The new forums will be named Coin Return (based on the most recent vote)! You can check on the status and timeline of the transition to the new forums here.
The Guiding Principles and New Rules document is now in effect.
My computer, whilst I am browsing the internet, always gives me Internet Explorer pop-ups, even while I'm in Firefox. This started out of the blue a month or so ago. I frequently run Windows Defender scans, and I almost always have numerous viruses with the "Severe" threat level. I remove them. But the problem persists. I'm afraid I may have to completely wipe my computer. What can I do?
Edit: It is also worth mentioning that at times, it gives me so many popups at once, I cannot even turn off my computer. it will just keep cranking them out, and I must use a "button" shutdown.
Are you using any anti-virus program? Download AVG Free or Avast! Home (I use the latter) and do a memory scan. Avast! will also check all of your startup items, and upon installation will ask you to restart and if you want it to scan your hard drive when Windows boots. Let it do so, and see what it finds, and if the problem perseveres.
Edit - Windows Defender is not a substitute for a real anti-virus program.
Rohan on
...and I thought of how all those people died, and what a good death that is. That nobody can blame you for it, because everyone else died along with you, and it is the fault of none, save those who did the killing.
It sounds like you have some sort of advertising trojan. I doubt an anti-virus program is going to get rid of it. Try Spybot Search and Destroy at http://www.safer-networking.org/.
Did you install any shareware anything else new recently? If so, that program may be the source of your problem.
Do you download anything from peer-to-peer networks? If you do what ever the last thing was may be your problem. You really need to scan everything downloaded from those systems.
Use Ad-Aware in addition to Spybot mentioned above. They should catch most of it. When you're done, run HijackThis and post the log it spits out. Don't do anything with it; it will basically tell us if there's any spyware left on the system.
Use Ad-Aware in addition to Spybot mentioned above. They should catch most of it. When you're done, run HijackThis and post the log it spits out. Don't do anything with it; it will basically tell us if there's any spyware left on the system.
Wasn't there some big hubbub about a year or two back where someone allegedly found that Ad-Aware was actually linked to a whole bunch of advertisers or something like that?
Anyway, I use a combo of Spybot and Symantec Security for my PC, and the only ads I ever get are usually page-embedded, so that setup might be worth checking out.
Use Ad-Aware in addition to Spybot mentioned above. They should catch most of it. When you're done, run HijackThis and post the log it spits out. Don't do anything with it; it will basically tell us if there's any spyware left on the system.
Wasn't there some big hubbub about a year or two back where someone allegedly found that Ad-Aware was actually linked to a whole bunch of advertisers or something like that?
Yes, but no one really cares it seems.
Run HiJack This, and post the log it prints out for us to look at.
In addition to Ad-Aware and Spybot, I would suggest downloading the trial for Prevx. It seems to knock out the nasties that the other two miss. Even though it's just a trial, I've never had any problem just installing it multiple times when I need to use it.
Logfile of HijackThis v1.99.1
Scan saved at 3:43:48 PM, on 7/9/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
But really, it is advantageous to know what's going on if you want to prevent this from happening again.
cfgauss on
The hero and protagonist, whose story the book follows, is the aptly-named Hiro Protagonist: "Last of the freelance hackers and Greatest sword fighter in the world." When Hiro loses his job as a pizza delivery driver for the Mafia, he meets a streetwise young girl nicknamed Y.T. (short for Yours Truly), who works as a skateboard "Kourier", and they decide to become partners in the intelligence business.
Try checking those, and clicking FIX at the bottom. Then restart. Those seem pretty redundant.
Let me know if that helps scrum... If not, we'll start disabling a lot more of that unnecessary CANON software and Epson software.
urahonky on
0
darunia106J-bob in gamesDeath MountainRegistered Userregular
edited July 2007
Huh, when I open that HijackThis download link in Firefox, the whole program closes all on its own. And when I try to download it in IE, it's as if the computer presses the cancel button for me when I'm trying to save it.
EDIT: Managed to download it but now my computer won't let me run the program. It shows the first screen for a few seconds then closes it. Help?
EDITEDIT: Never mind, got it to run a scan and save a .log but couldn't keep it open for more than a second without it automatically closing. Is there a MS program I'm unaware of that prevents programs and files with certain keywords from working?
Huh, when I open that HijackThis download link in Firefox, the whole program closes all on its own. And when I try to download it in IE, it's as if the computer presses the cancel button for me when I'm trying to save it.
EDIT: Managed to download it but now my computer won't let me run the program. It shows the first screen for a few seconds then closes it. Help?
Hmmm... How knowledgeable are you on the computer?
This is what I'd try:
Boot into safe mode.
Start -> Run -> msconfig
Click on the startup tab
Click disable all
restart your computer
urahonky on
0
darunia106J-bob in gamesDeath MountainRegistered Userregular
edited July 2007
Here's what HijackThis came up with:
Logfile of HijackThis v1.99.1
Scan saved at 4:39:44 PM, on 7/9/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)
That's all I can really see. Unless you use the google toolbar, get rid of those 4. Reboot and see if that helps.
Tried it, nothing much has changed. Also, most of the ad-ware and pop-ups that I'm getting seem to be anti-spyware centric. I've even got this one annoying thing in the system tray that displays a speech baloon about how I should click on it and download an anti-spyware program. I'm thinking most of those things are really trojan horses so any ideas about what i should do?
That's all I can really see. Unless you use the google toolbar, get rid of those 4. Reboot and see if that helps.
Tried it, nothing much has changed. Also, most of the ad-ware and pop-ups that I'm getting seem to be anti-spyware centric. I've even got this one annoying thing in the system tray that displays a speech baloon about how I should click on it and download an anti-spyware program. I'm thinking most of those things are really trojan horses so any ideas about what i should do?
Oh shit, yeah I remember that beast. I had a few computers in my bay with that exact same virus. Do you have a way to backup your data? The safest (and easiest route) would be to reformat your computer. It will run like new again. (I know, everyone hates doing it... but believe me, to get this virus off your computer it may take a miracle... I'd used about 5 different AV on it, and I don't think I got it off)
You may also (before formatting) try:
Start -> Run -> msconfig (hit enter)
Go to the Startup Tab, and disable all.
Restart computer
See if it still pops up. I think it still will, but this way we can see what we're really dealing with.
urahonky on
0
darunia106J-bob in gamesDeath MountainRegistered Userregular
That's all I can really see. Unless you use the google toolbar, get rid of those 4. Reboot and see if that helps.
Tried it, nothing much has changed. Also, most of the ad-ware and pop-ups that I'm getting seem to be anti-spyware centric. I've even got this one annoying thing in the system tray that displays a speech baloon about how I should click on it and download an anti-spyware program. I'm thinking most of those things are really trojan horses so any ideas about what i should do?
Oh shit, yeah I remember that beast. I had a few computers in my bay with that exact same virus. Do you have a way to backup your data? The safest (and easiest route) would be to reformat your computer. It will run like new again. (I know, everyone hates doing it... but believe me, to get this virus off your computer it may take a miracle... I'd used about 5 different AV on it, and I don't think I got it off)
You may also (before formatting) try:
Start -> Run -> msconfig (hit enter)
Go to the Startup Tab, and disable all.
Restart computer
See if it still pops up. I think it still will, but this way we can see what we're really dealing with.
Nothing's changed. Guess I'll have to reformat (dang).
I'll have reformat later though. Also, I have a compaq computer, would performing a full system recovery from the hard drive be a viable option?
That's all I can really see. Unless you use the google toolbar, get rid of those 4. Reboot and see if that helps.
Tried it, nothing much has changed. Also, most of the ad-ware and pop-ups that I'm getting seem to be anti-spyware centric. I've even got this one annoying thing in the system tray that displays a speech baloon about how I should click on it and download an anti-spyware program. I'm thinking most of those things are really trojan horses so any ideas about what i should do?
Oh shit, yeah I remember that beast. I had a few computers in my bay with that exact same virus. Do you have a way to backup your data? The safest (and easiest route) would be to reformat your computer. It will run like new again. (I know, everyone hates doing it... but believe me, to get this virus off your computer it may take a miracle... I'd used about 5 different AV on it, and I don't think I got it off)
You may also (before formatting) try:
Start -> Run -> msconfig (hit enter)
Go to the Startup Tab, and disable all.
Restart computer
See if it still pops up. I think it still will, but this way we can see what we're really dealing with.
Nothing's changed. Guess I'll have to reformat (dang).
I'll have reformat later though. Also, I have a compaq computer, would performing a full system recovery from the hard drive be a viable option?
Sorry bro. It's the safest and cheapest way to get rid of that damned thing.
Well, I'd try it first. It will make it easier on you by giving you all your drivers and stuff. But if that's infected too you'll have to format twice.
I'd risk it, just to save yourself some time (possibly).
Look for svchost.exe in folders that it shouldn't be in. Remember to set hidden files to be shown. Check the registry under both HKLM and HKCU in software/microsoft/windows/currentversion/run and runonce for anything suspicious. Export them if you want a backup, but then delete anything suspicious.
Ad-Aware + Spybot + Prevx + manual process/registry analysis should be able to stop anything.
If you or any of the programs find files that can't be deleted because they're in use (some of the shit disguises itself as drivers), then either set one/all of the programs to run on startup to get it before it can start itself, or just boot into safemode and manually delete the files yourself.
Edit: Oh. And MAKE SURE that each of the programs is updated! A lot of the nastier malware will prevent the programs from updating or even scanning, and sometimes will reboot/bluescreen your computer. Ad-Aware has a .def file you can download and place in the dir manually. If AA/SB/PX are being duped and are not able to update/scan, you're gonna have to start manually defeating the malware until you nail the ones that are pwning the apps.
Posts
Edit - Windows Defender is not a substitute for a real anti-virus program.
Nothing's forgotten, nothing is ever forgotten
Did you install any shareware anything else new recently? If so, that program may be the source of your problem.
Do you download anything from peer-to-peer networks? If you do what ever the last thing was may be your problem. You really need to scan everything downloaded from those systems.
Anyway, I use a combo of Spybot and Symantec Security for my PC, and the only ads I ever get are usually page-embedded, so that setup might be worth checking out.
Yes, but no one really cares it seems.
Run HiJack This, and post the log it prints out for us to look at.
It allows you to create a log, and it opens a notepad then pastes everything there. Then you copy and paste it into the chat box.
Also, try to stick with only one anti-virus at a time. More than one hinders performance on your computer, and may end up locking it.
I also want to get rid of the Ultimate Baseball Online thing, even though it isn't a virus. So do I just check that?
stupid computers and their moon language
learn english, you damned machines!
I don't have the time to run all of them through a search engine right now, but those seem like the obviously bad ones.
Edit: Actually...well, rhrgfgug.dll doesn't show up on any search engines, but then I also don't have icq...I'd regard it with extreme caution.
As soon as I get home in about an hour, I'll take a look at it for you, okay?
Damned foreigners! Get out of my country!
But really, it is advantageous to know what's going on if you want to prevent this from happening again.
O4 - HKLM\..\Run: [wcmdmgr] C:\WINNT\wt\updater\wcmdmgrl.exe -launch
O4 - HKCU\..\Run: [WebBuying] C:\Program Files\Web Buying\v1.7.4\webbuying.exe
O23 - Service: DomainService - Unknown owner - C:\WINNT\system32\gkvmiymk.exe (file missing)
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
Try checking those, and clicking FIX at the bottom. Then restart. Those seem pretty redundant.
Is it alright if I run HijackThis and post the results here?
Go for it, maybe we can see some similarities
Sweet. Already ran Ad-aware and I'm downloading Spybot now.
Let me know if that helps scrum... If not, we'll start disabling a lot more of that unnecessary CANON software and Epson software.
EDIT: Managed to download it but now my computer won't let me run the program. It shows the first screen for a few seconds then closes it. Help?
EDITEDIT: Never mind, got it to run a scan and save a .log but couldn't keep it open for more than a second without it automatically closing. Is there a MS program I'm unaware of that prevents programs and files with certain keywords from working?
Hmmm... How knowledgeable are you on the computer?
This is what I'd try:
Boot into safe mode.
Start -> Run -> msconfig
Click on the startup tab
Click disable all
restart your computer
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKLM\..\Run: [tkzmzmlm.exe] C:\WINDOWS\system32\tkzmzmlm.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
That's all I can really see. Unless you use the google toolbar, get rid of those 4. Reboot and see if that helps.
Tried it, nothing much has changed. Also, most of the ad-ware and pop-ups that I'm getting seem to be anti-spyware centric. I've even got this one annoying thing in the system tray that displays a speech baloon about how I should click on it and download an anti-spyware program. I'm thinking most of those things are really trojan horses so any ideas about what i should do?
Oh shit, yeah I remember that beast. I had a few computers in my bay with that exact same virus. Do you have a way to backup your data? The safest (and easiest route) would be to reformat your computer. It will run like new again. (I know, everyone hates doing it... but believe me, to get this virus off your computer it may take a miracle... I'd used about 5 different AV on it, and I don't think I got it off)
You may also (before formatting) try:
Start -> Run -> msconfig (hit enter)
Go to the Startup Tab, and disable all.
Restart computer
See if it still pops up. I think it still will, but this way we can see what we're really dealing with.
Nothing's changed. Guess I'll have to reformat (dang).
I'll have reformat later though. Also, I have a compaq computer, would performing a full system recovery from the hard drive be a viable option?
Sorry bro. It's the safest and cheapest way to get rid of that damned thing.
Well, I'd try it first. It will make it easier on you by giving you all your drivers and stuff. But if that's infected too you'll have to format twice.
I'd risk it, just to save yourself some time (possibly).
I'd recommend you visit the Spybot site's malware removal forum and ask for advice there. Those guys know how to get rid of just about anything.
If you decide to do that, remember to be a good chap and follow the instructions in the stickies.
How do I uh...How do I reformat? I use my computer for internets only, and I have no clue what any of this means.
Ad-Aware + Spybot + Prevx + manual process/registry analysis should be able to stop anything.
If you or any of the programs find files that can't be deleted because they're in use (some of the shit disguises itself as drivers), then either set one/all of the programs to run on startup to get it before it can start itself, or just boot into safemode and manually delete the files yourself.
Edit: Oh. And MAKE SURE that each of the programs is updated! A lot of the nastier malware will prevent the programs from updating or even scanning, and sometimes will reboot/bluescreen your computer. Ad-Aware has a .def file you can download and place in the dir manually. If AA/SB/PX are being duped and are not able to update/scan, you're gonna have to start manually defeating the malware until you nail the ones that are pwning the apps.