Bullguard Antivirus Forum Download A Free Copy Of Bullguard Antivirus Software
Free Antivirus Forum - Learn about antivirus, firewalls and personal security Free Antivirus Forum - Learn about antivirus, firewalls and personal security
 HomeLog InRegisterCommunity CalendarSearch the ForumView The Member ListHelp
What is Application.Aniquro.Toolbar.A???
   
BullGuard Antivirus Forum > Bullguard zone > BullGuard Customers > What is Application.Aniquro.Toolbar.A???  
Forum Quick Jump
 
New Topic Post reply to : What is Application.Aniquro.Toolbar.A??? Printable version of : What is Application.Aniquro.Toolbar.A???
[ << Previous Thread | Next Thread >> ]

Lady Divine
New Member




Date Joined Jan 2008
Total Posts : 7
 
   Posted 1-15-2008 11:23 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
My bullguard has come up with a block message 6 times today, about this Application.Aniquro.Toolbar.A
I have scanned my computer, and it did not find anything, but the last time this message came up was when my LAN connection was locked down...
This is a copy from my OnAccess notesblock:

2008/01/15 21:44:53 | C:\Users\Heidi\AppData\Local\MICROSOFT\Windows\TEMPORARY INTERNET FILES\Content.IE5\I15LAI59\POPCAPLOADER_V6[1].CAB [BLOCKED] [process: 996.C:\Windows\System32\svchost.exe] [user: HEIDI-PC$] [virus: Application.Aniquro.Toolbar.A] [op: OPEN]
 
What is it? Should I worry?
 
Please help me smurf
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 13652
 
   Posted 1-16-2008 7:14 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
Hello smile
 
 
It sounds suspicious to Me, Therefore let´s see what´s running on the computer -
 
 
Please download Combofix:
 
and save to the desktop.

Close all other browser windows.
 
 
Important-> Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results".

 
 Go to start --> run and copy/paste in the following:

"%userprofile%\desktop\combofix.exe" /killall

 
 When finished, it will produce a logfile located at C:\ComboFix.txt.

Post the contents of that log in your next reply


Do NOT post your problem in someone elses thread.

Back to Top
 

Lady Divine
New Member




Date Joined Jan 2008
Total Posts : 7
 
   Posted 1-16-2008 11:20 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
Have tried to do it, BUT I got to warning messages and the program does not work, and the program is not on my pc when I search for it...
 
The first warning message:
Warning
Error Saving File
C:\windows\erdnt\Hiv-backup\SOFTWARE!
 
Continue with the next file?
[RegSaveKeyEx:87]
 
Second warning:
Warning
Error Saving File
C:\windows\erdnt\Hiv-backup\Users\00000004\UsrClass.dat!
 
Continue with the next file?
[RegSaveKeyEx:87]
 
And at the end:
This program is not installed correct.... And so on with the typical Vista messages...
 
My firewall, antivirus and so on where shut down + my LAN connection.
 
smurf 


Best regrads
Lady Divine :)

Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 13652
 
   Posted 1-16-2008 11:53 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
Ok. Let´s try if We can see it in a hijackthis log -
 
 
 
Download Trend Micro HijackThis:
 
Save it in a permanent folder of your choice, such as C:\HJT\. To create this specific folder on your hard drive: Double click the 'My Computer' icon on your desktop, then under the category hard disk drives: double click Local Disk:, then select file->New -> Folder and name it HJT
Choose the "Do a system scan and save a log file" option to perform your scan.
HijackThis will analyze your system, and automatically open a notepad textfile containing the HijackThis log when the scan is finished.
Open the text files containing the logs with a text editor and click Edit -> Select All, followed by Edit -> Copy.
From within the browser window and with the message body text box selected, click Edit -> Paste.
 
 
 
Post hijackthis log


Do NOT post your problem in someone elses thread.

Back to Top
 

Lady Divine
New Member




Date Joined Jan 2008
Total Posts : 7
 
   Posted 1-16-2008 12:10 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
Here it is:(but there where problems with installing the program, so I´m not sure it has scanned correct....)


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:07, on 2008-01-16
Platform: Windows Vista  (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16575)
Boot mode: Normal
Running processes:
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\acrotray.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Logishrd\LComMgr\LVComSX.exe
C:\Program Files (x86)\Logitech\QuickCam10\QuickCam10.exe
C:\Program Files (x86)\Common Files\Logishrd\LComMgr\Communications_Helper.exe
C:\Program Files (x86)\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Common Files\Teleca Shared\Generic.exe
C:\Program Files (x86)\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\IEUser.exe
C:\Users\Heidi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E3GOV7QO\HiJackThis[1].exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.dk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS3/contributeieplugin.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files (x86)\google\googletoolbar1.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files (x86)\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files (x86)\google\googletoolbar1.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS3/contributeieplugin.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files (x86)\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [P17Helper] Rundll32 SPIRun.dll,RunDLLEntry
O4 - HKLM\..\Run: [VolPanel] "C:\Program Files (x86)\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\JM\JMInsIDE.exe
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [Adobe_ID0EYTHM] C:\PROGRA~2\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files (x86)\Logitech\QuickCam10\QuickCam10.exe" /hide
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files (x86)\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [P17RunE] RunDll32 P17RunE.dll,RunDLLEntry
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [BullGuard] "C:\Program Files\BullGuard Ltd\BullGuard\bullguard.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - Startup: Screen Clipper and Launcher til OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Adobe Reader Hurtigstart.lnk = C:\Program Files (x86)\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files (x86)\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Append to existing PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: Send til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://downol.dr.dk/download/netradio/Rawflow.cab
O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} (Microsoft Data Collection Control) - https://support.microsoft.com/OAS/ActiveX/MSDcode.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/pr02/resources/VistaMSNPUpldda-dk.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) - http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0) - http://javadl-esd.sun.com/update/1.5.0/jinstall-1_5_0_09-windows-i586.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v10/ZIntro.cab56649.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su2/CTL_V02002/ocx/15033/CTPID.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Version Cue CS3 - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS3\Server\bin\VersionCueCS3.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BullGuard LiveUpdate (BgLiveSvc) - BullGuard Software - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files (x86)\Canon\CAL\CALMAIN.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Program Files (x86)\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Process Monitor (LVPrcS64) - Logitech Inc. - c:\program files\common files\logishrd\lvmvfm\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12357 bytes


Best regrads
Lady Divine :)

Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 13652
 
   Posted 1-16-2008 12:24 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
"Unfortunately" is it clean.
 
 
Please run combofix as described below. This time, rightclick on combofix file and choose - Run as admin
 
 
Please download Combofix:
 
and save to the desktop.

Close all other browser windows.
 
 
Important-> Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results".

 
 Go to start --> run and copy/paste in the following:

"%userprofile%\desktop\combofix.exe" /killall

 
 When finished, it will produce a logfile located at C:\ComboFix.txt.

Post the contents of that log in your next reply
 


Do NOT post your problem in someone elses thread.

Back to Top
 

Lady Divine
New Member




Date Joined Jan 2008
Total Posts : 7
 
   Posted 1-16-2008 1:18 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
Done...
and it does not start to scan at all, and this is the log file I get from "programcompabilityassistent":
<?xml version="1.0" encoding="UTF-16"?>
<DATABASE>
<EXE NAME="ComboFix.exe" FILTER="GRABMI_FILTER_PRIVACY">
    <MATCHING_FILE NAME="ComboFix.exe" SIZE="1551736" CHECKSUM="0x64732E33" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" LINK_DATE="08/03/2005 16:31:58" UPTO_LINK_DATE="08/03/2005 16:31:58" />
</EXE>
</DATABASE>
It can not install it self correctly.... Is what my pc tells me.... smurf


Best regrads
Lady Divine :)

Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 13652
 
   Posted 1-16-2008 1:37 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
Ok.
Do You have a 64 bit Vista machine ?


Do NOT post your problem in someone elses thread.

Back to Top
 

Lady Divine
New Member




Date Joined Jan 2008
Total Posts : 7
 
   Posted 1-16-2008 1:51 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
Yes I have smurf


Best regrads
Lady Divine :)

Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 13652
 
   Posted 1-16-2008 2:03 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
Thought so ;-)
 
 
That´s why combofix won´t run, it´s "built" for 32 bit only.
 
 
See if You can Run Superantispyware -
 
 
Please download Free  Version of Superantispyware
 
Install it using the Standard Install option. (You will be asked for your e-mail address, it is safe to give it.
 
 
 
Start Superantispyware.
Hit - Scan Your Computer - button
Click on the drive(s) you want to scan. Put a check in - Perform Complete Scan, then next,
it will scan now. When scan have finished, put a checkmark with  all items it found. Next, after cleaning, allow it to Reboot
 
 
 
Start Superantispyware again –
Click Preferences and then click the statistics/logs tab.
Click the dated log and press view log and a text file will appear.
 
 
 
Post this log
 
 
 
 
 Otherwise, tell the exact location of  Aniquro.Toolbar.A ?


Do NOT post your problem in someone elses thread.

Back to Top
 

Lady Divine
New Member




Date Joined Jan 2008
Total Posts : 7
 
   Posted 1-16-2008 6:57 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 01/16/2008 at 02:42 PM
Application Version : 3.9.1008
Core Rules Database Version : 3380
Trace Rules Database Version: 1374
Scan type       : Quick Scan
Total Scan Time : 00:31:49
Memory items scanned      : 264
Memory threats detected   : 0
Registry items scanned    : 235
Registry threats detected : 0
File items scanned        : 47612
File threats detected     : 27
Adware.Tracking Cookie
 C:\Users\Heidi\AppData\Roaming\Microsoft\Windows\Cookies\heidi@advertising[2].txt
 C:\Users\Heidi\AppData\Roaming\Microsoft\Windows\Cookies\heidi@doubleclick[1].txt
 C:\Users\Heidi\AppData\Roaming\Microsoft\Windows\Cookies\heidi@atdmt[2].txt
 C:\Users\Heidi\AppData\Roaming\Microsoft\Windows\Cookies\heidi@eas4.emediate[1].txt
 C:\Users\Heidi\AppData\Roaming\Microsoft\Windows\Cookies\heidi@indextools[2].txt
 C:\Users\Heidi\AppData\Roaming\Microsoft\Windows\Cookies\heidi@bs.serving-sys[2].txt
 C:\Users\Heidi\AppData\Roaming\Microsoft\Windows\Cookies\heidi@track.adform[2].txt
 C:\Users\Heidi\AppData\Roaming\Microsoft\Windows\Cookies\heidi@almbrand.112.2o7[1].txt
 C:\Users\Heidi\AppData\Roaming\Microsoft\Windows\Cookies\heidi@serving-sys[1].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\heidi_rasmussen@2o7[2].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\heidi_rasmussen@ads.as4x.tmcs[2].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\heidi_rasmussen@ads.greteroede[1].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@ad.yieldmanager[1].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@advertising[1].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@bs.serving-sys[2].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@cgm.adbureau[2].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@doubleclick[1].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@eas.apm.emediate[2].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@eas4.emediate[2].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@imrworldwide[2].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@msnportal.112.2o7[1].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@serving-sys[1].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@sonyonlineentertainment.112.2o7[1].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@statse.webtrendslive[1].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@track.adform[2].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@tremor.adbureau[2].txt
 C:\Users\Heidi Rasmussen\AppData\Roaming\Microsoft\Windows\Cookies\Low\heidi_rasmussen@tribalfusion[2].txt
 
Second log:
 
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 01/16/2008 at 06:51 PM
Application Version : 3.9.1008
Core Rules Database Version : 3380
Trace Rules Database Version: 1374
Scan type       : Complete Scan
Total Scan Time : 00:56:52
Memory items scanned      : 248
Memory threats detected   : 0
Registry items scanned    : 6166
Registry threats detected : 0
File items scanned        : 65440
File threats detected     : 3
Adware.Tracking Cookie
 C:\Users\Heidi\AppData\Roaming\Microsoft\Windows\Cookies\heidi@www.googleadservices[1].txt
 C:\Users\Heidi\AppData\Roaming\Microsoft\Windows\Cookies\heidi@www.googleadservices[2].txt
 C:\Users\Heidi\AppData\Roaming\Microsoft\Windows\Cookies\heidi@e2.emediate[2].txt
 
 As I can see, morst of these items are harmless....
 
smurf 


Best regrads
Lady Divine :)

Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 13652
 
   Posted 1-18-2008 11:13 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
They are rolleyes
 
 
Please tell the exact location of  Aniquro.Toolbar.A ?


Do NOT post your problem in someone elses thread.

Back to Top
 

Lady Divine
New Member




Date Joined Jan 2008
Total Posts : 7
 
   Posted 1-18-2008 3:04 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
This is one of them:
2008/01/15 21:44:53 | C:\Users\Heidi\AppData\Local\MICROSOFT\Windows\TEMPORARY INTERNET FILES\Content.IE5\I15LAI59\POPCAPLOADER_V6[1].CAB [BLOCKED] [process: 996.C:\Windows\System32\svchost.exe] [user: HEIDI-PC$] [virus: Application.Aniquro.Toolbar.A] [op: OPEN]


Best regrads
Lady Divine :)

Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 13652
 
   Posted 1-19-2008 12:23 (GMT +1)    Quote: What is Application.Aniquro.Toolbar.A???Alert an admin about: What is Application.Aniquro.Toolbar.A???
Ok.
 
Reboot to safe mode and delete:
C:\Users\Heidi\AppData\Local\MICROSOFT\Windows\TEMPORARY INTERNET FILES\Content.IE5\I15LAI59\POPCAPLOADER_V6[1].CAB
 
If You can´t delete it, rename it to -  POPCAPLOADER_V6[1]. bak
 
Then, see if You can delete it now


Do NOT post your problem in someone elses thread.

Back to Top
 
New Topic Post reply to : What is Application.Aniquro.Toolbar.A??? Printable version of : What is Application.Aniquro.Toolbar.A???
 
Forum Information
Currently it is Saturday, November 22, 2008 8:33 PM (GMT +1)
There are a total of 64.077 posts in 15.840 threads.
In the last 3 days there were 26 new threads and 166 reply posts. View Active Threads
Who's Online
This forum has 27202 registered members. Please welcome our newest member, wowzer77.
45 Guest(s), 1 Registered Member(s) are currently online.  Details
Touch
5 Latest Threads
Internet Redircet Virus on Vista (19)22-11-2008 19:31:44 (Touch)
UrqOIyaw.dll trojan (i think) wont go away (1)22-11-2008 19:29:59 (Touch)
Windows behaving strangely (10)22-11-2008 19:28:51 (Touch)
Browser redirect virus (3)22-11-2008 16:44:48 (Touch)
Why am i getting this message Exception Processing Message 0x0000013 (0)22-11-2008 16:02:25 (Oggy)