spy sherrif

  • Thread starter Thread starter Guest
  • Start date Start date
G

Guest

my computer has been attacked by this spy sherrif, believed to be a spy ware...
i can start my computer, however the backgoround does not show up..
i can not click on the start button or anything else..
it basically freezes from there...wat do i do .. hope u can help.
 
From: "duke" <[email protected]>

| my computer has been attacked by this spy sherrif, believed to be a spy ware...
| i can start my computer, however the backgoround does not show up..
| i can not click on the start button or anything else..
| it basically freezes from there...wat do i do .. hope u can help.

Download SmitFraud.exe from the URL --
http://www.ik-cs.com/programs/virtools/SmitFraud.exe


Save SmitFraud.XXX to the desktop.

Rename SmitFraud.XXX to SmitFraud.exe

On the infected PC...

Execute; SmitFraud.exe { Note: You must accept the default of C:\McAfee }
Choose; Unzip
Choose; Close

NOTE: You may have to disable your software FireWall or allow FTP.EXE to go through your
FireWall to enable FTP.EXE to download the needed McAfee related files.

Execute; c:\mcafee\clean.bat
{ or Double-click on 'Clean Link' in c:\mcafee }

A final report in HTML format called C:\mcafee\ScanReport.HTML will be generated. At the
end of the scan, it will be displayed in your browser (Opera, FireFox or Internet Explorer).
It is suggested that you move the report out of c:\mcafee before performing another scan.
It would be a good idea to scan in Safe Mode and in Normal Mode and save a copy of the HTML
report for each session.


You should be able execute any program by bringing up the Task Manager bit hitting the "Ctrl
+ Alt + Del" key combo.

Then in Task Manger go to File --> New Task

You can then execute; http://www.ik-cs.com/programs/virtools/SmitFraud.exe

Save the file to; C:\ for convenience.

And then repeat the process to execute; c:\SmitFraud.exe

And then repeat the process to execute; c:\mcafee\clean.bat
 
David said:
From: "duke" (e-mail address removed)

| my computer has been attacked by this spy sherrif, believed to be a
spy ware...
| i can start my computer, however the backgoround does not show up..
| i can not click on the start button or anything else..
| it basically freezes from there...wat do i do .. hope u can help.

Download SmitFraud.exe from the URL --
http://www.ik-cs.com/programs/virtools/SmitFraud.exe

You are using a site that *DOES NOT* have permission to host this file.


It is a tool that has been fraudulently copied to make it look like
this users own tool. Which in fact it is NOT...
 
I don't know what you are talking about. This is a tool written by me using the Kixtart
script interpreter. it is hosted by Ian Kenefick who I regularly collaborate with. He has
MY permission to host the utility and it is an exclusive right granted by me.

If you are thinking that it is a copy of noahdfear's utility, it doesn't even come close to
being the same. I do know about a Troll [ P C B U T T S 1 ] who has stolen noahdfear's
batch file code. If you came to this conclusion based upon this code ripping problem then I
fully understand your concern. However, and I reiterate, it is NOT a batch file process but
is written completely using the Kixtart script interpreter and is 100% my own code.

I must state that you had better be careful about coming to faux conclusions without *any*
facts !

If you know Dave (aka; noahdfear), ask him about me. ;-)
 
In
rstones12,
David Lipman is a regular contributor to these newsgroup and is not the
thief and leach pcButts1 (aka, Tom Jones, Ali Akbar, mem, etc, etc., etc.
etc.). David is one of the goodguys. 8-)
It is so condemning that all the files in pcButts1 utility smitrem.zip are
now dated November 24, a day after noahdfear confronted pcButts about his
theft of his intellectual property. You can see the real smitRem.exe at the
link below.
http://noahdfear.geekstogo.com/

I do hope all you guys follow up on documenting his illegal hosting on his
web site to the proper channels and make him aware he cannot get away with
stealing others hard work.
He thinks he is anonymous, but he made a big mistake posting from his
jpl.nasa.gov domain.
Myself and other regular posters can only inform others that come to the
newsgroups for help when a source is not to be trusted, but noahdfear,
miekiemoes, racooper and others who have personally been ripped off have
legal channels to stop pcButts.

--
Michael Stevens MS-MVP XP
(e-mail address removed)
http://www.michaelstevenstech.com
For a better newsgroup experience. Setup a newsreader.
http://www.michaelstevenstech.com/outlookexpressnewreader.htm
 
In

rstones12,
David Lipman is a regular contributor to these newsgroup and is not the
thief and leach pcButts1 (aka, Tom Jones, Ali Akbar, mem, etc, etc., etc.
etc.). David is one of the goodguys. 8-)
It is so condemning that all the files in pcButts1 utility smitrem.zip are
now dated November 24, a day after noahdfear confronted pcButts about his
theft of his intellectual property. You can see the real smitRem.exe at the
link below.
http://noahdfear.geekstogo.com/

I do hope all you guys follow up on documenting his illegal hosting on his
web site to the proper channels and make him aware he cannot get away with
stealing others hard work.
He thinks he is anonymous, but he made a big mistake posting from his
jpl.nasa.gov domain.
Myself and other regular posters can only inform others that come to the
newsgroups for help when a source is not to be trusted, but noahdfear,
miekiemoes, racooper and others who have personally been ripped off have
legal channels to stop pcButts.

As a follow-up to that:

Any vendor/developer that has been ripped off by pcbutts1 only needs to
contact:

Interland Shared Abuse Department
Interland, Inc.
303 Peachtree Center Avenue, Suite 500
Atlanta, GA 30303
(e-mail address removed)

You need to provide the following in the Subject:
Subject: pcbutts1.com / 216.122.228.48 / Abuse

Then the link to the pirated file
Then the link showing that you own the file(s)

Any posts showing that he's published it anywhere

Any other information that might prove you created/own the real files.
 
From: "rstones12" <[email protected]>

| Dave,
| I do know Dave (noahdfear, my apologies for any misinterpretation....
|
| This pcbutts had me wound up to no end...
|
| regards...-- rstones12

Thanx ! apology accepted with no problems. I'm glad we have this all cleared up.

I'm also glad to see you are supporting Dave (Aka; noahdfear) against the code-ripping jerk
and Troll PCB....
 
From: "Michael Stevens" <[email protected]>


|
| rstones12,
| David Lipman is a regular contributor to these newsgroup and is not the
| thief and leach pcButts1 (aka, Tom Jones, Ali Akbar, mem, etc, etc., etc.
| etc.). David is one of the goodguys. 8-)

< snip >

Thanx Michael !
 
David there is another problem.. explorer doesn't start up .. i've been using
msn explorer, but i dont' know how to open that up with task manager..and if
i can't open that (msn explorer) then i can't download that file.. any other
way?
 
From: "duke" <[email protected]>

| David there is another problem.. explorer doesn't start up .. i've been using
| msn explorer, but i dont' know how to open that up with task manager..and if
| i can't open that (msn explorer) then i can't download that file.. any other
| way?

You should be able execute any program by bringing up the Task Manager bit hitting the
"Ctrl + Alt + Del" key combo.

Then in Task Manger go to File --> New Task

You can then execute; explorer.exe

You can also execute; userinit.exe
 
In
Michael Stevens said:
In

rstones12,
David Lipman is a regular contributor to these newsgroup and is not
the thief and leach pcButts1 (aka, Tom Jones, Ali Akbar, mem, etc,
etc., etc. etc.). David is one of the goodguys. 8-)
It is so condemning that all the files in pcButts1 utility
smitrem.zip are now dated November 24, a day after noahdfear
confronted pcButts about his theft of his intellectual property. You
can see the real smitRem.exe at the link below.
http://noahdfear.geekstogo.com/

I do hope all you guys follow up on documenting his illegal hosting
on his web site to the proper channels and make him aware he cannot
get away with stealing others hard work.
He thinks he is anonymous, but he made a big mistake posting from his
jpl.nasa.gov domain.
Myself and other regular posters can only inform others that come to
the newsgroups for help when a source is not to be trusted, but
noahdfear, miekiemoes, racooper and others who have personally been
ripped off have legal channels to stop pcButts.

This is an addendum for those that missed the thread where pcButts was
busted big time and then made a lame post attempting to validate his obvious
lies and attempts to destort the truth.
<paste>
For someone so innocent, you sure look guilty. I find it curious that all
the files in your smitrem.zip files all have the time stamp of 10/24/2005
all updated between 8:38 AM to 8:40 AM, a day after noahdfear exposed you as
a thief of his intellectual property.
The files in your(pcbutts) zip have the same size but a different time
stamp: pcButts files because you had to remove the reference to "noahdfear"
you missed when you originally plagerized the file.

delfiles.cmd 4KB 10/24/2005 8:40 AM
Process.exe 52 KB 10/24/2005 8:39 AM
replace.cmd 17 KB 10/24/2005 8:39 AM
RunThis.bat 227KB 10/24/2005 8:37 AM
swreg.exe 42 KB 10/24/2005 8:38 AM

The files in his smitRem.exe have time stamp dates of:

delfiles.cmd 4KB 7/23/2005 3:04 AM
Process.exe 52 KB 6/5/2005 9:13 PM
replace.cmd 17 KB 7/23/2005 8:18 AM
RunThis.bat 227KB 10/14/2005 5:06 PM
swreg.exe 42 KB 10/7/2005 8:29 PM

Who can you believe?
pcButts, who now has password protection to block access to his alleged
legitimate files to domains such as mine and anyone that questions his
claims he is the author of software he has stolen and does not have
authorization to host on his web site.
I believe the example above is a very telling example of his attempts to
distort the truth.
I am very dismayed that the people at jpl.nasa.gov can allow this type of
devious individual that steals the intellectual properties of software
authors to be associated and defame their obvious perceived but now
questionable integrities.

--
Michael Stevens MS-MVP XP
(e-mail address removed)
http://www.michaelstevenstech.com
For a better newsgroup experience. Setup a newsreader.
http://www.michaelstevenstech.com/outlookexpressnewreader.htm
 
In

This is an addendum for those that missed the thread where pcButts was
busted big time and then made a lame post attempting to validate his obvious
lies and attempts to destort the truth.
<paste>
For someone so innocent, you sure look guilty. I find it curious that all
the files in your smitrem.zip files all have the time stamp of 10/24/2005
all updated between 8:38 AM to 8:40 AM, a day after noahdfear exposed you as
a thief of his intellectual property.
The files in your(pcbutts) zip have the same size but a different time
stamp: pcButts files because you had to remove the reference to "noahdfear"
you missed when you originally plagerized the file.

delfiles.cmd 4KB 10/24/2005 8:40 AM
Process.exe 52 KB 10/24/2005 8:39 AM
replace.cmd 17 KB 10/24/2005 8:39 AM
RunThis.bat 227KB 10/24/2005 8:37 AM
swreg.exe 42 KB 10/24/2005 8:38 AM

The files in his smitRem.exe have time stamp dates of:

delfiles.cmd 4KB 7/23/2005 3:04 AM
Process.exe 52 KB 6/5/2005 9:13 PM
replace.cmd 17 KB 7/23/2005 8:18 AM
RunThis.bat 227KB 10/14/2005 5:06 PM
swreg.exe 42 KB 10/7/2005 8:29 PM

Who can you believe?
pcButts, who now has password protection to block access to his alleged
legitimate files to domains such as mine and anyone that questions his
claims he is the author of software he has stolen and does not have
authorization to host on his web site.
I believe the example above is a very telling example of his attempts to
distort the truth.
I am very dismayed that the people at jpl.nasa.gov can allow this type of
devious individual that steals the intellectual properties of software
authors to be associated and defame their obvious perceived but now
questionable integrities.

Any vendor/developer that has been ripped off by pcbutts1 only needs to
contact:

Interland Shared Abuse Department
Interland, Inc.
303 Peachtree Center Avenue, Suite 500
Atlanta, GA 30303
(e-mail address removed)

You need to provide the following in the Subject:
Subject: pcbutts1.com / 216.122.228.48 / Abuse

Then the link to the pirated file
Then the link showing that you own the file(s)

Any posts showing that he's published it anywhere

Any other information that might prove you created/own the real files.
 
major problem.. i cannot acces the internet.. the computer starts to stall
and then the programs do not respond.. is there anything else i can do ?
 
From: "duke" <[email protected]>

| major problem.. i cannot acces the internet.. the computer starts to stall
| and then the programs do not respond.. is there anything else i can do ?
|

I don't know.
You haven't decribed how far you have gone, what you have done and what you are
experiencing. That and the fact it takes 24hrs for replies to come in.
 
I can fix your problem but you will have to post your mungled email address
or just email me at (e-mail address removed) Remove the triple X to
respond.
 
I can fix your problem but you will have to post your mungled email address
or just email me at (e-mail address removed) Remove the triple X to
respond.

Is this you posting from 69.229.163.39 again PCBUTTS1?
 
I can fix your problem but you will have to post your mungled email address
or just email me at (e-mail address removed) Remove the triple X to
respond.

Anyone that needs help does not need to take it to email and then be
subjected to unknown help from an unknown person. If you are afraid to
help in the public then you've got something to hide - wonder what that
is?
 
Alias Smith said:
I can fix your problem but you will have to post your mungled email address
or just email me at (e-mail address removed) Remove the triple X to
respond.

Why would anyone trust an unknown source for help when trusting an unknown
source probably got them in the shape they are in?
Alias Smith AKA pcbutts is not to be trusted. LOL Does he actually think
someone believes his crap.
--
Michael Stevens MS-MVP XP
(e-mail address removed)
http://www.michaelstevenstech.com
For a better newsgroup experience. Setup a newsreader.
http://www.michaelstevenstech.com/outlookexpressnewreader.htm
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Similar Threads

spy Sherrif 3
Red Sherrif Cookie Questions 2
Cookies 5
Spy Sweeper notification 7
Spy 8
Security Center broken after virus cleanup 6
Computer Freezes on Windows Boot 7
Windows XP PC crashes spontaneously 8

Back
Top