Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

I Messed-Up with iMesh


  • Please log in to reply
6 replies to this topic

#1 CloudySkye

CloudySkye

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:08:34 PM

Posted 04 October 2012 - 07:38 PM

Hello. I have an HP laptop with Windows Vista OS. The other day I accidentally downloaded iMesh from the Internet. It's some kind of music download program. I guess it's a pretty bad thing to download from what I've read about it. Ever since then, my laptop won't start up correctly. It takes forever for it to start up after the "repair" thing runs and it's been restarted a couple of times. I want to uninstall iMesh, and I've tried to many times, but it won't work.

I have run every scan available with my Kaspersky Anti-Virus & Internet Security system including the full 4 hour scan-and no threats were found. But every time I go to unistall iMesh through the Control Panel and clicking on Uninstall a Program--I get a dialogue box that says: "iMesh has stopped working." And then two boxes or choices to click on. One reads: "Check Online for a Solution and Close the Program" or just "Close the Program." When I click on Check Online for a Solution, it does something that looks like it's searching briefly--then nothing. Nothing happens. And I have to just click on "Close Program." I really want this iMesh off my lap top!! But so far no matter what I try--no luck. When I shut off my lap top--it won't start up right. And once I do get it to start up(who knows how long it will be able to be started at all), iMesh is back on my desktop & pinned to Start--even though I deleted it from those spots--it just puts them back there!

I don't understand why Kaspersky didn't find any threats or issues/viruses-I'm glad it didn't but soemthing is very wrong!! So, if anyone has had this problem with iMesh or a program that wouldn't be uninstalled the normal/typical way--please let me know!!!

Thank you!!
CloudySkye

Edited by hamluis, 05 October 2012 - 05:26 AM.
Moved from Vista to Am I Infected - Hamluis.


BC AdBot (Login to Remove)

 


#2 MDTechService

MDTechService

  • Members
  • 303 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Maryland
  • Local time:08:34 PM

Posted 05 October 2012 - 02:39 AM

I remember iMesh from circa 2002... I didn't even know it still existed. If you can't uninstall it the "normal" way, you will have to manually uninstall it.
If I am helping you and I haven't replied to your thread in 3 days, please PM me or bump it

Mike D, BS, A+, HPSP, MCTS
I <3 Linux
The Airline Open source airline simulation game
Check the power cable to the wall first!

#3 davespcneedshelp

davespcneedshelp

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:08:34 PM

Posted 15 October 2012 - 04:55 PM

Hello, well thanks for your post however I think Cloudyskye's question is "how do I manually uninstall this imesh program"? That is, is it just a matter of deleting the folder containing imesh or are there any registry items that need to be deleted as well, or what? Also Cloudyskye mentioned that when she deletes it, it comes back onto her desktop when she restarts the PC.

If someone could please advise. Thx.

#4 thisisu

thisisu

  • Malware Response Team
  • 2,525 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:08:34 PM

Posted 15 October 2012 - 04:59 PM

Hello CloudySkye :)

If you still need help, please try the below:

Posted Image Download Junkware Removal Tool to your desktop.
  • Shutdown your antivirus to avoid any conflicts.
    Right-mouse click JRT.exe and select Run as administrator
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt in your next message.

Edited by thisisu, 15 October 2012 - 05:00 PM.


#5 CloudySkye

CloudySkye
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:08:34 PM

Posted 15 October 2012 - 07:17 PM

Hello CloudySkye :)

If you still need help, please try the below:

Posted Image Download Junkware Removal Tool to your desktop.

  • Shutdown your antivirus to avoid any conflicts.
    Right-mouse click JRT.exe and select Run as administrator
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt in your next message.



#6 CloudySkye

CloudySkye
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:08:34 PM

Posted 15 October 2012 - 07:21 PM

Hi! Oh bless you so much! I followed your instructions--and it worked!!! All the horrible iMesh stuff and some other junk was all delted! And it didn't take too long at all! What a Godsend that junk removal software is-and it's free! Wonderful service--and you guys are THE BEST! My lap top was taking over 1 hour to start-up! Over an hour! And that is with a lot of restarting and running the repairs program. It was on it's last leg! Whew! Just made it, I think--so THANK YOU so much again! Here is how the JRT REPORT reads:

Junkware Removal Tool (JRT) by Thisisu
Version: 1.6.2 (10.15.2012)
OS: Windows ™ Vista Home Premium x64
Ran by Claudina on Mon 10/15/2012 at 19:53:21.73
Blog: http://thisisudax.blogspot.com
**************************************************************




*** Services: 0 Detections



*** Registry Values:

Successfully deleted: [VALUE] hkey_local_machine\software\microsoft\internet explorer\toolbar\\{a4c272ec-ed9e-4ace-a6f2-9558c7f29ef3}
Successfully deleted: [VALUE] hkey_local_machine\software\microsoft\internet explorer\toolbar\\{b278d9f8-0fa9-465e-9938-0c392605d8e3}



*** Registry Keys:

Successfully deleted: [KEY] "hkey_classes_root\f"
Successfully deleted: [KEY] "hkey_classes_root\funmoods.dskbnd"
Successfully deleted: [KEY] "hkey_classes_root\funmoods.dskbnd.1"
Successfully deleted: [KEY] "hkey_classes_root\funmoods.funmoodshlpr"
Successfully deleted: [KEY] "hkey_classes_root\funmoods.funmoodshlpr.1"
Successfully deleted: [KEY] "hkey_classes_root\funmoodsapp.appcore"
Successfully deleted: [KEY] "hkey_classes_root\funmoodsapp.appcore.1"
Successfully deleted: [KEY] "hkey_current_user\software\appdatalow\software\crossrider"
Successfully deleted: [KEY] "hkey_current_user\software\cr_installer"
Successfully deleted: [KEY] "hkey_current_user\software\datamngr"
Successfully deleted: [KEY] "hkey_current_user\software\datamngr_toolbar"
Successfully deleted: [KEY] "hkey_current_user\software\google\chrome\extensions\bbjciahceamgodcoidkjpchnokgfpphh"
Successfully deleted: [KEY] "hkey_current_user\software\google\chrome\extensions\cjpglkicenollcignonpgiafdgfeehoj"
Successfully deleted: [KEY] "hkey_local_machine\software\babylon"
Successfully deleted: [KEY] "hkey_local_machine\software\datamngr"
Successfully deleted: [KEY] "hkey_local_machine\software\google\chrome\extensions\bbjciahceamgodcoidkjpchnokgfpphh"
Successfully deleted: [KEY] "hkey_local_machine\software\google\chrome\extensions\cjpglkicenollcignonpgiafdgfeehoj"
Successfully deleted: [KEY] hkey_current_user\software\microsoft\internet explorer\searchscopes\{9bb47c17-9c68-4bb3-b188-dd9af0fd21}
Successfully deleted: [KEY] hkey_local_machine\software\microsoft\internet explorer\searchscopes\{9bb47c17-9c68-4bb3-b188-dd9af0fd21}
Successfully deleted: [KEY] hkey_classes_root\interface\{0d80f1c5-d17b-4177-ac68-955f3ef9f191}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\internet explorer\searchscopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\settings\{11111111-1111-1111-1111-110011441179}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\stats\{11111111-1111-1111-1111-110011441179}
Successfully deleted: [KEY] hkey_local_machine\software\microsoft\internet explorer\low rights\elevationpolicy\{11111111-1111-1111-1111-110011441179}
Successfully deleted: [KEY] hkey_classes_root\typelib\{1d085c0a-e4f4-4f66-bdbf-4be51015bfc3}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\settings\{2eecd738-5844-4a99-b4b6-146bf802613b}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\stats\{2eecd738-5844-4a99-b4b6-146bf802613b}
Successfully deleted: [KEY] hkey_classes_root\clsid\{61e0ef7a-9bc0-45ea-9b2f-f3e9f02692bd}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\settings\{61e0ef7a-9bc0-45ea-9b2f-f3e9f02692bd}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\stats\{61e0ef7a-9bc0-45ea-9b2f-f3e9f02692bd}
Successfully deleted: [KEY] hkey_local_machine\software\microsoft\windows\currentversion\explorer\browser helper objects\{61e0ef7a-9bc0-45ea-9b2f-f3e9f02692bd}
Successfully deleted: [KEY] hkey_classes_root\clsid\{75ebb0aa-4214-4cb4-90ec-e3e07ecd04f7}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\settings\{75ebb0aa-4214-4cb4-90ec-e3e07ecd04f7}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\stats\{75ebb0aa-4214-4cb4-90ec-e3e07ecd04f7}
Successfully deleted: [KEY] hkey_local_machine\software\microsoft\windows\currentversion\explorer\browser helper objects\{75ebb0aa-4214-4cb4-90ec-e3e07ecd04f7}
Successfully deleted: [KEY] hkey_classes_root\clsid\{965b9dbe-b104-44ac-950a-8a5f97aff439}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\stats\{98889811-442d-49dd-99d7-dc866be87dbc}
Successfully deleted: [KEY] hkey_classes_root\clsid\{a4c272ec-ed9e-4ace-a6f2-9558c7f29ef3}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\settings\{a4c272ec-ed9e-4ace-a6f2-9558c7f29ef3}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\stats\{a4c272ec-ed9e-4ace-a6f2-9558c7f29ef3}
Successfully deleted: [KEY] hkey_classes_root\clsid\{a9db719c-7156-415e-b49d-bad039de4f13}
Successfully deleted: [KEY] hkey_classes_root\appid\{bdb69379-802f-4eaf-b541-f8de92dd98db}
Successfully deleted: [KEY] hkey_classes_root\clsid\{be7a24f5-69cb-4708-b77b-b1eda6043b95}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\settings\{be7a24f5-69cb-4708-b77b-b1eda6043b95}
Successfully deleted: [KEY] hkey_current_user\software\microsoft\windows\currentversion\ext\stats\{be7a24f5-69cb-4708-b77b-b1eda6043b95}
Successfully deleted: [KEY] hkey_local_machine\software\microsoft\windows\currentversion\explorer\browser helper objects\{be7a24f5-69cb-4708-b77b-b1eda6043b95}
Successfully deleted: [KEY] hkey_classes_root\appid\{ea28b360-05e0-4f93-8150-02891f1d8d3c}
Successfully deleted: [KEY] hkey_classes_root\clsid\{f03fd9d0-4f2b-497c-8a71-dd41d70b07d9}



*** Files:

Successfully deleted: [FILE] "C:\Users\Claudina\AppData\Local\funmoods-speeddial.crx"
Successfully deleted: [FILE] "C:\Users\Claudina\AppData\Local\funmoods.crx"
Successfully deleted: [FILE] C:\Program Files (x86)\imesh applications\mediabar\sysid.ini
Successfully deleted: [FILE] C:\Program Files (x86)\imesh applications\mediabar\uninstall.exe
Successfully deleted: [FILE] C:\Program Files (x86)\imesh applications\mediabar\datamngr\BrowserConnection.dll
Successfully deleted: [FILE] C:\Program Files (x86)\imesh applications\mediabar\datamngr\datamngr.dll
Successfully deleted: [FILE] C:\Program Files (x86)\imesh applications\mediabar\datamngr\datamngrUI.exe
Successfully deleted: [FILE] C:\Program Files (x86)\imesh applications\mediabar\datamngr\DnsBHO.dll
Successfully deleted: [FILE] C:\Program Files (x86)\imesh applications\mediabar\datamngr\IEBHO.dll
Successfully deleted: [FILE] C:\Program Files (x86)\imesh applications\mediabar\datamngr\installhelper.dll
Successfully deleted: [FILE] C:\Program Files (x86)\playbryte\uninstall.exe



*** Folders:

Successfully deleted: [FOLDER] "C:\ProgramData\babylon"
Successfully deleted: [FOLDER] "C:\Users\Claudina\AppData\Roaming\babylon"
Successfully deleted: [FOLDER] "C:\Users\Claudina\appdata\local\wajam"
Successfully deleted: [FOLDER] "C:\Users\Claudina\appdata\locallow\babylontoolbar"
Successfully deleted: [FOLDER] "C:\Program Files (x86)\imesh applications"
Successfully deleted: [FOLDER] "C:\Program Files (x86)\playbryte"



*** Event Viewer Logs - Cleared





**************************************************************
Scan was completed on Mon 10/15/2012 at 20:08:11.04
End of Report

Thanks, again!
Sincerely,
CloudySkye :-)

#7 thisisu

thisisu

  • Malware Response Team
  • 2,525 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:08:34 PM

Posted 15 October 2012 - 08:49 PM

You're welcome, CloudySkye.
Be safe :thumbup2:




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users