Spyware

  • Thread starter Thread starter Steppenwolf
  • Start date Start date
S

Steppenwolf

Does anyone know what these are and how to remove them?
C:\ProgramC:\WINDOWS\system32\prvtect.exe ---This one can't be stopped - it
keeps restarting - 2 instances are running.

C:\Program Files\SurfSideKick 2\Ssk.exe ---The system wants me to close the
application, but I don't see it running.
 
Eliminate any scumware.
CAUTION!!!!! Before you try to remove spyware using any of these programs ,
download a copy of LSPFIX from any of the following sites:
http://www.cexx.org/lspfix.htm
http://www.spychecker.com/program/winsockxpfix.html
(if your OS is Win2k or XP) The process of removing certain malware may kill
your internet connection. If this should occur, this program, LSPFIX, will
enable you to regain your connection.

See
Dealing with Unwanted Malware, Parasites, Toolbars and Search Engines
http://mvps.org/winhelp2002/unwanted.htm

Note that AdAware and SpyBot S & D will each catch some things the other
won't. Also, each needs to be updated with the program's update function
before every use, even when just downloaded. There's also a lot more to do
than just those two programs. CWShredder is also available here:
http://www.kellys-korner-xp.com/regs_edits/cwshredder.zip
**Post your HijackThis log to
http://forums.spywareinfo.com/ or the Spyware forum at
http://forum.aumha.org/ for expert analysis, not here.**
Alternative download pages for Ad-Aware, Spybot, HijackThis and CWShredder
may be found on this page:
http://aumha.org/a/parasite.htm.


See this link for information about malware:
http://arstechnica.com/articles/paedia/malware.ars

If nothing there helps, please post back to this thread.

--
Frank Saunders, MS-MVP, IE/OE
Please respond in Newsgroup. Do not send email
http://www.fjsmjs.com
Protect your PC
http://www.microsoft.com/security/protect/
 
Steppenwolf said:
Does anyone know what these are and how to remove them?
C:\ProgramC:\WINDOWS\system32\prvtect.exe ---This one can't be
stopped - it keeps restarting - 2 instances are running.

C:\Program Files\SurfSideKick 2\Ssk.exe ---The system wants me to
close the application, but I don't see it running.

Tried in Safe Mode?

The most rampant infestation at the current time concerns SPYWARE/ADWARE.
I hate this stuff. It has no purpose. I have seen people try to justify
it over and over - it's worthless. It slows down your PC, it can send
your private information to people you'll never meet and did I mention,
it's worthless. You need to eliminate it from your machine.

If you use P2P software, this COULD make that stop working. Find some
decent software to do the same thing - what you are currently using is
crap.

Anyway - there is no one software that cleans and immunizes you against
everything. Antivirus software - you only needed one. Firewall, you
only needed one. AntiSpyware - you may need several. I have a list and
I recommend you use at least the first 5. I know that sounds like a lot,
and you may be saying "But you said earlier that I should clean my system,
now you are telling me to install more software - 5 pieces in fact!" Okay,
I get your point, but please consider that this stuff has prevented the
install of the latest service pack for some people, it has the potential
to slow and crater your PC, it can send your private information around
the world to people you do not know - it is all around BAD.

First - make sure you have NOT installed "Rogue AntiSpyware". There are
people out there who created AntiSpyware products that actually install
spyware of their own! You need to avoid these:

Rogue/Suspect Anti-Spyware Products & Web Sites
http://www.spywarewarrior.com/rogue_anti-spyware.htm

Also, you can always visit this site..
http://mvps.org/winhelp2002/unwanted.htm
For more updated information.

Then, my suggestion again is that you at least install the first five of
these: (Install, Run, Update, Scan with..)

Lavasoft AdAware (Free and up)
http://www.lavasoft.de/support/download/
(How-to: http://snipurl.com/atdn )

Spybot Search and Destroy (Free!)
http://www.safer-networking.net/en/download/index.html
(How-to: http://snipurl.com/atdk )

Bazooka Adware and Spyware Scanner (Free!)
http://www.kephyr.com/spywarescanner/
(How-to: http://snipurl.com/ate3 )

SpywareBlaster (Free!)
http://www.javacoolsoftware.com/sbdownload.html
(How-to: http://snipurl.com/ate6 )

IE-SPYAD (Free!)
https://netfiles.uiuc.edu/ehowes/www/resource.htm
(How-to: http://snipurl.com/ate7 )

CWShredder (Free!)
http://www.softbasket.com/download/s_8114.shtml

Hijack This! (Free)
http://mjc1.com/mirror/hjt/
( Tutorial: http://hjt.wizardsofwebsites.com/ )

ToolbarCop (Free!)
http://windowsxp.mvps.org/toolbarcop.htm

Browser Security Tests
http://www.jasons-toolbox.com/BrowserSecurity/

Popup Tester
http://www.popuptest.com/

The Cleaner (49.95 and up)
http://www.moosoft.com/

If used properly, you should have a malware free system now. The last
two of the first five I suggest you install are immunization applications.
None of these programs (in these editions) run in the background unless you
TELL them to. The space they take up and how easy they are to use greatly
makes up for any inconvenience you may be feeling.

Unfortunately, although that will lessen your popups on the Internet/while
you are online, it won't eliminate them. I have looked at a lot of options,
seen a lot of them used in production with people who seem to attract popups
like a plague, and I only have a few other suggestions that should help.
This
one ends up serving double duty (search engine and popup stopper in one):

The Google Toolbar (Free!)
http://toolbar.google.com/

Yeah - it adds a bar to your Internet Explorer - but its a useful one. You
can search from there anytime with one of the best search engines on the
planet (IMO.) And the fact it stops most popups - wow - BONUS! If you
don't like that suggestion, then I am just going to say you go to
www.google.com and search for other options.

Please notice that Windows XP SP2 does help stop popups as well.

Another option is to use an alternative Web browser. I suggest
"Mozilla Firefox", as it has some great features and is very easy to use:

Mozilla Firefox
http://www.mozilla.org/products/firefox/

One more suggestion is to disable your Windows Messenger service. This
service is not used frequently (if at all) by the normal home user and
in cooperation with a good firewall, is generally unnecessary. Microsoft
has instructions on how to do this for Windows XP here:

http://www.microsoft.com/windowsxp/pro/using/howto/communicate/stopspam.asp
 
Here's what I should have said in my initial post:
I have been running the following prior to the problem I wrote in about:
XP Pro SP2
Linksys Router/firewall
AVG - latest updates
Ad-aware - latest
Winpatrol - latest
Spybot Search & Destroy - latest
Spyware Guard - latest

Winpatrol notified me that the following programs were trying to be added to
my Startup:

C:\ProgramC:\WINDOWS\system32\prvtect.exe
C:\Program Files\SurfSideKick 2\Ssk.exe

I followed all suggestions, including Safe mode without (complete) success;
Bazooka still reports SurfSidekick as present. I have it disabled, using
Winpatrol.

I was able to delete prvtect.exe, but ssk.exe kept trying to get in, until I
disabled it. Tried to use regedit to delete, but the value comes back and is
present every time I look for it . Using Search/All files and folders
locates no instances of ssk.exe on my hard drive.

Any ideas?

P.S., thanks for the suggestions so far, guys.
 
I have used many many adware detection software packages and have found the
one that works best for me is spyware doctor. it found over 100 spyware
entries on my system even after i ran pest patrol, adaware, SpyBot, Yahoo
Anti Spyware and Bazooka...... I have been running it on my system in auto
protect mode for about 20 days now and have not had 1 single infection
installed on my system. I have even tried the other spyware detectors again
to see if spyware doctor has missed anything and have not found anything.

Robert...
 
Steppenwolf said:
Does anyone know what these are and how to remove them?
C:\ProgramC:\WINDOWS\system32\prvtect.exe ---This one can't be
stopped - it keeps restarting - 2 instances are running.

C:\Program Files\SurfSideKick 2\Ssk.exe ---The system wants me to
close the application, but I don't see it running.

Robert said:
I have used many many adware detection software packages and have
found the one that works best for me is spyware doctor. it found over
100 spyware entries on my system even after i ran pest patrol,
adaware, SpyBot, Yahoo Anti Spyware and Bazooka...... I have been
running it on my system in auto protect mode for about 20 days now
and have not had 1 single infection installed on my system. I have
even tried the other spyware detectors again to see if spyware doctor
has missed anything and have not found anything.

Although I have not tried Spyware Doctor - it does not appear in any rogue
antispyware lists I know of. I would suggest, however, that in the future
when you recommend a solution, you follow through. =)

Spyware Doctor™ 3.1 for Windows
http://www.pctools.com/spyware-doctor/
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Back
Top