|
|
|
|
![]() ![]() |
Nov 3 2005, 10:54 PM
Post
#1
|
|
|
Super Member ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: Members Posts: 362 Joined: 25-August 05 Member No.: 11,104 |
I just scanned my computer, with a program. it says it has some keyloggers and worms. how do i delete/take off them!?! here are some pics. :
![]() ![]()
|
|
|
|
Nov 3 2005, 11:03 PM
Post
#2
|
|
|
$p4m 0n j00 $h4m3 m3 0nc3 $p4m 0n m3 $h4m3 m3 7\/\/1c3 ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: [HOSTED] Posts: 6,563 Joined: 21-September 04 From: 9r33|\| 399$ 4|\|D 5P4/\/\ Member No.: 1,218 ![]() |
well to start off what program did you use to scan for this? Second by the looks of it you click on the box to select and then click next or delete whatever is on the program.
|
|
|
|
Nov 3 2005, 11:07 PM
Post
#3
|
|
|
Super Member ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: Members Posts: 362 Joined: 25-August 05 Member No.: 11,104 |
QUOTE(Saint_Michael @ Nov 3 2005, 11:03 PM) well to start off what program did you use to scan for this? Second by the looks of it you click on the box to select and then click next or delete whatever is on the program. Well the program is, Ad-Aware SE, and i did delete once, and rigth now. but it happens again.. |
|
|
|
Nov 4 2005, 03:24 AM
Post
#4
|
|
|
Advanced Member ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: Members Posts: 107 Joined: 9-September 05 From: Houston, TX USA Member No.: 11,651 |
eewww, you've got cooties.
What should you do? First, find a tall building...j/k Spyware is insidious. Lemme guess, you're running a Windoze OS? When will they make secure software? <DISCLAIMER>Don't blame me if this screws up your computer</DISCLAIMER>Try booting in safe mode and then run your spyware removal tool. Remove the spyware. Check msconfig startup tab and uncheck any suspicious bootloaders. Scan your add/remove software section for suspicious programs and remove them. If you're familiar with the folders that should exist in your c:\program files folder, look through there and delete the ones that you don't need. Then boot into regular mode and re-run adaware to see if you squashed it. Does that work? If you've got a broadband connection and you've got a Windows OS, you should think about getting a router. It will help protect you from some common attack routes. Get a firewall like ZoneAlarm. Blah blah, some people argue that the best way to avoid spyware on windows is to format and re-install your OS every few months. It's tedious, but it works. |
|
|
|
Nov 4 2005, 07:46 AM
Post
#5
|
|
|
Premium Member ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: Members Posts: 165 Joined: 1-November 05 From: SATA II Member No.: 13,683 |
hi sandbox,
I agree you opinions process explorer - hop this help |
|
|
|
Nov 4 2005, 10:15 AM
Post
#6
|
|
|
Mankie ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: Members Posts: 762 Joined: 22-July 05 From: New Delhi, India Member No.: 9,746 |
Well to keep the solution short and simple....
As you are using Ad-Aware. On the screen where it shows you all the keyloggers, cookies and other stuff....simply make a right click on it and select the option SELECT ALL. Once you have done that...click on the button QURANTINE....thats it. this will remove all unwanted things...secondly....use a diff. program for e.g. SPYBOT and run a scan with that as well....and if that finds anything remove that as well. It is always advicable by me that you use diff. programs because spyware companies they threat anti-spyware makers with legal notices and LAVASOFT the maker of AD-AWARE has removed few spywares from there list becasue of those LEGAL NOTICES....so use diff. anti-spywares and that'll ensure that no spyware is left in your machine. |
|
|
|
Nov 4 2005, 01:25 PM
Post
#7
|
|
|
Advanced Member ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: Members Posts: 107 Joined: 9-September 05 From: Houston, TX USA Member No.: 11,651 |
Just be warned that if you don't boot into safemode before running your spyware removal tools you might be wasting your time, no matter how many different tools you use!
Lemme explain, some spyware loads multiple copies of itself into RAM, so as soon as you close 1 of them down, the remaining one reloads another copy. This is probably why your first attempt to remove did not work. When you boot into safe mode you get a chance to delete all these nasties before they get a chance to load at all, so you have a better shot at squishing them once and for all. |
|
|
|
Nov 5 2005, 12:09 AM
Post
#8
|
|
|
Super Member ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: Members Posts: 362 Joined: 25-August 05 Member No.: 11,104 |
so sandbox if i want to remove the worms/ key loggers, i have to run in safe mode?
|
|
|
|
Nov 5 2005, 12:23 AM
Post
#9
|
|
|
Advanced Member ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: Members Posts: 107 Joined: 9-September 05 From: Houston, TX USA Member No.: 11,651 |
yes, I would highly recommend it. boot into safe mode, hunt down your spyware, and squish it.
no guarantees that it will work, but you already tried removing the spyware in regular mode and it didn't work, so give safe mode a try. |