Previous in Forum: Mail Tab For Firefox?   Next in Forum: Strange symbols on IE7
Close
Close
Close
12 comments
Rate Comments: Nested
Active Contributor

Join Date: Nov 2007
Location: Jamestown N.Y.
Posts: 23

Spyware Hijack

11/30/2007 8:55 AM

I am running Ad-aware SE Professional free home addition on my home pc and have been happy with it. I was trying to "fix" my girlfriend's computer and tried to download the free software from lavasoft's web page and didn't realize that the page was redirected to a malicious site that introduced an extortionist program that takes over your browser and keeps redirecting you to their website to purchase their software to fix the problems. I am far from an expert and know just enough to be dangerous, but there must be an easy way to get rid of this crap. I was able to copy my version of Ad-aware to a flash drive and was finally able to get her pc to boot up and run the program. It did clean out almost 200 bad files, but the extortion software is still there. Any help would be greatly appreciated and help me not to look like such an idiot.

thanks

Bryan

Register to Reply
Interested in this topic? By joining CR4 you can "subscribe" to
this discussion and receive notification when new comments are added.
Guru
Canada - Member - Our strength is our diversity

Join Date: Jan 2007
Location: Canada
Posts: 1024
Good Answers: 40
#1

Re: Spyware Hijack

11/30/2007 9:21 AM

I have seen a few things like this.

Might want to clean a few areas:

- execute a regedit and do a search for anything that references the site and erase it

- check your internet settings

- erase any cookies referencing the site

- may have to uninstall and reinstall the browser. A good test is to narrow down where the infection is , is by using a different browser such as Word. If the problem still exists in a different browser, the problem is with the common internet settings. If the problem goes away, The browser and its associated files are infected

- Next, 'Block' the site

- may want to disable Java in the internet options.

__________________
Perfection is a subjective and abstract concept.
Register to Reply
Guru
United Kingdom - Member - Not a New Member Hobbies - Musician - New Member Hobbies - Fishing - New Member

Join Date: May 2006
Location: Reading, Berkshire, UK. Going under cover.
Posts: 9684
Good Answers: 468
#2

Re: Spyware Hijack

11/30/2007 9:40 AM

Sorry I can't be any help for a fix, but thanks for the warning - I use Ad-aware myself, and recently downloaded it for my ex.

I got away with it!

__________________
"Love justice, you who rule the world" - Dante Alighieri
Register to Reply
Commentator
Hobbies - DIY Welding - New Member Hobbies - Car Customizing - New Member

Join Date: Jun 2006
Posts: 61
Good Answers: 1
#3

Re: Spyware Hijack

12/01/2007 12:17 AM

If you have the original disc that came with the computer, you could clean out your hard drive and start all over--clean as a whistle.

I also know enough to be dangerous.

Register to Reply
Guru
New Zealand - Member - Interested in everything- see my Profile please APIX Pilot Plant Design Project - Member - Member Engineering Fields - Electrical Engineering - Member Engineering Fields - Power Engineering - Member Engineering Fields - Civil Engineering - Member Hobbies - Musician - Autoharp and Harmonica Hobbies - Hunting - Member Hobbies - Fishing - Member

Join Date: Nov 2007
Location: Christchurch, (The Garden City), South Island, New Zealand
Posts: 4395
Good Answers: 230
#4

Re: Spyware Hijack

12/01/2007 12:34 AM

If you were geographically closer, I could call around and clean the Computer for you, at no charge.

Adaware Pro only gets around 45% of know malware, it is helpful, but you should not rely on it completely.

There is Proprietary Software, which can clean that PC, but it all costs, you need to pay to register and gain full capability of that Software.

You could go to this website, there are some freebies available there:

http://www.grc.com/default.htm

There are a number of Software tools there, which should assist you....

__________________
"The number of inventions increases faster than the need for them at the time" - SparkY
Register to Reply
Guru
Popular Science - Weaponology - New Member Safety - ESD - New Member Hobbies - Fishing - New Member

Join Date: Sep 2006
Location: Near Frankfurt am Main, Germany. 50.390866N, 8.884827E
Posts: 17996
Good Answers: 200
#5

Re: Spyware Hijack

12/01/2007 4:15 AM

You could also try running Spybot after AdAware, it finds software that AdAware misses and Vice Versa...

You still need to clean the Browser, delete all cookies etc...as has already been discussed...

By the way, you are probably not at fault, this redirection was probably done on your girlfriends watch, before you even looked at the PC, she should not hold you responsible in the slightest, you were only trying to help...

You need a good software Firewall, I use the free one from Comodo, but there are others equally as good, a hardware firewall in the broadband modem (if she has one) is also a good idea, Antivirus software is a must and she must learn NOT to open emails if she is uncertain of the sender in any way. Sadly, there are some Trojans that get sent from friends computers automatically.......

__________________
"What others say about you reveals more about them, than it does you." Anon.
Register to Reply
Guru

Join Date: Feb 2006
Posts: 1758
Good Answers: 6
#6

Re: Spyware Hijack

12/01/2007 3:18 PM

Download Ad-Aware SE from from majorgeeks.com.

Also download plug-ins to complete Lavasoft's website. I could found these from anywhere else.

May try S&D or Spybot.

As far as re-directing of browser is concerned, there are some sites or Installers like

SaveNow and/or New.Net, WhenU KaZaA, Go!Zilla, Babylon, Cydoor, Gdivx, and WebShots and like that which change your default web page.

Try to change it to Blank page & search the url which is in your browsers defalt in "regedit" command in "Run".

BE CAREFUL to backup your registry to restore if problem occurs on reboot.

For some of such BHOs special cleaners are on AV Sites.

Read:MS Knowledge Base Article 302463

There is new type of mal-ware called RootKits. Try Grisoft's [AVG] AVG ANTI-ROOTKIT

Hope will be of any help.

Register to Reply
Associate

Join Date: Jun 2007
Location: Lexington, Kentucky, USA
Posts: 33
#7

Re: Spyware Hijack

12/03/2007 7:38 AM

I have had a similar experience. I did a net search for information on what files you need to get rid of. When you know what need to go you will have to boot to DOS and the edit the registry and remove the references to these files and delete the files.

Good luck, Mike

__________________
"A designer knows he has achieved perfection not when there is nothing left to add, but when there is nothing left to take away." Antoine de, Sant-Exupery
Register to Reply
Active Contributor

Join Date: Nov 2007
Location: Jamestown N.Y.
Posts: 23
#8

Re: Spyware Hijack

12/03/2007 8:17 AM

To all that responded, thank you very much, I did do some research, to other similar problems people on this forum had and came up with some things to try. It was a struggle just to get to a web site to purchase software that worked and getting it installed and run was almost impossible because the virus was fighting it. The original problem started when I mistakenly went to lavasoft.com and not lavasoftusa.com. spyware doctor was the package I purchased for 30 bucks and it did finally work after about 4 attempts. Once this spyware lock was in the computer spy-bot s&d and ad-aware couldn't even touch it. It was just ugly, and very malicious. Thanks again to all and I hope no one else makes the stupid mistake I made.

Register to Reply
Guru
Popular Science - Weaponology - New Member Safety - ESD - New Member Hobbies - Fishing - New Member

Join Date: Sep 2006
Location: Near Frankfurt am Main, Germany. 50.390866N, 8.884827E
Posts: 17996
Good Answers: 200
#9
In reply to #8

Re: Spyware Hijack

12/03/2007 9:19 AM

We are all pleased that you managed to get it off your computer!

__________________
"What others say about you reveals more about them, than it does you." Anon.
Register to Reply
Guru

Join Date: Feb 2006
Posts: 1758
Good Answers: 6
#10

Re: Spyware Hijack

12/03/2007 3:15 PM

Regards.

For info of All.

giveawayoftheday.com offers free 1 licensed program & 1 game.

Look for your luck

Register to Reply
Anonymous Poster
#11
In reply to #10

Re: Spyware Hijack

12/03/2007 11:55 PM

You could try to restore the PC to an earlier point. That worked for me just yestereday after I somehow came across the trojan ZLOB which installed spyware called virprotect on my PC. My spyware caught it coming in but couldn't stop it. Once loaded, it's a real pain to get it off. I tried a couple of things and then just did a restore to the previous day. Wallah! No more trojan. No more virprotect trashware.

Register to Reply
Anonymous Poster
#12

Re: Spyware Hijack

01/04/2008 9:27 AM

The world needs a more effective method for fighting these idiots bent on destroying others investments or stealing over the I-net. Yes a computer, software, internet connection etc are investments. Just add up their individual prices. The various legal systems have proven in-effective so now it is time for another approach. I suggest the big stick approach. When ever we find someone distributing malicious software, hijacking browers etc. We just apply a big stick to his (don't leave the womans libbers out, his/her) head. The application doesn't have to be very hard, just hard enough to bust the skull...

Register to Reply
Register to Reply 12 comments
Copy to Clipboard

Users who posted comments:

anderbry (1); Andy Germany (2); Anonymous Poster (2); Haajee (2); JohnDG (1); MrRoboto (1); Sparkstation (1); Swellmel (1); techno (1)

Previous in Forum: Mail Tab For Firefox?   Next in Forum: Strange symbols on IE7

Advertisement