G
Guest
Hello everybody,
This is Vishal Bhatt from India,
Happy New Year to all of you...
Here's the Problem Statement:
Running MSSRT (Microsoft Suspected Spyware Reporting Tool) gave report
regarding improper proxy settings and didn't send the data to microsft.
Websites like this one popup whenever I get onilne on my broadband or
whenever I get online on my yahoo Messenger.
http://www.health-yshopping.com/normal/yyy102.html
http://www.hug-ediscounts.com/normal/yyy102.html
http://www.hug-ediscounts.com/normal/yyy65.html
http://www.dealiotoday.com/normal/yyy102.html
http://www.ecommerc-e.com/normal/yyy102.html
http://www.searc-h.com/error_docs/forbidden.html
http://www.bigdiscountbuy.com/normal/yyy102.html
http://www.mediapurchases.com/normal/yyy102.html
http://getvisitors.net/
and IP Address which redirects me to all above thos adviertising pop-up
sites is
64.192.130.141
One Clue, I don't know will that help you out, but let me tell you,
all these things started from www.crackz.ws or http://(somecracksite).ws
after trying to run a keygen or searial no generated prog, I think I cought
this.
I suspect that some DLLs from Windows\System32 folder in my computer
are installing themselves to Memory as soon as computer starts, even in safe
mode,
'cos when I try to remove them, delete them, it doesn't allow. Also they've
made
their entry into the system registry in the CLSID section. I tried to
delete that entry
and delete those DLL files but everytime I restart computer, I found that
that file
has changed its name and also made their changed name entry in the system
registry CLSID section, also installed in the memory, so that DLL file can't
be deleted.
I deep scanned whole computer, all the harddrives, it removed some of them,
but I think its not totally removed. Some traces which are QUITE deep and
HIGHLY intellectual or Complex adware program should be there which I can't
find
by running fully updated MS AntiSpyware!!!
after that I ran http://safety.live.com which removed 3 virus
also going for ewido online scan now, which shows spyware.look2me
I tried free versions downloaded of SPYBOT, ADWARE from www.pcsafe.com
spyware doctor from pctools.com AdAware from Lavasoft.com etc.
I M not sure wheather I should trust other sites like
www.f-secure.com/blacklight
www.ewido.com/
www.rootrevit.com/
PLS help me out.
VISHAL V. BHATT
(e-mail address removed)
This is Vishal Bhatt from India,
Happy New Year to all of you...
Here's the Problem Statement:
Running MSSRT (Microsoft Suspected Spyware Reporting Tool) gave report
regarding improper proxy settings and didn't send the data to microsft.
Websites like this one popup whenever I get onilne on my broadband or
whenever I get online on my yahoo Messenger.
http://www.health-yshopping.com/normal/yyy102.html
http://www.hug-ediscounts.com/normal/yyy102.html
http://www.hug-ediscounts.com/normal/yyy65.html
http://www.dealiotoday.com/normal/yyy102.html
http://www.ecommerc-e.com/normal/yyy102.html
http://www.searc-h.com/error_docs/forbidden.html
http://www.bigdiscountbuy.com/normal/yyy102.html
http://www.mediapurchases.com/normal/yyy102.html
http://getvisitors.net/
and IP Address which redirects me to all above thos adviertising pop-up
sites is
64.192.130.141
One Clue, I don't know will that help you out, but let me tell you,
all these things started from www.crackz.ws or http://(somecracksite).ws
after trying to run a keygen or searial no generated prog, I think I cought
this.
I suspect that some DLLs from Windows\System32 folder in my computer
are installing themselves to Memory as soon as computer starts, even in safe
mode,
'cos when I try to remove them, delete them, it doesn't allow. Also they've
made
their entry into the system registry in the CLSID section. I tried to
delete that entry
and delete those DLL files but everytime I restart computer, I found that
that file
has changed its name and also made their changed name entry in the system
registry CLSID section, also installed in the memory, so that DLL file can't
be deleted.
I deep scanned whole computer, all the harddrives, it removed some of them,
but I think its not totally removed. Some traces which are QUITE deep and
HIGHLY intellectual or Complex adware program should be there which I can't
find
by running fully updated MS AntiSpyware!!!
after that I ran http://safety.live.com which removed 3 virus
also going for ewido online scan now, which shows spyware.look2me
I tried free versions downloaded of SPYBOT, ADWARE from www.pcsafe.com
spyware doctor from pctools.com AdAware from Lavasoft.com etc.
I M not sure wheather I should trust other sites like
www.f-secure.com/blacklight
www.ewido.com/
www.rootrevit.com/
PLS help me out.
VISHAL V. BHATT
(e-mail address removed)