MedVision ad

The Official BoS Spyware Thread (1 Viewer)

anti

aww.. baby raccoon ^^
Joined
Jul 28, 2002
Messages
2,900
Location
Hurstville
Gender
Undisclosed
HSC
2002
This is a thread to check (and add to) symtoms of infection by spyware, in case you think you've got a problem.

Windows
# File(s) won't delete
# Popups on desktop (via messaging system, not browser)
# Toolbar on desktop which wasn't installed


IE
# browser popups
# changed homepage
# toolbar on browser which wasn't installed
# browser keeps taking you to a particular site


General
# Programs which track usage of internet etc
# Slowed internet connection
# Antivirus stops working
 

Xayma

Lacking creativity
Joined
Sep 6, 2003
Messages
5,953
Gender
Undisclosed
HSC
N/A
In case you want to stop the popups on desktop:

Control Panel:
Administrative Tools:
Services:
Messenger:

Disable the service. Note this will not affect your MSN or Windows Messenger programs.
 

LeftrightOut

Needs more cowbell
Joined
Nov 11, 2004
Messages
699
Location
Teacher Lounge Private Nightclub
Gender
Male
HSC
N/A
#Checking
-If you think something suss is going on press Ctrl+alt+Delete ONCE (on WinXP select Task Manager if asked) and look at your running processes. Anything that looks suspicious write down the program name and go to google and type it all in with quotes (example "DEFWATCH.exe"). If it is spyware or a virus that program name will show up in discussion threads on various anti virus and anti spyware forums. You will not only find out if the program is dangerous but the links will show you how to remove it.
-If you think something is using your internet without your permission download programs such as netlimiter to check usage and also allows you to restrict some programs from using mroe than their share (say if you are downloading something and want to play a game).
http://www.netlimiter.com/
-A quick way to check just what your computer is doing network wise is to get a firewall, if you do not have a firewall go Start -> run type in "cmd" without quotes and press enter. The once in the command console type in "netstat" without quotes and it will show you what connections your computer has made with the outside world and where to.

#Slow downs
If you are noticing a slow down the Processes tab in task manager will show you what process is hogging all your system resources.

#Scanning
Also get adaware and spybot, update them regularly and run them at least once a week.
http://www.lavasoft.de/
http://www.safer-networking.org/
 
Last edited:

AsyLum

Premium Member
Joined
Nov 13, 2002
Messages
15,899
Gender
Undisclosed
HSC
N/A
The best way to determine if you have spyware/adware/malware is if you notice a significant decrease in performance, on your computer or within a program. If so use Hijackthis to scan and post the log here, or alternatively if you know what you are doing go through and find the sus files out.

Then run Spybot or/and Adware to 'immunise' your system from the basic attacks, run a virus scan, and also if you still think its needed, another one remotely, http://www.pandasoftware.com/activescan/ or http://www.ravantivirus.com/scan/ to cleanse any last bugs.
 

Keen

MD
Joined
Jul 20, 2004
Messages
283
Gender
Male
HSC
2003
The dogiest symptom that I'm getting at the moment is that some program is stopping me from viewing on my desktop and explorer etc, Spybot search and destroy install files and the program (which I cleverly installed) and it's hiding these files from me. I used to not be able to go into sites that mentioned the programs name but that seems to work now. No other symptoms. Installed and updates Adaware SE so things aren't too bad.

Keen
 

timace

haaarrr.
Joined
Jul 11, 2002
Messages
111
Location
Sydney.
Gender
Male
HSC
2002
Please, from a Technical Support perspective, don't rely on AVG or Zone Alarm for your security. They often cause more problems than they solve. I know this, I deal with them daily.

If you notice your dial up connection details (username, dial in number) mangled, that's malware. Run Ad-aware and a worthwhile AV program as fast as you can.

If you're receiving extraordinary amounts of bounced emails in Outlook Express (or similar client), that's a giant virus/trojan.

Oh yes, if you're on DSL/Cable, invest in a router. Best investment you can make.
 

t-i-m-m-y

Member
Joined
Nov 15, 2002
Messages
1,756
Gender
Male
HSC
2003
And, apparently Australian police now have the green light to use spyware to monitor suspicious/illegal activities- but I'm sure thats not a worry for the majority of us.
 

Affinity

Active Member
Joined
Jun 9, 2003
Messages
2,062
Location
Oslo
Gender
Undisclosed
HSC
2003
that's something to protest against, if you don't then they will extend the scope of activities that they are allowed to monitor.

"salami tactics"
 

nick1048

Mè çHöP ŸèW
Joined
Apr 29, 2004
Messages
1,614
Location
The Mat®ix Ordinates: Sector 1-337- Statu
Gender
Male
HSC
2005
SpySubtract
Ad-Aware
Hijack This v1.99

3 programs that rid ur computer of spyware. Make sure you go through add/remove to get rid of any programs you did not install i.e. windows search assistant, shopping wizard etc. and yeah don't visit sites that offer porn or cracks...
 

Huratio

Moderator - UTS
Joined
Jun 24, 2004
Messages
2,504
Gender
Male
HSC
2005
how come no one recommends : norton antivirus + internet security? - its not that expensive
 

jumb

mr jumb
Joined
Jun 24, 2004
Messages
6,184
Gender
Male
HSC
2004
Huratio said:
how come no one recommends : norton antivirus + internet security? - its not that expensive
Becasue you can always get something better for free on the internet.
 

phizz

aka: Philly Cheese
Joined
Jul 4, 2004
Messages
131
Location
Wauchope (port mac')
Gender
Male
HSC
2004
Hey, been fixing alot of my friends computers choking with spyware these days.

The system I've been using to clean spyware seems to be working quite well.
  1. Uninstall unknown programs from the add/remove program list in the control panel.
  2. Install the Latest Spybot S&D (version 1.3 from this post), run the wizard. Do about two scans and fixes
  3. (Opptional) install and run Adware, do the same with this program as Spybot (I don't bother but should).
  4. By using these alliance of spyware removing software, I found that about only 2/3 of spyware will be removed, Spyware is always one step ahead of the removers.
  5. A way to help battle the spyware that remains, click start > run> enter: "msconfig". When the program starts, go to STARTUP tab, and uncheck programs that seem to be spyware (names that are unrelated to any legitimit programs installed, I usualy just remove all except drivers and windows programs), note: if your not sure what the program dose, check its location, if its not in the windows directory, then its safe to uncheck.
  6. Next I uninstall Internet explorer and opt for netscape, firefox or mozilla.
  7. The very last thing I would do is manually remove the registery keys for potential spyware programs, but unless you know what your doing, you'll probably make matters worse. But the guide above should at least stop the spyware, they might not be fully uninstalled but deffinatly inactive and inopperable

The best you can do now is try not fall into the spyware traps, and never download and install programs that seem a bit "to-good-to-be-true".

Though some may dissagree, I beleave Zone Alarm is a dead set nessecity, both windows and norton firewalls are hopeless. so long as you know how to work Zone Alarm, your pretty safe.

hope this helps.
 
Last edited:

phizz

aka: Philly Cheese
Joined
Jul 4, 2004
Messages
131
Location
Wauchope (port mac')
Gender
Male
HSC
2004
Also note about Norton. My friend had the latest deffinitions for Norton yet his system was sluggish as hell.

Spybot S&D found 53 problems, and (wait for it), VET 10.6 found a record 165 viruses! This is a record for me, so I saved the log somewhere.

If my dad has problems with viruses on his computer, rings the toll free VET phone service who guide him through to removing viruses from his comp without haste.

My friend rang Norton's service who were asking for a $120 service fee. I recomended them to consumer affairs in disgust at Norton's services, considering she perchased the program less than 4 days before. Norton's service didn't question the aligation and the service provided free.


Now how many customers dose Norton rip off? Absolute joke, should hang their heads in shame!
 

timace

haaarrr.
Joined
Jul 11, 2002
Messages
111
Location
Sydney.
Gender
Male
HSC
2002
Huratio said:
how come no one recommends : norton antivirus + internet security? - its not that expensive
hahaha.
can you say bloatware/nuisance?
had to disable it on my dad's machine every time i wanted to do any sort of network activity.
 

shortie_689

Member
Joined
Oct 9, 2004
Messages
701
Location
Somewhere In Sydney
Gender
Female
HSC
2004
the microsoft anti spyware program is really good i downloaded it and discovered i had been infected by spyware and the program deleted and controlled the situation for me... if anyone is having this problem that is the way to go
 

llamalope

yes, they're my legs.
Joined
Dec 15, 2004
Messages
1,279
Location
Left BOS (somewhat temporarily) on 29/12/05 to ret
Gender
Female
HSC
2004
NO PEOPLE NO!!!!!! Adaware is NOT GOOD!!!! A computer guy tried to fix our computer, and he installed this. Ad watch is a component of adaware, and this component CAUSES POP UPS such as graphic porn and other randoms.

I know from experience.

also, spybot doesn't track all of the spyware on your computer as it simply doesn't have enough definitions compared to some other programs. That being said, it is pretty good
 

Korn

King of the Universe
Joined
Mar 8, 2004
Messages
3,406
Location
The Hills
Gender
Male
HSC
2004
llamalope said:
NO PEOPLE NO!!!!!! Adaware is NOT GOOD!!!! A computer guy tried to fix our computer, and he installed this. Ad watch is a component of adaware, and this component CAUSES POP UPS such as graphic porn and other randoms.

I know from experience.

also, spybot doesn't track all of the spyware on your computer as it simply doesn't have enough definitions compared to some other programs. That being said, it is pretty good
I have also had past problems wiht Adaware and spybot so this isnt a isolated event
 

Users Who Are Viewing This Thread (Users: 0, Guests: 1)

Top