Tech ARP Forums

Go Back   Tech ARP Forums > Site Updates & Promotions > Reviews & Articles
Register
FAQ Members List Calendar Arcade Mark Forums Read

Google Web www.techarp.com forums.techarp.com

Reviews & Articles There will be a post for every Tech ARP article. Come in here to discuss about your favourite article!

Reply
 
LinkBack Thread Tools
Old 20th Nov 2005, 09:48 AM   #1 (permalink)
Administrator!
 
Dashken's Avatar
 
Join Date: 21 Apr 2003
Location: Penang
Posts: 29,722
Reputation: 2162
Dashken has a reputation beyond reputeDashken has a reputation beyond reputeDashken has a reputation beyond reputeDashken has a reputation beyond reputeDashken has a reputation beyond reputeDashken has a reputation beyond reputeDashken has a reputation beyond reputeDashken has a reputation beyond reputeDashken has a reputation beyond reputeDashken has a reputation beyond reputeDashken has a reputation beyond repute
Rep Power: 56
Default Emergency Spyware Guide!

Is your PC behaving strangely? Popping up banners all the time? Getting redirected to unknown websites? It's very likely your PC has been hit by spyware!

But fret not. We have just the guide for you! Join TEB as he shows you how to get rid of spyware and stay clean!


Link : Emergency Spyware Guide!
__________________
| Intel Core 2 Duo E6850 @ 3.2Ghz | ASUS P5B-E Plus | G.SKILL 2x1GB DDR2 800 | 6 HDDs (2TB+ only ) | NVIDIA GeForce 7600GT | Dell E248WFP 24" Widescreen |


Blog : Dashken's I-Blog
Gallery : Dashken's I-Paintings
Dashken is offline   Reply With Quote
SPONSOR

Old 21st Nov 2005, 01:27 AM   #2 (permalink)
TEB
Warming up
 
TEB's Avatar
 
Join Date: 4 Aug 2005
Location: El Dorado Hills CA, USA
Posts: 82
Reputation: 87
TEB will become famous soon enough
Rep Power: 0
Default

Hey, thanks for posting it. Ive already gotten wuite a few logs to analyze.
TEB is offline   Reply With Quote
Old 21st Nov 2005, 04:30 AM   #3 (permalink)
"Little" Devil
 
PsYkHoTiK's Avatar
 
Join Date: 8 Apr 2004
Location: On the "throne"
Posts: 14,290
Reputation: 4003
PsYkHoTiK has a reputation beyond reputePsYkHoTiK has a reputation beyond reputePsYkHoTiK has a reputation beyond reputePsYkHoTiK has a reputation beyond reputePsYkHoTiK has a reputation beyond reputePsYkHoTiK has a reputation beyond reputePsYkHoTiK has a reputation beyond reputePsYkHoTiK has a reputation beyond reputePsYkHoTiK has a reputation beyond reputePsYkHoTiK has a reputation beyond reputePsYkHoTiK has a reputation beyond repute
Rep Power: 59
Default

Great job TEB...
__________________
Intel SLAPL 4.3GHz @ 1.35v : 2x2GB OCZ Platinum DDR2 1066 : Asus P5K Premium : WD Raptor X : G92 8800GTS 512mb 800MHz Core *WIP* : XFi Platinum : Silverstone OP650 : Silverstone TJ-07 : Vista Ultimate Edition : Dtek FuZion CPU : Swiftech MCW60 : MCP655 : Thermochill PA120.3 w Scythe Ultra Kaze : Tygon R3603 1/2" ID 3/4" OD
CPU-Z: SLAPL : SLA9U : FX-55 : DDR 600 : VX
www.techarp.com
PsYkHoTiK is offline   Reply With Quote
Old 22nd Nov 2005, 08:23 AM   #4 (permalink)
Newbie
 
Join Date: 12 Jul 2005
Posts: 7
Reputation: 0
bugmenot is an unknown quantity at this point
Rep Power: 0
Default

Quote:
Originally Posted by Dashken
Is your PC behaving strangely? Popping up banners all the time? Getting redirected to unknown websites? It's very likely your PC has been hit by spyware!

But fret not. We have just the guide for you! Join TEB as he shows you how to get rid of spyware and stay clean!


Link : Emergency Spyware Guide!
I use McAfee which seems to be missing as a solution. The newest anti-virus product I got from them actually has a anti-spyware component that stops malware from being installed, as opposed to letting it install then trying to clean it like most products do. It also can clean a system that has been infected. I've had good results so far.

In addition I also agree that you need 3 things for full protection these days: anti-spyware, firewall, anti-virus.

My 2 cents.
bugmenot is offline   Reply With Quote
Old 23rd Nov 2005, 09:35 PM   #5 (permalink)
Newbie
 
Join Date: 23 Nov 2005
Posts: 1
Reputation: 0
prozac00 is an unknown quantity at this point
Rep Power: 0
Default hmmm...

I'm curious to why Spybot S&D was not mentioned at all? Essentially since all of those mentioned (except LAvasoft) are members of COAST...who have members who indulge in questionable practices. I have often found that it is better not to use many of the vendors who are affiliated with COAST from an ethical and practical perspective.

And often I find the problem withthe MCAffee and Norton suites is that they are resource hogs. I would rather recommend Kapersky, NOD,AVG, Anti-Vir, H+BDEV for anti virus protection that does not have bloat and is accurate.

On the spyware front...again the suites like Norton and McAffee are also not very good at detection accuracy and immunization effeciency...I would rather recommend Spybot overall and Adaware over any others for spyware protection.
prozac00 is offline   Reply With Quote
Old 24th Nov 2005, 02:04 AM   #6 (permalink)
Da Boss
 
Join Date: 10 Oct 2002
Location: In front of my BenQ Joybook 7000 notebook!
Posts: 29,939
Reputation: 2958
Adrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond repute
Rep Power: 65
Default

If you find Norton too bloated, try Symantec Antivirus. It's designed for corporate use and is very much less bloated.
__________________
Dr. Adrian Wong
Tech ARP | Blog @ Tech ARP | The Free Trade Zone


DYKT : The only offshore account I have is at the sand bank?

Keep Tech ARP free! Visit our sponsors!

We need PROGRAMMERS and TECHNICAL WRITERS! Contact us if you are a hot shot programmer or technical writer!

My items for sale : 50x SD Card | Memory Stick PRO | Cyclone Energy Saver | Seiko SS watch | Tiger/Carlsberg beer jugs | Travel Speakers | Motorola V600 | Nokia N90 SOLD! | New Lowepro Mini Trekker AW

Other items for sale @ the FTZ : Zalman CNPS9500 LED @ $20 | Zalman CNPS7700 Cu @ $20 | Zalman CNPS7000 Cu @ $20 | Swarovski bracelet watches | Dell 17" LCD | Hi-Fi speakers | English DIVX movies | HP LaserJet toners! | Office chairs
Adrian Wong is offline   Reply With Quote
Old 5th Dec 2005, 07:04 PM   #7 (permalink)
Just Started
 
sbohdan's Avatar
 
Join Date: 4 Nov 2005
Location: Canada
Posts: 30
Reputation: 14
sbohdan is on a distinguished road
Rep Power: 0
Default

I have to agree with prozac. norton is crap: it is the biggest resource hogger of them all and finds only some viruses not all. when I installed kaspersky it found a bunch of viruses that were not detected by norton before. the mysterious happenings that were caused by those, stopped and had no problems since. for spyware detection I use spy subtract pro, noadware, and xoftspy. I find these compliment each other- what one misses the other finds. I had no problems with viruses and spyware since I use these (allmost 2 years now)
my firewall is zonealarm.
__________________
sbohdan is offline   Reply With Quote
Old 12th Dec 2005, 02:29 AM   #8 (permalink)
Newbie
 
Join Date: 11 Dec 2005
Posts: 1
Reputation: 0
Atlas is an unknown quantity at this point
Rep Power: 0
Default HiJackThis logg

Hi,

I have problems with spyware, here is the log if someone could help me out:
Logfile of HijackThis v1.99.1
Scan saved at 15:46:08, on 2005-12-11
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Spyware Doctor\swdoctor.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\nvctrl.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\hijackthis\HijackThis.exe
C:\Program Files\Messenger\msmsgs.exe

R3 - Default URLSearchHook is missing
O2 - BHO: HomepageBHO - {1ca480cd-c0e5-4548-874e-b85b17905b3a} - C:\WINDOWS\system32\hpC534.tmp
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll (file missing)
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKLM\..\RunOnce: [MicrosoftAntiSpywareCleaner] C:\Program Files\Microsoft AntiSpyware\gcASCleaner.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll (file missing)
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll (file missing)
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1121023747437
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1121031222046
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://cdn.messenger.msn.com/downloa...Downloader.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
Atlas is offline   Reply With Quote
Reply


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
BIOS Optimization Guide Revision 10.2 Adrian Wong BIOS Optimization Guide (BOG) 132 20th Nov 2008 07:19 PM
The Emergency Spyware Removal Guide TEB General Software 13 9th Jul 2008 01:09 PM
Spyware takes aim at Mozilla browsers! Dashken News 11 5th Mar 2008 07:03 PM
The new BIOS Optimization Guide Revision 7 Adrian Wong BIOS Optimization Guide (BOG) 0 2nd Dec 2002 03:56 PM


All times are GMT +8. The time now is 12:23 PM.


Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.1.0
Copyright © 1998-2007 Tech ARP. All rights reserved.