Check Out Our Shop
Results 1 to 9 of 9

Thread: Windows XP / spyware help

  1. #1
    Join Date
    Apr 2006
    Location
    Zion
    Posts
    91

    Windows XP / spyware help

    I decided to dust off my old desktop and start using it again, because using a laptop everyday is getting tedious.

    When i started it up and did some maintenence, I realized it's loaded with spyware/adware and its rather sluggish. It's not normal spyware/adware either, its something imbedded into the registry that automatically runs a .dll file at startup (if I de-select it via msconfig, it automatically re-selects itself somehow). The .dll file then starts 2 identical processes (designed so that if you close one, the remaining one immediately opens another). Those processes produce mass pop-ups when i open ANY internet program (Iexplore, mozilla, or firefox)

    I remember having a problem like this before, and I pinpointed it in the registry and dismantled it, but the problem this time is that the 2 identical processes are "IEXPLORE.EXE". Therefore when I search the registry, I get about a million matches.

    Ive done everything i know, running out of ideas. I want to just re-install windows, but I wouldnt know where to start and I'm pretty sure my windows disks are in Chicago.

    Has anyone had similar problems? Any success? Should I just re-install windows and start fresh? Any advice or experiences would be helpful.

  2. #2
    Join Date
    May 2006
    Location
    Land of Little Snow
    Posts
    1,041
    Format the drive. Without a system restore point to fix all of the spyware and (likely) rootkits on there, you'll probably never get it all off. You can download a windows xp .iso off of bittorrent.

  3. #3
    Join Date
    Apr 2006
    Location
    Zion
    Posts
    91
    Theres only 2 system restore points available, one is yesterday, and one is from July, but theyre both worthless. I think I'm going to need a re-install, thanks for the bittorrent idea, i didnt even think about that.

  4. #4
    Join Date
    Apr 2005
    Location
    The land of Genesee Cream Ale and homemade pierogies!
    Posts
    2,161
    Last edited by Nobody Famous; 09-15-2006 at 10:04 PM.
    “The best argument in favour of a 90% tax rate on the rich is a five-minute chat with the average rich person.”

    - Winston Churchill, paraphrased.

  5. #5
    Join Date
    May 2006
    Location
    Land of Little Snow
    Posts
    1,041
    No problem. Obviously it isn't legal, but if I paid for all the software on my computer I wouldn't have any $$$ left over for skis. Priorities....

  6. #6
    Join Date
    Oct 2003
    Location
    bozone montuckey
    Posts
    4,337
    you can google the name of the dll or the process, most likely you will find instructions on removing it. sometimes safe mode can help keep things from starting up enough to clean the nasties out.

    also, ad-aware, spybot, and the microsoft windows defender all do a good job of catching and removing most things. unfortunatly, none of them do it all, but with the three of them you can get most things cleaned out.
    "They who can give up essential liberty to obtain a little temporary safety, deserve neither liberty nor safety."
    Ben Franklin

  7. #7
    Join Date
    May 2006
    Location
    Land of Little Snow
    Posts
    1,041
    Quote Originally Posted by fez
    you can google the name of the dll or the process, most likely you will find instructions on removing it. sometimes safe mode can help keep things from starting up enough to clean the nasties out.

    also, ad-aware, spybot, and the microsoft windows defender all do a good job of catching and removing most things. unfortunatly, none of them do it all, but with the three of them you can get most things cleaned out.
    True, unless rootkits are involved. Rootkits hide their nature from the windows kernel such that it is impossible for scanners to detect them.

  8. #8
    Join Date
    Oct 2003
    Posts
    8,881
    Quote Originally Posted by doublediamond223
    True, unless rootkits are involved. Rootkits hide their nature from the windows kernel such that it is impossible for scanners to detect them.
    There are rootkit detectors like Blacklight
    http://www.f-secure.com/exclude/blacklight/index.shtml
    or RootKit revealer
    http://www.sysinternals.com/Utilitie...tRevealer.html

    At that point your computer is fucked - it's just confirmation you need to format the drive and reinstall. (copying my datas what I've been f'ing doing the past few evenings! COCKSUCKERS!)
    Elvis has left the building

  9. #9
    Join Date
    May 2006
    Location
    Land of Little Snow
    Posts
    1,041
    I've used rootkit revealer. Luckily it was clear after a system restore. I guess it's payback for all the software off of bittorrent; I get fucked by a 20 dollar program and get away with the 600 dollar ones. W/e, do full disk image backups on a very regular basis.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •