search assistant removal help!!!

  • Thread starter Thread starter Starman
  • Start date Start date
S

Starman

Hi this three-head prst on my computer, it won't remove itself no matter
what i try (ad-aware, spy-bot, anti-virus etc) please help with advice. It
seems to multiply and has hijacked google...
 
Starman said:
Hi this three-head prst on my computer, it won't remove itself no
matter what i try (ad-aware, spy-bot, anti-virus etc) please help with
advice. It seems to multiply and has hijacked google...

I'm not sure what "three-head prst" means. Although you've used
anti-malware tools, I don't know whether you did that in a methodical
fashion and in Safe Mode. Run through these malware removal steps. It
is crucial that you run all tools in Safe Mode and that all tools are
updated.

1) Scan in Safe Mode with current version (not earlier than 2003)
antivirus using updated definitions.

2) Remove spyware with Spybot Search & Destroy and Ad-aware. These
programs are free, so use them both since they complement each other.
There is a new version of CWShredder from Intermute. I would not
install the other Intermute programs, however. Alternately, there are
CoolWebSearch malware removal steps at SilentRunners.

Be sure to update these programs before running, and it is a good idea
to do virus/spyware scans in Safe Mode. Make sure you are able to see
all hidden files and extensions (View tab in Folder Options).

HijackThis is an excellent tool to discover and disable hijackers, but
it requires expert skill. See below for HijackThis links. A combination
of HijackThis and About:Buster works well in removing the About:Blank
homepage hijacker. Again, this is an expert tool and novices should get
help with it.

3) If you are running Windows ME or XP, you should disable/enable System
Restore because malware will be in the Restore Points. With ME, you
must disable System Restore completely. With XP, you can delete all but
the most recent (presumably clean) System Restore point from the More
Options section of Disk Cleanup (Run>cleanmgr).

4) Make sure you've visited Windows Update and applied all security
patches. Do not install driver updates from Windows Update.

5) Run a firewall.

Links to help with malware:

Software/Methods:
http://www.safer-networking.org - Spybot Search & Destroy
http://www.lavasoftusa.com - Ad-aware
http://www.majorgeeks.com - good download site
http://www.intermute.com/spysubtract/cwshredder_download.html
http://www.silentrunners.org/sr_cwsremoval.html. - SilentRunners

HijackThis:
http://www.aumha.org/a/hjttutor.htm - HijackThis tutorial by Jim
Eshelman
http://spywarewarrior.com/viewforum.php?f=5 - Spyware Warrior HijackThis
forum
http://www.wilderssecurity.com/
http://forums.tomcoyote.org/
http://www.spywareinfo.com/forums/

General:
http://forum.aumha.org/ - look under "Security" for various forums
http://rgharper.mvps.org/cleanit.htm
http://mvps.org/winhelp2002/unwanted.htm
http://www.aumha.org/a/parasite.htm - The Parasite Fight
http://www.spywarewarrior.com/rogue_anti-spyware.htm

Malke
 
Sorry I mean three-headed pest as in malware that has three different things
in it's infection: search assistant/search extender/downloader.agent.

I will run in safe mode and see what happens, but I've tried everything out
there and it comes saying it's clean, but my computer is still infected: no
homepage as it's set to blank, hijacking of websites, downloader warnings
consatntly coming up on screen etc...please advise.
 
I've tried everything as outlined by everyone and others. I even purchashed
the
software Spyware Doctor which found the infections and deleted. But, they
returned and now the Spyware Doctor says I have no infestations but the
culprits are still there.

In my control panel you can';t delete Search Assistant or Search Extender so
the hijacking keeps infecting my computer. Please, please help me, I'm at
the end of my tether. There has to be something to rid this infection. And
these infections are somehow preventing me from downloading updates for my
anti-virus, spyware doctor etc softwares.

Star
 
Sorry I mean three-headed pest as in malware that has three different things
in it's infection: search assistant/search extender/downloader.agent.
I will run in safe mode and see what happens, but I've tried everything out
there and it comes saying it's clean, but my computer is still infected: no
homepage as it's set to blank, hijacking of websites, downloader warnings
consatntly coming up on screen etc...please advise.

Means that either/and:
- you never get the PC clean
- some defect (user, sware design, code) allows re-infection

Until you get a handle on that, you'd be just spinning wheels.

User defects are resolved via building "safe hex" skills
Software design defects are fixed by risk management or better sware
Software coding defects are fixed by patching

Expect software vendor to document and patch code defects, but they
may be blind to design defects that simply do silly things by design.


-------------------- ----- ---- --- -- - - - -
Trsut me, I won't make a mistake!
 
Back
Top