Free Spyware Scan!
   Internet Security Suite
   Norton AntiVirus 2006
   Anti-Spyware from CA
   Secure private data!

Digital River oneNetwork 2.0 - Make Money!

2nd-Thought Removal Instructions

Description: 
Remove Spyware

Spyware Threat Level

2nd thought is a Browser hijacker which resets your home page redirect your searches to porn sites. Its complicated to change start page after the infection. 2ndthought opens pop-up windows.

CA - eTrust PestPatrol Anti-Spywar

Warning: 
  • This page provides 2nd Thought removal information "AS IS" without a warranty of any kind. You are advised not to use this information if you are not aware of what you are doing. It must be noted that wrongly using the below given information to remove 2nd Thought from you PC may generated unexpected results. You must take a registry back and create a System Restore Point before following the below given instructions.

Important Instructions: 
  1. Please do not delete any directory unless you are sure that it is related with 2nd Thought. Check 'C:\Program Files\', 'C:\Temp', 'C:\Tmp', 'C:\Documents and Settings\(your profile name)\Local Settings\Temp' and/or 'C:\Documents and Settings\All Users\Local Settings\Temp' for these directories. These directories may also exists in 'C:\Windows' directory but deleting a legitimate directory from 'C:\Windows' or sub directories may result in system failure so make sure you have found what you were looking for before deleting any directory. Always use 'System Restore' before following spyware removal instructions.
  2. Files created by 2nd Thought must be removed either by using Add / Remove Programs Utility or simply deleting them using Windows Explorer. Note that some EXE files that are running i.e. processes, will not be deleted unless you use Task Manager to kill these processes.
  3. Please take a registry backup using 'regedit.exe' or create a system restore point using 'System Restore Utility' before following these steps. Note that removing legitimate registry entries may result in a system crash.

Symantec's Norton Internet Security 2006

Remove these directories: 
  1. %programfilesdir% \ STC
  2. %windir% \ bundles
  3. bundles

Remove these files: 
  1. %programfilesdir% \ STC \ SQ_3394_3222.exe
  2. SQInstaller.exe
  3. SQ_3394_3222.exeSQInstaller.exe
  4. %systemdir% \ 2ndsrch.dll
  5. idleui.dll
  6. stcloader.exe
  7. %systemdir% \ cvss.exe
  8. SWRT01.dll
  9. %systemdir% \ winupdt.001
  10. %systemdir% \ winupdt.bin
  11. winupdt.exe
  12. %systemdir% \ winupdtl.exe
  13. STC.exe
  14. BundleOuter2601031121.exe
  15. %programfilesdir% \ STC \ BundleOuter2517040723.exe
  16. slmss.exe
  17. %programfilesdir% \ STC \ CSV5P070.exe
  18. %programfilesdir% \ STC \ s_win32.exe
  19. tvmedia.exe
  20. %programfilesdir% \ STC \ mindset.exe
  21. %programfilesdir% \ STC \ qoologic.exe
  22. bookedspace.exe
  23. %programfilesdir% \ STC \ silent_minstall.exe
  24. bundles.exe
  25. SecondThought.lnk
  26. %desktopdir% \ myPCsearch.lnk
  27. myPcsearch.exe
  28. C: \ rspware2.ico
  29. C: \ stcupdt.exe
  30. adlinstallwin32.exe_
  31. %windir% \ bundles \ 32wu54rd.exe
  32. bs5-cvuacy.exe
  33. Tvm_b5_269.exe
  34. %windir% \ bundles \ trafficvenue1.exe
  35. setup_silent_15622.exe
  36. 2504041019.exe
  37. C: \ Windows \ bundles \ adv0ltc0m.exe
  38. bs5-vwqouc.exe
  39. C: \ Windows \ bundles \ CSV7P070.exe
  40. C: \ Windows \ bundles \ d_otbp.exe
  41. dealhelper.exe
  42. C: \ Windows \ bundles \ HelperInstaller.exe
  43. HelperInstaller.exe.tmp
  44. optimizejames.exe
  45. C: \ Windows \ bundles \ runsearch.exe
  46. s4Sept.exe
  47. C: \ Windows \ bundles \ saie1101.exe
  48. C: \ Windows \ bundles \ setup_silent_26221.exe
  49. shopinst.exe
  50. C: \ Windows \ bundles \ snackman.exe
  51. C: \ Windows \ bundles \ SSK_B5.EXE
  52. stlb2_seed.exe
  53. C: \ Windows \ bundles \ thin-8-1-x-x.exe
  54. txdesuf.exe
  55. vl_ezstub.exe
  56. C: \ Windows \ bundles \ WebRebates_Auto_InstallSilent.exe

Remove these registry keys: 
  1. SWRT01.RT
  2. HKEY_CURRENT_USER \ Software \ STC
  3. HKEY_CURRENT_USER \ Software \ Bundles
  4. AUN
  5. HKEY_LOCAL_MACHINE \ Software \ Classes \ SWRT01.RT
  6. {8940E505-72C6-44DE-BE85-1D746780EFBF}
  7. {13197ACE-6851-45C3-A7FF-C281324D5489}
  8. HKEY_CLASSES_ROOT \ TypeLib \ {5E594162-60A9-487D-84B8-DBDD716CB862}
  9. {8C53BD8E-B12D-4C8F-AD0E-C9DDC39D1273}
  10. HKEY_CLASSES_ROOT \ Interface \ {C0F88E9E-DCEB-4655-968A-AE508A677C39}
  11. HKEY_CLASSES_ROOT \ Interface \ {D7EAC2D8-2D52-4010-A4AD-DFDF60C1706C}
  12. {49DB48FF-02B5-4645-B676-94A4DF1AA026}
  13. HKEY_CLASSES_ROOT \ Interface \ {BCCAB53D-0895-40C3-A942-A03538CE227A}
  14. HKEY_CLASSES_ROOT \ Interface \ {6E0ED53C-9908-49ED-B055-7CB31B162577}
  15. {A986F4DB-792E-4571-8974-0BB6E024766F}
  16. HKEY_CLASSES_ROOT \ Interface \ {9BCDD51B-4A7B-446C-8452-D32D38004582}
  17. {830D3AED-2FA9-454F-B266-D931862BBF34}
  18. {8940E505-72C6-44DE-BE85-1D746780EFBF}
  19. HKEY_LOCAL_MACHINE \ Software \ Classes \ CLSID \ {13197ACE-6851-45C3-A7FF-C281324D5489}
  20. {5E594162-60A9-487D-84B8-DBDD716CB862}
  21. HKEY_LOCAL_MACHINE \ Software \ Classes \ Interface \ {8C53BD8E-B12D-4C8F-AD0E-C9DDC39D1273}
  22. HKEY_LOCAL_MACHINE \ Software \ Classes \ Interface \ {C0F88E9E-DCEB-4655-968A-AE508A677C39}
  23. {D7EAC2D8-2D52-4010-A4AD-DFDF60C1706C}
  24. HKEY_LOCAL_MACHINE \ Software \ Classes \ Interface \ {49DB48FF-02B5-4645-B676-94A4DF1AA026}
  25. {BCCAB53D-0895-40C3-A942-A03538CE227A}
  26. {6E0ED53C-9908-49ED-B055-7CB31B162577}
  27. HKEY_LOCAL_MACHINE \ Software \ Classes \ Interface \ {A986F4DB-792E-4571-8974-0BB6E024766F}
  28. {9BCDD51B-4A7B-446C-8452-D32D38004582}
  29. {830D3AED-2FA9-454F-B266-D931862BBF34}
  30. HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ CurrentVersion \ Ext \ Stats \ {13197ACE-6851-45C3-A7FF-C281324D5489}
  31. {13197ACE-6851-45C3-A7FF-C281324D5489}

Remove these registry key values: 
  1. HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Run \ STCLoader
  2. HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Run \ MSNManager
  3. winupdtl
  4. HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Run \ stcloader
  5. SQInstaller
  6. %systemdir% \ winupdtl.exe
  7. HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ ShellNoRoam \ MUICache \ %systemdir% \ winupdt.exe
  8. %systemdir% \ stcloader.exe
  9. HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ ShellNoRoam \ MUICache \ C: \ stcupdt.exe


Home  |  Spyware  |  Sitemap  |  Contact Us  |  Need Help  |  Links  |  Web  |  Tela Links  |  Site Links

Copyright © 2004-2006 PCPrivacySolutions.com - All rights reserved.

We do not endorse any of the companies, products, or services mentioned on this website. Each product or
service is the trademark of their respective company and all information is provided as opinions only.