I am so happy to have found this forum.
This is hard for me to to believe but I cannot get rid of toolbar888. I perform daily disk image backups with DriveImage. To make a long story short, I have gone back as far as October and restored my drive, ran SpyBot to determine that there was NO infection, restored my current data files, desk top, outlook data, and a few others, re-booted, and 888 was back. I have NO IDEA of where it's coming from or residing. Soooooo......I have now restored the latest image (yesterday's) and have decided to try to get rid of this pest.
I have gone through the process of deleting registry keys, files, dll's etc with no luck. I cannot believe it.
Since my computer is vital to my personal and business life, any help will be greatly appreciated.
I did the Panda online scan before AND after running Spybot as instructed. Spybot said it removed 888 but every scan it shows back up.
Here is the first scanner log:
Incident Status Location
Adware:Adware/Maxifiles Not disinfected c:\program files\common files\{8ce5b48b-07de-1033-1125-051028050001}\update.exe
Adware:Adware/Maxifiles Not disinfected C:\PROGRA~1\COMMON~1\{3CE5B~1\Bar888.dll
Adware:Adware/Maxifiles Not disinfected C:\Program Files\Common Files\{8CE5B48B-07DE-1033-1125-051028050001}\System.dll
Virus:trj/ldpinch.im Disinfected Operating system
Adware:adware/yazzle Not disinfected c:\windows\downloaded program files\YazzleActiveX.ocx
Adware:adware/cws Not disinfected C:\Documents and Settings\Tom Perkins\Favorites\Health
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Tom Perkins\Cookies\tom perkins@drivecleaner[2].txt
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Tom Perkins\Cookies\tom perkins@stats.drivecleaner[2].txt
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Tom Perkins\Cookies\tom perkins@www.drivecleaner[2].txt
Spyware:Cookie/myaffiliateprogram Not disinfected C:\Documents and Settings\Tom Perkins\Cookies\tom perkins@www.myaffiliateprogram[1].txt
Adware:Adware/SuperSpider Not disinfected C:\Documents and Settings\Tom Perkins\Local Settings\Temporary Internet Files\Content.IE5\MTFWPOFM\antzom[1].exe
Adware:Adware/Sqwire Not disinfected C:\Program Files\Common Files\iofo\iofoa.exe
Adware:Adware/Sqwire Not disinfected C:\Program Files\Common Files\iofo\iofod\iofoc.dll
Adware:Adware/Sqwire Not disinfected C:\Program Files\Common Files\iofo\iofop.exe
Adware:Adware/Maxifiles Not disinfected C:\Program Files\Common Files\{3CE5B48B-07DE-1033-1125-051028050001}\Bar888.dll
Adware:Adware/Maxifiles Not disinfected C:\Program Files\Common Files\{3CE5B48B-07DE-1033-1125-051028050001}\UnInstall.exe
Adware:Adware/Maxifiles Not disinfected C:\Program Files\Ipwindows\ipwins.dll
Adware:Adware/Maxifiles Not disinfected C:\Program Files\Ipwindows\ipwins.exe
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc1\system.dll
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc1\Update.exe
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc9687\system.dll
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc9687\Update.exe
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc9688\Bar888.dll
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc9689\system.dll
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc9689\Update.exe
Adware:Adware/SuperSpider Not disinfected C:\WINDOWS\Downloaded Program Files\d7e930c30a233a02fb8a404d79f0dffc_13.exe
Potentially unwanted tool:Application/VSToolbar Not disinfected C:\WINDOWS\system32\aexysjds.exe
Adware:Adware/DriveCleaner Not disinfected C:\WINDOWS\system32\drvbib.dll
Adware:Adware/Sqwire Not disinfected C:\WINDOWS\Temp\b103.exe
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\Temp\b122.exe[mc-0-0-0.exe]
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\Temp\b122.exe[mc-0-0-0.exe][ipwins.exe]
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\Temp\b122.exe[mc-0-0-0.exe][ipwins.dll]
Adware:Adware/DriveCleaner Not disinfected C:\WINDOWS\Temp\mst117.tmp
Adware:Adware/Sqwire Not disinfected C:\WINDOWS\Temp\tsinstall_4_0_4_0_b4.exe
Adware:Adware/888Bar Not disinfected C:\WINDOWS\Temp\win106.tmp.exe
Adware:Adware/888Bar Not disinfected C:\WINDOWS\Temp\win12B2.tmp.exe
Adware:Adware/SuperSpider Not disinfected C:\WINDOWS\Temp\win12B4.tmp
Potentially unwanted tool:Application/Leaktest.A Not disinfected D:\Downloads\Utilities\Leak Test\LeakTest.exe
This is hard for me to to believe but I cannot get rid of toolbar888. I perform daily disk image backups with DriveImage. To make a long story short, I have gone back as far as October and restored my drive, ran SpyBot to determine that there was NO infection, restored my current data files, desk top, outlook data, and a few others, re-booted, and 888 was back. I have NO IDEA of where it's coming from or residing. Soooooo......I have now restored the latest image (yesterday's) and have decided to try to get rid of this pest.
I have gone through the process of deleting registry keys, files, dll's etc with no luck. I cannot believe it.
Since my computer is vital to my personal and business life, any help will be greatly appreciated.
I did the Panda online scan before AND after running Spybot as instructed. Spybot said it removed 888 but every scan it shows back up.
Here is the first scanner log:
Incident Status Location
Adware:Adware/Maxifiles Not disinfected c:\program files\common files\{8ce5b48b-07de-1033-1125-051028050001}\update.exe
Adware:Adware/Maxifiles Not disinfected C:\PROGRA~1\COMMON~1\{3CE5B~1\Bar888.dll
Adware:Adware/Maxifiles Not disinfected C:\Program Files\Common Files\{8CE5B48B-07DE-1033-1125-051028050001}\System.dll
Virus:trj/ldpinch.im Disinfected Operating system
Adware:adware/yazzle Not disinfected c:\windows\downloaded program files\YazzleActiveX.ocx
Adware:adware/cws Not disinfected C:\Documents and Settings\Tom Perkins\Favorites\Health
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Tom Perkins\Cookies\tom perkins@drivecleaner[2].txt
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Tom Perkins\Cookies\tom perkins@stats.drivecleaner[2].txt
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Tom Perkins\Cookies\tom perkins@www.drivecleaner[2].txt
Spyware:Cookie/myaffiliateprogram Not disinfected C:\Documents and Settings\Tom Perkins\Cookies\tom perkins@www.myaffiliateprogram[1].txt
Adware:Adware/SuperSpider Not disinfected C:\Documents and Settings\Tom Perkins\Local Settings\Temporary Internet Files\Content.IE5\MTFWPOFM\antzom[1].exe
Adware:Adware/Sqwire Not disinfected C:\Program Files\Common Files\iofo\iofoa.exe
Adware:Adware/Sqwire Not disinfected C:\Program Files\Common Files\iofo\iofod\iofoc.dll
Adware:Adware/Sqwire Not disinfected C:\Program Files\Common Files\iofo\iofop.exe
Adware:Adware/Maxifiles Not disinfected C:\Program Files\Common Files\{3CE5B48B-07DE-1033-1125-051028050001}\Bar888.dll
Adware:Adware/Maxifiles Not disinfected C:\Program Files\Common Files\{3CE5B48B-07DE-1033-1125-051028050001}\UnInstall.exe
Adware:Adware/Maxifiles Not disinfected C:\Program Files\Ipwindows\ipwins.dll
Adware:Adware/Maxifiles Not disinfected C:\Program Files\Ipwindows\ipwins.exe
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc1\system.dll
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc1\Update.exe
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc9687\system.dll
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc9687\Update.exe
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc9688\Bar888.dll
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc9689\system.dll
Adware:Adware/Maxifiles Not disinfected C:\RECYCLER\S-1-5-21-507921405-1417001333-725345543-1003\Dc9689\Update.exe
Adware:Adware/SuperSpider Not disinfected C:\WINDOWS\Downloaded Program Files\d7e930c30a233a02fb8a404d79f0dffc_13.exe
Potentially unwanted tool:Application/VSToolbar Not disinfected C:\WINDOWS\system32\aexysjds.exe
Adware:Adware/DriveCleaner Not disinfected C:\WINDOWS\system32\drvbib.dll
Adware:Adware/Sqwire Not disinfected C:\WINDOWS\Temp\b103.exe
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\Temp\b122.exe[mc-0-0-0.exe]
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\Temp\b122.exe[mc-0-0-0.exe][ipwins.exe]
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\Temp\b122.exe[mc-0-0-0.exe][ipwins.dll]
Adware:Adware/DriveCleaner Not disinfected C:\WINDOWS\Temp\mst117.tmp
Adware:Adware/Sqwire Not disinfected C:\WINDOWS\Temp\tsinstall_4_0_4_0_b4.exe
Adware:Adware/888Bar Not disinfected C:\WINDOWS\Temp\win106.tmp.exe
Adware:Adware/888Bar Not disinfected C:\WINDOWS\Temp\win12B2.tmp.exe
Adware:Adware/SuperSpider Not disinfected C:\WINDOWS\Temp\win12B4.tmp
Potentially unwanted tool:Application/Leaktest.A Not disinfected D:\Downloads\Utilities\Leak Test\LeakTest.exe