1.

Solve : Malware wiped 5.3 and spydare?

Answer»

Help me. I have two computers that is infected with spyware. The first one has malware wiped 5.3 and spydare. I think they are the same program. Spydare flashs a circle with a red line through it over a question mark. Click on the flashing question mark and it take you to a site that wants to scan your computer and pay to buy the program. Yet can not uninstall either program. I know it is a scam/id theft program.

I ran pest patrol. The spyware prevents pest patrol to update its files and scan the computer.

I have Windows XP home and I.E. Explorer 7 on the computer.

Thanks.


I suggest you print this out to help you follow my advice.

***********************

Make sure you have exposed all Hidden Files & Folders.

To enable the viewing of Hidden files follow these steps:

1. Close all programs so that you are at your desktop.
2. Double-click on the My Computer icon.
3. Select the Tools menu and click Folder Options.
4. After the new window appears select the View tab.
5. Put a checkmark in the CHECKBOX labeled Display the contents of system folders.
6. Under the Hidden files and folders section select the radio button labeled Show hidden files and folders.
7. Remove the checkmark from the checkbox labeled Hide file extensions for known file types.
8. Remove the checkmark from the checkbox labeled Hide protected operating system files.
9. Press the Apply button and then the OK button and close My Computer.

***********************

Download Ewido/AVG Anti Spyware from here ….

http://www.ewido.net/en/

It has a fully working 30 day trial period.

Install it and update it to the latest definitions.

Do NOT use it yet.


Now boot to safe mode. Here’s a “how to” if you’re not sure ..

http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001052409420406


When in safe mode run a full system scan with AVGAS and let it fix what it wants to.

REMEMBER TO SAVE THE SCAN REPORT and also remember where you saved it.

Reboot to normal mode and use the computer as you would usually do.

[FOOTNOTE > this is a good program to use as an “on demand” scanner even after the trial period is over. Keep it updated and use it to scan your computer from TIME to time].

*******************

Rehide protected system files & folders by doing the reverse operation to that listed at the start of this post.


*******************

Lastly, download a self-extracting copy of HijackThis from here …….

http://downloads.malwareremoval.com/hijackthis_sfx.exe

Save it to your Desktop.

Double-click on the file hijackthis_sfx.exe file and it will self-extract into its own folder ……

C:\Program Files\HijackThis

Go to this folder and run the hijackthis.exe file.

From the menu click on "Do a system scan and save a logfile".

Copy and PASTE both the AVG AS scan report and the HJT logfile to this thread. More specific removal instructions will follow.



OJ



Info on the program you mentioned...

MalWare Wiped:

AGGRESSIVE, deceptive advertising; uses flawed, inadequate detection scheme; same app as AdwareDelete, AntiVirus Gold, SpyAxe, SpyFalcon, SpyLocked, Spyware Sheriff, SpywareStrike, TitanShield AntiSpyware, & VirusBlast [A: 12-28-05 / U: 12-26-06]


I would certainly STAY away.

And keep the issues in the same thread so those helping do not get confused...


Discussion

No Comment Found