Computer Hope
Software => Internet browsers => Topic started by: Drd on June 15, 2009, 08:40:15 AM
-
Hello: I use an XP service pack and the latest updated Firefox browser. My son installed Imesh, whatever that is, and it has a search bar. It even had set itself up as my homepage, but I overrode that and put Google back as the homepage. But I want to get Imesh out of there completely.
I went to "control panel" "add or remove programs" and found it there. But when I click the uninstall, first I get a query as to why I want to uninstall, which I answer. Then a line with a link to their "Help" comes, and under that a button that says "uninstall anyway". I click that but nothing happens. I've tried this several times. I'm worried that this could be a source of trojan horses, etc. so I'd like to get it out of there before its too late.
What can I do to get rid of this?
Thanks
In peace
Dr. D
-
Go >here (http://forums.imesh.com/forums/viewtopic.php?t=93393&sid=8878276805f2fcc54278d19e78434aa1)<
-
I can see why you're getting rid of it:
http://www.siteadvisor.com/sites/imesh.com
http://www.mywot.com/en/scorecard/imesh.com
-
Hello Soybean and kpac: I did have a funny feeling about that and that's why I want to uninstall; now your link proves I was right to suspect this.
However, soybean, my whole problem is that it doesn't uninstall the usual way, by following the "uninstall" prompt in the control panel, remove and add programs. I need to find a different way to get rid of it because no matter how much I click on the uninstall, it just doesn't go!
Anyone have any suggestions for getting rid of this thing?
Thanks
Dr.D.
-
Is it on Firefox it's installed?
-
Yes, It's installed in my Firefox browser
Dr D
-
Go to C:\Program Files\Imesh, and see, if there is any uninstaller there.
Another option: http://www.revouninstaller.com/
-
The Imesh files did have an installer file, but true to course it didn't work! I guess they disable these or something. Anyway, I'm downloading the uninstaller you linked to and will keep you posted on how that works. Thanks for everything
Dr D
-
If Revo doesn't work, we'll try to remove it manually.
-
Hello: I'm using the revo now, and I used the "ADVANCED" option which says it will hunt down all the traces of the program on the computer to eliminate them. I thought this was the best because this is a potentially dangerous application.
Anyway, now revo presents me with a list of files and asks me if I want to delete them. How do I know? I mean, if these are all definitely related to Mesh, then I want to delete them. but what if some are system files or whatever?
What do you advise?
Thanks
DrD
-
This is really strange: I went ahead and deleted everything, and the program doesn't show up in my revo program list anymore.
BUT the mesh thing is still here as a toolbar on my Firefox. How can I get rid of this thing?
Thanks
DrD
-
Download HijackThis:
http://www.trendsecure.com/portal/en-US/tools/security_tools/hijackthis/download (http://www.trendsecure.com/portal/en-US/tools/security_tools/hijackthis/download)
by clicking on Download HijackThis Installer
Install, and run it.
Post HijackTHis log.
Do NOT attempt to fix anything!
NOTE. If you're using Vista, right click on HijackThis, and click Run as Administrator
================================================================================
Download FoxScan from HERE (http://loupblanc.geekstogo.com/Tools/FoxScan.exe), or HERE (http://www.geekstogo.com/forum/redirect.php?url=http%3A%2F%2Ffradesch.perso.cegetel.net%2Ftransf%2FFoxScan.exe)
Double click on FoxScan.exe to start the scan.
DOS-like window will pop-up.
Press 2 for English. Press Enter.
Be patient. It'll take few minutes.
When the tool is done, it'll display:
Search completed.
Press any key to coninue...
Press any key.
Notepad window titled Rapport-FS.txt will open.
Post Notepad's content in your next reply.
-
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:48:43 AM, on 6/17/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16850)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\XpertVision\TBPanel.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
E:\OpwareSE4.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\WrtMon.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe
E:\reza\Nokia PC Suite 6\LaunchApplication.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\WrtProc.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Documents and Settings\All Users\Application Data\Skype\Plugins\Plugins\9E0D937F462E4362A83B254A9F8AB3F8\InnerPassFileSharing.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\trend micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O3 - Toolbar: (no name) - {B7D3E479-CC68-42B5-A338-938ECE35F419} - (no file)
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [TBPanel] C:\Program Files\XpertVision\TBPanel.exe /A
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [UVS11 Preload] C:\Program Files\Ulead Systems\Ulead VideoStudio 11\uvPL.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "E:\OpwareSE4.exe"
O4 - HKLM\..\Run: [WrtMon.exe] C:\WINDOWS\system32\spool\drivers\w32x86\3\WrtMon.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [RemoteControl8] "C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe"
O4 - HKLM\..\Run: [PDVD8LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD8\Language\Language.exe"
O4 - HKLM\..\Run: [PCSuiteTrayApplication] E:\reza\Nokia PC Suite 6\LaunchApplication.exe -startup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Innerpass] C:\Documents and Settings\All Users\Application Data\Skype\Plugins\Plugins\9E0D937F462E4362A83B254A9F8AB3F8\InnerPassFileSharing.exe autostart
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] E:\reza\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1199258053546
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{BFCF1F9A-D083-495F-868C-0F6558AD7FE5}: NameServer = 85.15.1.13 85.15.1.10
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
--
End of file - 10032 bytes
next log to follow
-
Broni: I can't get the link to the foxscan to work. Neither of them brings up anything. I get a strange run/save box that has no file names in it. I don't know if this is a browser problem or a link problem. What do you suggest?
DrD
-
FoxScan.exe file zipped, and attached
[attachment deleted by admin]
-
Broni: Note that I couldn't get the link to the FoxScan, or even open the file you attached while using my Firefox browser (where the Imesh is stuck). I switched over to my IE and did the foxscan. I hope that's valid.
Here is the scan
FoxScan Version 1.1.0
By Loup blanc - Zebulon.fr
Scan started Wed 06/17/2009 at 9:07
Microsoft Windows XP Professional Service Pack 3 [Version 5.1.2600]
Mozilla Firefox version : 3.0.11 (en-US)
Installation folder : C:\Program Files\Mozilla Firefox
=================================================================================
---------- User account : Irani [Current session]
=================================================================================
Profile name : default
Profile folder : C:\Documents and Settings\Irani\Application Data\mozilla\firefox\Profiles\eisu2rnz.default\
Start pages prefs.js : "http://google.com"
//////////// Setting \\\\\\\\\\\\\
======= Profile name : default =======
Firefox update : Activated
Add-on update : Activated
Search engines update : Activated
Java : Activated
Javascript : Activated
Proxy : No Proxy
//////////// Add-on \\\\\\\\\\\\\
======= Profile name : default =======
Installation notification for Add-on is enabled
Name : AVG Safe Search
State : Activated
Folder : C:\Program Files\AVG\AVG8\Firefox
Name : urn:mozilla:install-manifest" em:id
State : Activated
Folder : C:\Program Files\AVG\AVG8\Toolbar\Firefox\avg@igeared
Name : Java Console
State : Activated
Folder : C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
Name : Java Quick Starter
State : Activated
Folder : C:\Program Files\Java\jre6\lib\deploy\jqs\ff
Name : Skype extension for Firefox
State : Activated
Folder : C:\Program Files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}
Name : Zotero
State : Activated
Folder : C:\Documents and Settings\Irani\Application Data\Mozilla\Firefox\Profiles\eisu2rnz.default\extensions\[email protected]
Name : iMesh MediaBar
State : Activated
Folder : C:\Program Files\Mozilla Firefox\extensions\{B7D3E479-CC68-42B5-A338-938ECE35F419}
Name : Default
State : Activated
Folder : C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
Name : AVG Security Toolbar
State : Deactivated
//////////// Search plugins \\\\\\\\\\\\\
======= Profile name : default =======
Search in "prefs.js" :
browser.search.defaultenginename :
browser.search.defaulturl :
browser.search.selectedEngine :
keyword.URL :
keyword.enable :
--------- Search engines found ------------
+ Search form configured for the engine
C:\Documents and Settings\Irani\Application Data\mozilla\firefox\Profiles\eisu2rnz.default\searchplugins\goodsearch.xml
Template : http://www.goodsearch.com/Search.aspx?Keywords
C:\Documents and Settings\Irani\Application Data\mozilla\firefox\Profiles\eisu2rnz.default\searchplugins\google-scholar.xml
Template : http://scholar.google.com/scholar
C:\Documents and Settings\Irani\Application Data\mozilla\firefox\Profiles\eisu2rnz.default\searchplugins\kartoocom.xml
Template : http://www.kartoo.com/flash04.php3?langue
C:\Documents and Settings\Irani\Application Data\mozilla\firefox\Profiles\eisu2rnz.default\searchplugins\webster.xml
Template : http://www.webster.com/cgi-bin/dictionary?sourceid
=================================================================================
---------- Common section
=================================================================================
//////////// DLL found in C:\Program Files\Mozilla Firefox\components \\\\\\\\\\\\\
browserdirprovider.dll
brwsrcmp.dll
np32asw.dll
------------------------------------------------------
//////////// Search plugins \\\\\\\\\\\\\
--------- Search engines found ------------
+ Search form configured for the engine
C:\Program Files\Mozilla Firefox\searchplugins\amazondotcom.xml
Template : http://www.amazon.com/exec/obidos/external-search/
C:\Program Files\Mozilla Firefox\searchplugins\answers.xml
Template : http://www.answers.com/main/ntquery
C:\Program Files\Mozilla Firefox\searchplugins\avg_igeared.xml
Template : http://aa.yhs.search.yahoo.com/avg/search?fr
C:\Program Files\Mozilla Firefox\searchplugins\creativecommons.xml
Template : http://search.creativecommons.org/
C:\Program Files\Mozilla Firefox\searchplugins\eBay.xml
Template : http://rover.ebay.com/rover/1/711-47294-18009-3/4
C:\Program Files\Mozilla Firefox\searchplugins\google.xml
Template : http://www.google.com/search
C:\Program Files\Mozilla Firefox\searchplugins\wikipedia.xml
Template : http://en.wikipedia.org/wiki/Special:Search
C:\Program Files\Mozilla Firefox\searchplugins\yahoo.xml
Template : http://search.yahoo.com/search
------------------------------------------------------
//////////// Plugins set in registry \\\\\\\\\\\\\
[HKEY_LOCAL_MACHINE\software\mozillaplugins\@adobe.com/FlashPlayer]
"Description"="Adobe® Flash® Player 10"
"Vendor"="Adobe Systems Incorporated"
"Path"="C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll"
[HKEY_LOCAL_MACHINE\software\mozillaplugins\@adobe.com/ShockwavePlayer]
"Description"="Adobe Shockwave Player"
"Vendor"="Adobe Systems Inc."
"Path"="C:\WINDOWS\system32\Adobe\Director\np32dsw.dll"
[HKEY_LOCAL_MACHINE\software\mozillaplugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"="Ag Player Plugin"
"Vendor"="Microsoft"
"Path"="C:\Program Files\Microsoft Silverlight\2.0.40115.0\npctrl.dll"
------------------------------------------------------
//////////// Additional search... \\\\\\\\\\\\\
==== Additional extension ====
[HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\extensions]
"{3f963a5b-e555-4543-90e2-c3908898db71}"="C:\Program Files\AVG\AVG8\Firefox"
"[email protected]"="C:\Program Files\Java\jre6\lib\deploy\jqs\ff"
"avg@igeared"="C:\Program Files\AVG\AVG8\Toolbar\Firefox\avg@igeared"
[HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Mozilla Firefox 3.0.11\extensions]
=========================== End of report ===========================
-
Make sure, Firefox is not running.
Open Windows Explorer, navigate to:
C:\Program Files\Mozilla Firefox\extensions
Delete following folder:
{B7D3E479-CC68-42B5-A338-938ECE35F419}
Fire up Firefox, and see, if Imesh toolbar is gone.
-
Wundebar! That was fantastic! It's gone! Many thanks :) :) :) :) :) :)
Dr D
-
Excellent :)
-
Imesh, a free mp3 download program, cleverly installs two add-ons which modify browsers with their mediabar and datamanager. The problem is when you hit the + to create a blank tab the iMesh mediabar puts their own search page up and it won't go away by any simple means even going back to the default home page for the browser. Even using the control panel to try uninstall them won't take away the modifications or can you simply remove the add-ons in the browser directly. All the standard means to remove these add-ons will not work at all. You have a stubborn dug in tenant living in your PC. Even using most maintenance programs that allow you to see/remove any of the installed programs will show nothing but the one iMesh MP3 pgm entry and not the add-ons. A sophisticated maintenance program like jp16 has a component to show ALL software and their components installed and running. Such a showing will convince you that what you see listed in Windows is but a fraction of what is really running even looking at Task Manager. It makes the ADD & REMOVE program list so incomplete to be a joke.
This all being said, it isn't hopeless to get your way with YOUR PC. There are some very simple ways to get rid of these nuisances and stop the invasion and stubborn attachments to your browser.
The easiest way without drastic surgery or buying clever hunt and kill software is after using control panel to remove any programs listed for iMesh (which doesn't show much) to close the browser and go directly into your Windows Explorer and find the iMesh folder under Programs and delete it manually. The dlls that control this invasion are in some of those sub folders and should go away with that deletion. You MUST have the browser closed or those dlls cannot be deleted.
The facts of life with Windows programs are that the formal way to delete programs for the most part will stop (sometimes) the active functioning of the programs but not all the Registry components will be taken out. Actually hardly any of them goes away even using good Registry Cleaners. You can use regedit to find all iMesh entries and delete them from the registry manually or use a maintenance program like jp16 to find and delete them. This also works for any program that you decide has to out of your computer like AOL, Norton live whatever or any program that over-populates the Registry after you decide you don't want them. The trick is to know what the computer keywords are for a particular software in the Registry and search for them and blast them out. This is not for the faint hearted lite computer user.
The one guaranteeing feature of Windows is if it isn't in the Registry, it won't work in any fashion and won't rise from the dead. The more clever programs use filenames that are not familiar and can evade detection by searching the registry but those are usually stealth viruses that are intended to not be seen but will be felt eventually. That's a whole different seek and destroy discussion.
The rule of thumb is if it is a free program it has to be carefully tried to see that it doesn't have invasive attachments to it that will drive you digitally nuts. For the most part, you want the binary floor clean, you have to get on your knees and scrub it bit by bit.
-
good Registry Cleaners
Oxymoron. Not surprising, good portion of the rest of it was nonsense anyway.
-
On top of being a semseless 2 year old bump...
-
I thought I'd heard the last of that POS Israeli malware (Imesh) a long time ago.
-
I used Revo Uninstaller. Imesh is listed in programs as media search. Follow instructions it worked like a charm. Revo is free on CNET .Here is a link http://www.revouninstaller.com/revo_uninstaller_free_download.html
-
And yet they keep bumping......sigh.
-
Broni...I am having the same I Mesh nightmare...would you mind helping? ::)
-
And yet they keep bumping......sigh.
-
robs1971
You need to start your own topic.
-
OK thanks....done.
http://www.computerhope.com/forum/index.php/topic,117866.0.html
-
Thread locked