NationStates Jolt Archive


Feckin' spyware!!!

Cabra West
18-09-2006, 20:37
Cabra needs some help, folks. I got myself a piece of spyware and can't seem to get rid of it. Adaware didn't discover it, Symantec Antivirus didn't find it either. I checked my task manager to see if it was an active process, it isn't. I checked for background downloads, no luck either. I cleared all my browsers, uninstalled and reinstalled Opera (which was what I had been using when I caught the spyware), I checked and cleaned up my registry, but the bloody thing's still there.

It doesn't do much, it just sits in the task bar and comes up with a bubble every few minutes, warning me that a "critical system error" was discovered. Anytime I click on it (right or left), it leads me to a website urging me to buy VirusBust (of all things!!!! :mad: )

Anybody had that before or has any tips on how to get rid of it?
New Xero Seven
18-09-2006, 20:38
DUN DUN DUNNNNN..... :p
LazyOtaku
18-09-2006, 20:41
Cabra needs some help, folks. I got myself a piece of spyware and can't seem to get rid of it. Adaware didn't discover it, Symantec Antivirus didn't find it either. I checked my task manager to see if it was an active process, it isn't. I checked for background downloads, no luck either. I cleared all my browsers, uninstalled and reinstalled Opera (which was what I had been using when I caught the spyware), I checked and cleaned up my registry, but the bloody thing's still there.

It doesn't do much, it just sits in the task bar and comes up with a bubble every few minutes, warning me that a "critical system error" was discovered. Anytime I click on it (right or left), it leads me to a website urging me to buy VirusBust (of all things!!!! :mad: )

Anybody had that before or has any tips on how to get rid of it?

Get HijackThis (http://www.hijackthis.de/en), scan your system and post your scan log on their forums and ask for help there.
Rasselas
18-09-2006, 20:41
Tried Spybot? *shrugs* Works for me.
Rejistania
18-09-2006, 20:45
Cabra needs some help, folks. I got myself a piece of spyware and can't seem to get rid of it. Adaware didn't discover it, Symantec Antivirus didn't find it either. I checked my task manager to see if it was an active process, it isn't. I checked for background downloads, no luck either. I cleared all my browsers, uninstalled and reinstalled Opera (which was what I had been using when I caught the spyware), I checked and cleaned up my registry, but the bloody thing's still there.

It doesn't do much, it just sits in the task bar and comes up with a bubble every few minutes, warning me that a "critical system error" was discovered. Anytime I click on it (right or left), it leads me to a website urging me to buy VirusBust (of all things!!!! :mad: )

Anybody had that before or has any tips on how to get rid of it?

Reinstall! and consider to use an operating System.
Cabra West
18-09-2006, 20:46
Tried Spybot? *shrugs* Works for me.

Just found it on google... I hope it helps :)
Andaluciae
18-09-2006, 20:50
Reinstall! and consider to use an operating System.

wha?
Cabra West
18-09-2006, 20:51
wha?

I guess someone's trying to be funny :rolleyes:
Scarlet States
18-09-2006, 20:59
Download SpywareBlaster for free. Just search google. Also, Symantec and Norton Anti-virus are not worth the money you pay for them. They cost a bundle, use up a lot of RAM and do the exact same task a small number of free downloadable programs working in concert can do.
Khadgar
18-09-2006, 21:02
Spybot search and destroy is good, as is a pay program called Pest Patrol, which it may in theory be possible to find pirated somewhere. Not that I would in any way shape or form endorse or encourage piracy.
Posi
18-09-2006, 21:07
Start->Run
cmd.exe
rm C:

That'll fix it.
Cabra West
18-09-2006, 21:08
Spybot search and destroy is good, as is a pay program called Pest Patrol, which it may in theory be possible to find pirated somewhere. Not that I would in any way shape or form endorse or encourage piracy.

I'm running Spybot right now, and it seems to have found the problem already. :)
Rasselas
18-09-2006, 21:09
I'm running Spybot right now, and it seems to have found the problem already. :)
:)
Ultraviolent Radiation
18-09-2006, 21:10
Start->Run
cmd.exe
rm C:

That'll fix it.

rm? rm?!?!? Amateur.
Posi
18-09-2006, 21:11
rm? rm?!?!? Amateur.
I cannot remember the actuall remove command for Windows, and I don't much feel like rebooting to find out.
Liberated New Ireland
18-09-2006, 21:11
Start->Run
cmd.exe
rm C:

That'll fix it.

...does that format the drive or something? :confused:
Posi
18-09-2006, 21:17
...does that format the drive or something? :confused:
It would delete* it.


*Actually it wouldn't work because rm only deats files, not folders.
Cabra West
18-09-2006, 21:21
I'm running Spybot right now, and it seems to have found the problem already. :)

Nope... still there :(
Philosopy
18-09-2006, 21:22
Nope... still there :(

Do you Microsoft Windows Defender running?

And have you tried a virus sweep rather than a spyware scan?
Cabra West
18-09-2006, 21:31
Do you Microsoft Windows Defender running?

And have you tried a virus sweep rather than a spyware scan?

No, don't have that... is that freeware?
Rasselas
18-09-2006, 21:32
Nope... still there :(

All your antivirus/anti-spyware stuff up to date?
http://housecall.trendmicro.com/ has been recommended to me before, if you want to give it a try.
Oh, and have you tried swearing at the computer? ;)


If so, the only other option is to burn your computer in a ritualistic fire I'm afraid.
Posi
18-09-2006, 21:33
No, don't have that... is that freeware?
No, it's either you-don't-know-your-paying-ware or we-are-recording-what-you-do-ware.
Philosopy
18-09-2006, 21:34
No, don't have that... is that freeware?

Yeah, it's the official Microsoft anti-spyware programme. It's still beta, but it might be worth a shot.

http://www.microsoft.com/downloads/details.aspx?FamilyID=435bfce7-da2b-4a6a-afa4-f7f14e605a0d&displaylang=en
UpwardThrust
18-09-2006, 21:36
Start->Run
cmd.exe
rm C:

That'll fix it.

You *nix geek rm is not a command in windows based envyronment
SHAOLIN9
18-09-2006, 21:37
No, don't have that... is that freeware?

There's a free and a paid version for Windows Defender - here's the link (http://www.microsoft.com/downloads/details.aspx?FamilyID=435bfce7-da2b-4a6a-afa4-f7f14e605a0d&DisplayLang=en).

It's a good programme and one that I use, but I haven't had this happen to me before.

EDIT: Dammit! beaten to the post!
Posi
18-09-2006, 21:37
You *nix geek rm is not a command in windows based envyronment
I've adressed it earlier. I can't reboot; I'm dling openSUSE.
UpwardThrust
18-09-2006, 21:41
It would delete* it.


*Actually it wouldn't work because rm only deats files, not folders.

Recursive will do it

rm -r directory
UpwardThrust
18-09-2006, 21:41
I've adressed it earlier. I can't reboot; I'm dling openSUSE.

Ah I see :) suse geek ... never much used it ... I do have the images though
Posi
18-09-2006, 21:45
Ah I see :) suse geek ... never much used it ... I do have the images though
I had the image, but I'm down to 3 DVD-RWs. One has Ubuntu, the other Vista. Of the few I tried during the week, SUSE was the best. Getting madwifi is an annoyance, but still rather easy.


O, and QuinnStorm is forking Compiz because Novell was too reluctant to accept community code. She's releasing hers under the name Beryl pretty qucikly.


*needs to go to work*
The Lone Alliance
19-09-2006, 03:24
Nope... still there :(

When did you get this a day ago? Open up find, go to advance then click find all files since (The date you got it) and today. If you see a file you don't know about it might be it.
Killinginthename
19-09-2006, 04:11
Try Ewido AntiSpyware (http://free.grisoft.com) it is free and is the best AntiSpyware I have found to date.

You may also consider going to bleepingcomputer (http://www.bleepingcomputer.com) and doing a search on their forum.

They have saved my ass a couple of times
UpwardThrust
19-09-2006, 05:03
Try Ewido AntiSpyware (http://free.grisoft.com) it is free and is the best AntiSpyware I have found to date.

You may also consider going to bleepingcomputer (http://www.bleepingcomputer.com) and doing a search on their forum.

They have saved my ass a couple of times

Ewido is deffinatly alright ... but that siren is frigging annoying lol
Cabra West
19-09-2006, 09:13
Ewido is deffinatly alright ... but that siren is frigging annoying lol

I'll try Ewido later on though.... that thing seems bloody resilient :mad:
Chumblywumbly
19-09-2006, 09:19
Arrr, me matey.

Start>Run>msconfig. Click on the Startup tab.

Use bleepingcomputer.com as Killinginthename suggested to check that all the processes listed are valid and needed. Not only will that (usually) identify a lot of spyware that starts up with your system, but disabling unneeded processes speeds up lil’ compy.
Not bad
19-09-2006, 09:23
This sounds kinda like a toolbar or malware rather than spyware problem
Harlesburg
19-09-2006, 12:47
LOL POrn...
Jeruselem
19-09-2006, 13:16
Try Ewido AntiSpyware (http://free.grisoft.com) it is free and is the best AntiSpyware I have found to date.

You may also consider going to bleepingcomputer (http://www.bleepingcomputer.com) and doing a search on their forum.

They have saved my ass a couple of times

I agree :D
Teh_pantless_hero
19-09-2006, 14:42
Get HijackThis (http://www.hijackthis.de/en), scan your system and post your scan log on their forums and ask for help there.

I've had one that Hijackthis couldn't fix because it would reimplement itself. I only found three things that could detect it and only Microsoft Antispyware (supposedly Microsoft Defender now) could remove it for free.
German Nightmare
19-09-2006, 14:50
Arrr, like the mateys have said:

Get yerself some Spybot Search & Destroy, along with Spywareblaster; Ad-Aware SE Personal, and maybe a firewall - and ye bounty be safe!

That has sent any spies off the plank fer good on my ship...

____http://www.section.at/img/smiley/pirate.gif
http://www.studip.uni-goettingen.de/pictures/smile/sailing.gif
Jeruselem
19-09-2006, 14:55
I run Spybot 1.4, Evido Anti-Spyware 4, Adware 1.06 and ZoneLabs Suite 6.0.667 (latest version is actually 6.5.737.000 but it's really buggy).
LazyOtaku
19-09-2006, 16:40
I've had one that Hijackthis couldn't fix because it would reimplement itself. I only found three things that could detect it and only Microsoft Antispyware (supposedly Microsoft Defender now) could remove it for free.

Even if it's something HijackThis can't fix, you'll at least find out what kind of Spy/Malware it is and do a Google search for a tool to fix it.