Sign in with
Sign up | Sign in
Your question

cannot remove search assistant - my search/my quick search..

Last response: in Windows XP
Share
Anonymous
April 1, 2005 8:37:02 AM

Archived from groups: microsoft.public.windowsxp.help_and_support (More info?)

When I go to add/remove programs and try to remove "search assistant-my
search" and "my quick search bar", I get the following error message....
RUNDLL error loading C:\PROGRA~1\bar\1.bin\mqsbar.dll. The specified mode
could not be found.
In other words I can see search assistant in my add/remove programs
but cannot delete it. I ran hijack this.exe and cma eup with the following
results:


Logfile of HijackThis v1.99.1
Scan saved at 7:28:28 AM, on 4/1/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLACSD.EXE
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Logitech\iTouch\iTouch.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Logitech\Desktop
Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\MMDiag.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mim.exe
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Documents and Settings\Me\Local Settings\Temporary Internet
Files\Content.IE5\GDI301QF\hijackthis[1].exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.kcm.org/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://hsremove.com/done.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet
Settings,ProxyOverride = localhost
O2 - BHO: (no name) - {04079851-5845-4dea-848C-3ECD647AA55 - (no file)
O2 - BHO: mqsBar BHO - {0E677221-E309-4341-81BD-3CC3018BF5B3} - C:\Program
Files\MyQuickSearch\bar\1.bin\MQSBAR.DLL (file missing)
O2 - BHO: (no name) - {63B78BC1-A711-4D46-AD2F-C581AC420D4 - (no file)
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} -
C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O4 - HKLM\..\Run: [CTStartup] C:\Program Files\Creative\Splash
Screen\CTEaxSpl.EXE /run
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [Jet Detection] "C:\Program
Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec
Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec
Shared\ccApp.exe"
O4 - HKLM\..\Run: [Advanced Tools Check]
C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software
Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program
Files\Logitech\iTouch\iTouch.exe
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [MimBoot] C:\Program Files\MUSICMATCH\MUSICMATCH
Jukebox\mimboot.exe
O4 - HKLM\..\Run: [PVR Agent] C:\Program Files\V-Stream Multimedia\PVR
Plus\TVR\Scheduled.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop
Messenger\8876480\Program\BackWeb-8876480.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program
Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program
Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} -
C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O9 - Extra 'Tools' menuitem: AOL Toolbar -
{4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL
Toolbar\toolbar.dll (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} -
C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} -
C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet
Explorer\Plugins\NPDocBox.dll
O15 - Trusted Zone: *.musicmatch.com
O15 - Trusted Zone: *.musicmatch.com (HKLM)
O16 - DPF: TruePass EPF 7,0,100,684 -
https://blrscr3.egs-seg.gc.ca/applets/entrusttruepassap...
O16 - DPF: {BD419ACD-B41C-49D9-8ADF-CCA159052515} -
http://ads.adultcash.com/toolbar/bmeb.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. -
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLACSD.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation -
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec
Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd -
C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. -
C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec
Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program
Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec
Corporation - C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation -
C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program
Files\Common Files\Symantec Shared\Security Center\SymWSC.exe


Can anyone help?
Anonymous
April 2, 2005 3:54:04 AM

Archived from groups: microsoft.public.windowsxp.help_and_support (More info?)

check all the objects labeled as "BHO" in hijackThis, and click on "fix".
make sure you've closed all explorer windows before doing this, or else the
search bar will still remain.

it won't take the item out of the "add-remove programs" list, but it will
disable it from starting up.

Cheers,
Vernon

"chris bondy" <chrisbondy@discussions.microsoft.com> wrote in message
news:B9936F18-5DD0-4CB6-9FAB-4FAA0A186064@microsoft.com...
> When I go to add/remove programs and try to remove "search
assistant-my
> search" and "my quick search bar", I get the following error message....
> RUNDLL error loading C:\PROGRA~1\bar\1.bin\mqsbar.dll. The specified mode
> could not be found.
> In other words I can see search assistant in my add/remove programs
> but cannot delete it. I ran hijack this.exe and cma eup with the
following
> results:
>
>
> Logfile of HijackThis v1.99.1
> Scan saved at 7:28:28 AM, on 4/1/2005
> Platform: Windows XP SP2 (WinNT 5.01.2600)
> MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
>
> Running processes:
> C:\WINDOWS\System32\smss.exe
> C:\WINDOWS\system32\winlogon.exe
> C:\WINDOWS\system32\services.exe
> C:\WINDOWS\system32\lsass.exe
> C:\WINDOWS\system32\svchost.exe
> C:\WINDOWS\System32\svchost.exe
> C:\WINDOWS\Explorer.EXE
> C:\WINDOWS\system32\spoolsv.exe
> C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
> C:\PROGRA~1\COMMON~1\AOL\ACS\AOLACSD.EXE
> C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
> C:\WINDOWS\System32\CTsvcCDA.exe
> C:\Program Files\Norton AntiVirus\navapsvc.exe
> C:\WINDOWS\system32\CTHELPER.EXE
> C:\WINDOWS\System32\svchost.exe
> C:\WINDOWS\SM1BG.EXE
> C:\Program Files\Common Files\Symantec Shared\ccApp.exe
> C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
> C:\Program Files\Logitech\iTouch\iTouch.exe
> C:\Program Files\iTunes\iTunesHelper.exe
> C:\Program Files\Messenger\msmsgs.exe
> C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
> C:\Program Files\Logitech\Desktop
> Messenger\8876480\Program\BackWeb-8876480.exe
> C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\MMDiag.exe
> C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mim.exe
> C:\Program Files\Logitech\MouseWare\system\em_exec.exe
> C:\Program Files\iPod\bin\iPodService.exe
> C:\Program Files\Internet Explorer\iexplore.exe
> C:\Program Files\Internet Explorer\iexplore.exe
> C:\Program Files\Outlook Express\msimn.exe
> C:\Documents and Settings\Me\Local Settings\Temporary Internet
> Files\Content.IE5\GDI301QF\hijackthis[1].exe
>
> R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
> http://www.kcm.org/
> R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
> http://hsremove.com/done.htm
> R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet
> Settings,ProxyOverride = localhost
> O2 - BHO: (no name) - {04079851-5845-4dea-848C-3ECD647AA55 - (no file)
> O2 - BHO: mqsBar BHO - {0E677221-E309-4341-81BD-3CC3018BF5B3} - C:\Program
> Files\MyQuickSearch\bar\1.bin\MQSBAR.DLL (file missing)
> O2 - BHO: (no name) - {63B78BC1-A711-4D46-AD2F-C581AC420D4 - (no file)
> O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} -
> C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
> O4 - HKLM\..\Run: [CTStartup] C:\Program Files\Creative\Splash
> Screen\CTEaxSpl.EXE /run
> O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
> O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
> O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
> O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
> O4 - HKLM\..\Run: [Jet Detection] "C:\Program
> Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
> O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec
> Shared\ccRegVfy.exe"
> O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec
> Shared\ccApp.exe"
> O4 - HKLM\..\Run: [Advanced Tools Check]
> C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
> O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
> O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software
> Update\HPWuSchd2.exe"
> O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program
> Files\Logitech\iTouch\iTouch.exe
> O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
> O4 - HKLM\..\Run: [MimBoot] C:\Program Files\MUSICMATCH\MUSICMATCH
> Jukebox\mimboot.exe
> O4 - HKLM\..\Run: [PVR Agent] C:\Program Files\V-Stream Multimedia\PVR
> Plus\TVR\Scheduled.exe
> O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
> O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe"
/background
> O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop
> Messenger\8876480\Program\BackWeb-8876480.exe
> O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program
> Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
> O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program
> Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
> O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} -
> C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
> O9 - Extra 'Tools' menuitem: AOL Toolbar -
> {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL
> Toolbar\toolbar.dll (file missing)
> O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} -
> C:\WINDOWS\system32\Shdocvw.dll
> O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} -
> C:\Program Files\Messenger\msmsgs.exe
> O9 - Extra 'Tools' menuitem: Windows Messenger -
> {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program
Files\Messenger\msmsgs.exe
> O12 - Plugin for .spop: C:\Program Files\Internet
> Explorer\Plugins\NPDocBox.dll
> O15 - Trusted Zone: *.musicmatch.com
> O15 - Trusted Zone: *.musicmatch.com (HKLM)
> O16 - DPF: TruePass EPF 7,0,100,684 -
> https://blrscr3.egs-seg.gc.ca/applets/entrusttruepassap...
> O16 - DPF: {BD419ACD-B41C-49D9-8ADF-CCA159052515} -
> http://ads.adultcash.com/toolbar/bmeb.cab
> O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. -
> C:\PROGRA~1\COMMON~1\AOL\ACS\AOLACSD.EXE
> O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation -
> C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
> O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec
> Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
> O23 - Service: Creative Service for CDROM Access - Creative Technology
Ltd -
> C:\WINDOWS\System32\CTsvcCDA.exe
> O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. -
> C:\Program Files\iPod\bin\iPodService.exe
> O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec
> Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
> O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program
> Files\Netropa\Multimedia Keyboard\nhksrv.exe
> O23 - Service: Norton Unerase Protection (NProtectService) - Symantec
> Corporation - C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
> O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
> O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation -
> C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
> O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program
> Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
>
>
> Can anyone help?
>
!