Problem occured from new security hole?

T

TCS

On Tuesday afternoon one of our users went to aaroads.com from the yahoo
directory. He then click on the road sign icon and got what he explained as
"the screen exploded with all kinds of pop-ups" He couldn't close some of
the windows and shut down the machine. Now he had a new batch file on the
desktop and it was instructing the system you install infamous downloader
executable. I removed the file and check the registry and sys files for any
startup commands... all's good so far. Now the reset the IE settings and
then went to Security tab. The slider is missing and the Custom Level &
Default Level Buttons are grayed out. The Use Current and other buttons on
the general tab are also grayed out and can not be changed. What is going to
have to be done to repair this hijacking? I already ran Ad Aware and Hijack
This! and found the "possible browser hijack" with ad aware and deleted the
files. Hijack This! didn't show any unusual objects other than the google
toolbar. Maybe someone from Microsoft can respond to this...

Thanks
 
J

Jan Il

Hi TCS :)

Try these programs and see if they help. If they don't help then post back
with any error messages you may get.

Download. install and update this programs before running. SpyBot often
finds things that AdAware does not as they each have different definitions.

SpyBot Search & Destroy: Free
http://download.com.com/3000-8022-10289035.html?tag=lst-0-2
or
http://majorgeeks.com/download2471.html

Download, install and run this program:

CWShredder: Free
http://tinyurl.com/2l9kl
or
http://www.majorgeeks.com/download4086.html

Go here for a second opinion for an AV scan:

Trend Micro Housecall: - Free On-Line Scan
http://housecall.trendmicro.com/

HTH

Jan :)
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top