In this case, you must enable Safe Mode with Networking - a secure environment that disables most processes and loads only the most required services and drivers.
In addition, the functionality of the virus may itself affect the deletion of initwain.exe. Note that not all tools can detect every type of malware, so you may need to try several options before you're successful.
To delete the initwain.exe virus, you should download and install a full security application like Malwarebytes. If you suspect that you may be infected with a virus, then you must attempt to fix it immediately. To do this, find this process in Task Manager.įind its location (it should be in C:\Program Files\ScanSoft\PaperPort\) and compare the size etc with the above facts. If you had any difficulties with this executable, you should determine if it's trustworthy before deleting initwain.exe.
exe extension of a file name displays an executable file.
The software is usually about 1.09 MB in size. Initwain.exe is an executable file that is part of the ScanSoft PaperPort 11 program developed by Nuance Communications Inc.
R3 - URLSearchHook: (no name) - _ (RdxIE Class) - Ħ° Delete the folder C:\Program Files\Web_Rebatesħ° Delete all the files ( NOT the folders) stored in the following folders :Ĭ:\Documents and Settings\ (*)\Local Settings\Tempġ0° Do a free online virus scan on one of the following sites :ġ1° The version of HijackThis you are using is outdated (last version = 1.98.2), some entries may have not been displayed.Īlso, download the last version from or and post a new log to make sure there is no remaining nasty.Ĭ:\Program Files\Norton AntiVirus\navapsvc. R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = C:\WINDOWS\system32\searchbar.html R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Comcast High-Speed Internet
MSIE: Internet Explorer v6.00 SP1 (.1106)Ĭ:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exeĬ:\Program Files\Norton AntiVirus\navapsvc.exeĬ:\Program Files\Common Files\Symantec Shared\ccApp.exeĬ:\Program Files\Scansoft\PaperPort\pptd40nt.exeĬ:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exeĬ:\Program Files\ATI Multimedia\main\LaunchPd.exeĬ:\PROGRAM FILES\ATI MULTIMEDIA\MAIN\ATISched.EXEĬ:\PROGRA~1\Ahead\NEROPH~1\data\Xtras\mssysmgr.exeĬ:\Program Files\HP PhotoSmart\Photo Printer\IntQuest\REMIND32.EXEĬ:\Program Files\Scansoft\PaperPort\SmartUI\SmartUI.exeĬ:\Program Files\Web_Rebates\WebRebates1.exeĬ:\Program Files\Web_Rebates\WebRebates0.exeĬ:\Program Files\Internet Explorer\IEXPLORE.EXEĬ:\Program Files\Common Files\Real\Update_OB\realsched.exeĬ:\Program Files\Ahead\Nero StartSmart\NeroStartSmart.exeĬ:\Program Files\Ahead\Nero Recode\Recode.exe