NationStates Jolt Archive


How do i kill WinFixer?

Osoantipatico
19-10-2005, 01:58
Every time i try to do anything online, winfixer closes whatver im doing and pops it self up. Ive manully deleted it, norton doesnt catch it, and ive put on my restricted sites, but the evil things just won die. How do i make it go away?
Katganistan
19-10-2005, 02:19
http://www.google.com/search?hl=en&q=winfixer&btnG=Google+Search
Sierra BTHP
19-10-2005, 02:24
Based on eTrust PestPatrolĀ® Spyware Scorecard v2.05.03, WinFixer violates the following criteria: First, Installs itself or any other item without user permission or knowledge, at time of installation. WinFixer was installed through social engineering techniques upon visiting www.600pics.com--using confusing ads and uncloseable messages. Second, Displays popup/popunder ads that are displayed when main product is not running or do not appear to be connected with the product. After installation, WinFixer began to run automatically. I closed it, but not long after it opened again with an alarmist message saying my system had 1755 'Severe System Threats.' Upon reboot it shows the same adware.

1. You need to have a good spyware detection and removal program. I use McAfee. Your mileage may vary.
2. Install the spyware removal software.
3. Disconnect your machine from the Internet.
4. Reboot in Windows Safe Mode - no network.
5. Run the antispyware (and afterwards, your antivirus scan).
6. Repeat Step 4.
7. Repeat Step 5.
8. Shutdown the machine. Reconnect your broadband cable.
9. Restart the machine in normal mode.

STOP USING INTERNET EXPLORER. USE FIREFOX (or something OTHER than IE).
Itinerate Tree Dweller
19-10-2005, 02:27
I advise running a combination of spybot search and destroy, hijack this and adaware; do this every so often.
Sierra BTHP
19-10-2005, 02:38
1. Go to the computer store.
2. Buy a copy of Red Hat Linux.
3. Install on your machine.

Problem solved.
Osoantipatico
19-10-2005, 02:46
Thanks, problem solved
Itinerate Tree Dweller
19-10-2005, 02:47
Why buy Red Hat when you can get Ubuntu (http://www.ubuntulinux.org/) for free?
Sierra BTHP
19-10-2005, 02:48
Why buy Red Hat when you can get Ubuntu (http://www.ubuntulinux.org/) for free?

I'm assuming that his download is not working, due to the spyware.
Greater Valia
19-10-2005, 02:54
1. Go to the computer store.
2. Buy a copy of Red Hat Linux.
3. Install on your machine.

Problem solved.

Buy... Linux? HAHAHAHAHAHAHAHA!
Posi
19-10-2005, 03:04
I'm assuming that his download is not working, due to the spyware.
He can order it for free. Ubuntu won "best distribution" at the UK Linux & Open Source Awards. It is also very n00b friendly, according to Linux Journal.
Itinerate Tree Dweller
19-10-2005, 03:21
Yea, they are great cd's and they send them for free. They also have live cd versions if you just want to check it out without installing.
Khodros
19-10-2005, 03:54
I can tell you how I got rid of winfixer. I went to START->Run... "regedit" and maneuvered to the HKEY_CURRENT_USER>Software>Microsoft>Windows NT>Winlogon where I found the suspicious dll "ddaya.dll". It was hidden in the C:/Windows/System32/ folder, but the script that ran it was its name backwards (ayadd.ini)

I downloaded process explorer (http://www.sysinternals.com/files/procexpnt.zip) and ran it, then double clicked on the tab "Threads" and deleted all the instances of the dll that had been loaded into it.

I was able to get rid of the hidden file using killbox (www.thespykiller.co.uk/files/killbox.exe). You tell it the file to delete and it does so the next time the computer starts up.


Hope this helps.
Itinerate Tree Dweller
23-10-2005, 06:09
No offense, but its not a good idea to put direct links to programs on a forum. Instead, put a link to a page that explains the program.
Planners
23-10-2005, 06:16
I always use firefox, for a little while I went over to wondows, and Bamb! got the spyware/virus. My solution bring my computer along with 20 others to my school techies. An hour in the shop and no upfront cost.