinMgmt.exe
    C:\WINNT\Explorer.EXE
    C:\archivos de programa\Probe\AsusProb.exe
    C:\Archivos de programa\Messenger Plus! 2\MsgPlus.exe
    C:\Archivos de programa\LeechGet 2004\LeechGet.exe
    C:\Archivos de programa\Spybot - Search & Destroy\TeaTimer.exe
    C:\Archivos de programa\PowerMenu\PowerMenu.exe
    C:\Archivos de programa\MSN Messenger\msnmsgr.exe
    C:\Archivos de programa\SpywareGuard\sgmain.exe
    C:\Archivos de programa\SpywareGuard\sgbhp.exe
    C:\Archivos de programa\Internet Explorer\IEXPLORE.EXE
    C:\Archivos de programa\eMule\emule.exe
    C:\Archivos de programa\TV Calendar\Calendar.exe
    C:\Archivos de programa\SpywareGuard\sgliveupdate.exe
    D:\Downloads\Proteccion\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
    O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Archivos de programa\SpywareGuard\dlprotect.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\ARCHIV~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: (no name) - {D563A440-621B-F576-F662-FFFA46973A03} - C:\ARCHIV~1\AIMSET~1\Bin Regs.dll (file missing)
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
    O3 - Toolbar: dvd start - {AF36A941-E295-282C-594B-11604412679A} - C:\ARCHIV~1\AIMSET~1\Bin Regs.dll (file missing)
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [ASUS Probe] c:\archivos de programa\Probe\AsusProb.exe
    O4 - HKLM\..\Run: [MessengerPlus2] "C:\Archivos de programa\Messenger Plus! 2\MsgPlus.exe"
    O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
    O4 - HKCU\..\Run: [MessengerPlus2] "C:\Archivos de programa\Messenger Plus! 2\MsgPlus.exe" /WinStart
    O4 - HKCU\..\Run: [LeechGet] "C:\Archivos de programa\LeechGet 2004\LeechGet.exe" -intray
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Archivos de programa\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [msnmsgr] "C:\Archivos de programa\MSN Messenger\msnmsgr.exe" /background
    O4 - Startup: PowerMenu.lnk = C:\Archivos de programa\PowerMenu\PowerMenu.exe
    O4 - Startup: SpywareGuard.lnk = C:\Archivos de programa\SpywareGuard\sgmain.exe
    O4 - Global Startup: eMule.lnk = C:\Archivos de programa\eMule\emule.exe
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O8 - Extra context menu item: Bajar web con LeechGet - file://C:\Archivos de programa\LeechGet 2004\\Parser.html
    O8 - Extra context menu item: Descargar usando el Asistente de Descargas - file://C:\Archivos de programa\LeechGet 2004\\Wizard.html
    O8 - Extra context menu item: Descargar usando LeechGet - file://C:\Archivos de programa\LeechGet 2004\\AddUrl.html
    O8 - Extra context menu item: Download with GetRight - \GRdownload.htm
    O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MICROS~3\Office10\EXCEL.EXE/3000
    O8 - Extra context menu item: Open with GetRight Browser - \GRbrowse.htm
    O9 - Extra button: Yahoo! Messenger (HKLM)
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger (HKLM)
    O16 - DPF: Yahoo! Checkers - http://download.games.yahoo.com/games/clients/y/kt3_x.cab
    O16 - DPF: Yahoo! Graffiti - http://download.games.yahoo.com/games/clients/y/grt5_x.cab
    O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/12119/CTSUEng.cab
    O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?38051.6670717593
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4352/mcfscan.cab
    O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/12119/CTPID.cab
     
  3. Pieter_Arntz

    Pieter_Arntz Spyware Veteran

    Joined:
    Apr 27, 2002
    Posts:
    13,491
    Location:
    Netherlands
    Hi DemianGod,

    Check the items listed below in HijackThis, close all windows except HijackThis and click Fix checked:

    O2 - BHO: (no name) - {D563A440-621B-F576-F662-FFFA46973A03} - C:\ARCHIV~1\AIMSET~1\Bin Regs.dll (file missing)

    O3 - Toolbar: dvd start - {AF36A941-E295-282C-594B-11604412679A} - C:\ARCHIV~1\AIMSET~1\Bin Regs.dll (file missing)

    O4 - Global Startup: eMule.lnk = C:\Archivos de programa\eMule\emule.exe
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present

    Then reboot

    Regards,

    Pieter
     
  4. DemianGod

    DemianGod Registered Member

    Joined:
    Apr 26, 2004
    Posts:
    3
    I already fixed the Start Page using the HiJackThis, but the problem with Spyware Products still presents....
    Please, helpme with this, tnx for u'r time...

    Demian from Argentina.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.