General Car Related Discussion. To discuss anything that is related to cars and automotive technology that doesnt naturally fit into another forum catagory.

IT Peeps, help! Ad/Spyware Dialler Hijack :(

Thread Tools
 
Search this Thread
 
Old 15-06-2005, 08:08 AM
  #1  
cabrio zo
PassionFord Post Whore!!
Thread Starter
 
cabrio zo's Avatar
 
Join Date: Jul 2003
Location: Sudbury Suffolk, Drives: Octavia VRS & XR2i 1800 Zetec track car
Posts: 4,275
Likes: 0
Received 0 Likes on 0 Posts
Default IT Peeps, help! Ad/Spyware Dialler Hijack :(

Noticed something funny when dialled into the internet from home last night - something has 'infected' it.

Ran couple of anti adware and spyware programmes, they seemed to delete problems, but 3 were still there - we sourced the dll file, managed to get rid of it, thought that solved the problem - no the dial up username is still wrong (couple of letters followed by what looks like IP address) and wont let you override an International dial up number charging at feck knows what a minute - the anti spyware then detected all the same files we thought were deleted
Think it got coolwebsearch and/or TIBS/hot as hell

Please anyone tell me how to destroy this and get my pc back?!!

Z
Old 15-06-2005, 09:27 AM
  #2  
ballin
10K+ Poster!!
iTrader: (1)
 
ballin's Avatar
 
Join Date: Apr 2004
Location: .
Posts: 10,863
Received 12 Likes on 7 Posts
Default

have you tried "adaware" and "spybot" and a good virus scanner?
Old 15-06-2005, 09:36 AM
  #3  
cabrio zo
PassionFord Post Whore!!
Thread Starter
 
cabrio zo's Avatar
 
Join Date: Jul 2003
Location: Sudbury Suffolk, Drives: Octavia VRS & XR2i 1800 Zetec track car
Posts: 4,275
Likes: 0
Received 0 Likes on 0 Posts
Default

I think it was adaware that failed to remove it Going to try spy sweeper, but still not convinced it will remove the dialler thing

Thanks for your reply though!

I think this one is so intertwined and tough the only solution seems to be system restore/rebuild (haven't got Windows/XP disc so dunno how do that)

Z
Old 15-06-2005, 09:46 AM
  #4  
The Sludge
garibaldi
 
The Sludge's Avatar
 
Join Date: Apr 2004
Location: Wednesbury
Posts: 8,294
Likes: 0
Received 1 Like on 1 Post
Default

i had this and its a sod to get rid off matey. This is the place i used

http://forums.spywareinfo.com/index.php?act=idx
Old 15-06-2005, 10:31 AM
  #5  
It's Czech Mate
............

 
It's Czech Mate's Avatar
 
Join Date: Jun 2003
Location: West Mids
Posts: 12,970
Received 102 Likes on 88 Posts
Default

Install MSN anti spyware and use trendmicro housecall and it 'should' sort it....
Old 15-06-2005, 10:51 AM
  #6  
Smit
The 60ft Launch King
iTrader: (5)
 
Smit's Avatar
 
Join Date: May 2003
Location: Ipswich, Suffolk
Posts: 23,682
Received 9 Likes on 8 Posts
Default

Zo - Use a program called 'Webroot Spy Sweeper' It's the best in the buisness!

You get get a free 7 days trail off the net. from www.webroot.com

If u want the full version PM me and i'll sort it out for you!

Old 15-06-2005, 02:29 PM
  #7  
cabrio zo
PassionFord Post Whore!!
Thread Starter
 
cabrio zo's Avatar
 
Join Date: Jul 2003
Location: Sudbury Suffolk, Drives: Octavia VRS & XR2i 1800 Zetec track car
Posts: 4,275
Likes: 0
Received 0 Likes on 0 Posts
Default

Thanks Guys, this one is a tough bugger, have tried MSN, Spy Sweeper (it says deleted, but on start up the fecker still there), tried searching the registry and allsorts - I don't think they can be removed easily as Sludge says - thanks Sludge, have posted an HJT log to see what peeps can suggest (also found something called CWShredder to get rid of coolweb)

Z
Old 15-06-2005, 02:31 PM
  #8  
DanRSturbo
10K+ Poster!!
 
DanRSturbo's Avatar
 
Join Date: May 2003
Location: Handcuffed to the Mrs' Bed ;-)
Posts: 10,089
Likes: 0
Received 2 Likes on 1 Post
Default

Just delete the dial up connection and re-create you normal ISP one
Old 16-06-2005, 08:34 AM
  #10  
cabrio zo
PassionFord Post Whore!!
Thread Starter
 
cabrio zo's Avatar
 
Join Date: Jul 2003
Location: Sudbury Suffolk, Drives: Octavia VRS & XR2i 1800 Zetec track car
Posts: 4,275
Likes: 0
Received 0 Likes on 0 Posts
Default

Ah if only it were that simple Dan! lol

Thanks Rudey, I managed to delete some dodgy files in safe mode using HijackThis (great explaination/tutioral for this at http://castlecops.com ) ran the coolwebshredder, that fixed. Ran Norton 2005 antivirus, spy doctor, xbot and couple of others, columdialler and a trojan was picked up by spy doctor also a registry value file (which managed to delete from the registry) so managed to manually delete the files somehow and reinstall a new ISP connection

This is a very tough programme, most antispywares can't detect/delete, it seems even if visiting 'non-dodgy' sites the feckers can get into unprotected pc's, a lesson for everyone to get good antispyware software!

Fingers crossed we've got rid of it

Z
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
cossie362
Ford Sierra/Sapphire/RS500 Cosworth
4
11-10-2015 03:53 PM
paceo
General Car Related Discussion.
8
25-09-2015 08:05 PM
paceo
General Car Related Discussion.
6
17-09-2015 12:12 PM



Quick Reply: IT Peeps, help! Ad/Spyware Dialler Hijack :(



All times are GMT. The time now is 08:04 AM.