Spyware - Your Web Browser is the Culprit!


My first experience with a spyware BHO based infection was several months ago. I had gone through all of the usual steps with the client's machine to clean it. Ad-Aware was run, Spybot: Search and Destroy was as well. Nothing looked suspicious in the system's startup. All appeared well, but it wasn't.

After extensive testing and no further symptoms I returned the computer to my client's home. I hooked it back up, and dialed the internet. Everything so far was progressing smoothly. But, as SOON as I loaded Internet Explorer: BAM the same pop-up advertisements and other annoying things started happening again. With much embarrassment I had to take the computer back to my office and try again.

It was all Internet Explorers fault. Microsoft Internet Explorer comes with a feature that is designed to add third-party functionality to their browser. It's actually a very good idea. Unfortunately, it now gets taken advantage of.

The producers of spyware know that many people now have spyware removers installed on their computers. They also know that quite a few people have the ability to check what is in their start-up. Because of this, BHO's are crafted so that the spyware lies dormant until Internet Explorer is opened. Then it can start its dirty work.

The best program to remove an errant Browser Help Object is HijackThis. This program was originally designed to remove homepage hijackers and gradually morphed into an all-around removal tool for everything. If there's any one tool that I couldn't part with it's HJT.

To start, www.spywareinfo.com/~merijn/">download HijackThis 1991. Once you've got it, open it. Click the button that says "Do a system scan only". Following that, scroll down to the items labeled 02 - BHO. Remove anything here that looks suspicious. Internet Explorer does not require any BHO's to run. Just keep an eye on the path that it loads from, and the name of the file. A legitimate one will be fairly easy to spot, as it'll have a legit title and OK looking path.

If the filename looks like it was randomly made, like ASGSRT32.DLL or whatnot then there's a good 90% chance that it's bad. Even if you do remove one that's good, you can always use the restore feature of HJT to bring it back.

If you need any other www.eradicatespyware.net/How_To_Use_HijackThis.html">HijackThis help then read the previous link.

Kevin Souter is a full time computer repair technician. He also operates a


MORE RESOURCES:
MessageLabs Intelligence August 2008: Google's Picasa Web Albums ... - MarketWatch
MessageLabs Intelligence August 2008: Google's Picasa Web Albums ... MarketWatch - Sep 3, 2008 Web security : Analysis of Web security activity shows that 23.9 percent of all web -based malware intercepted was new in August. ... Spammers Use Free Web Services to Shield Links New York Times Spam Eating Surrender Monkeys iTWire all 18 news articles
Publ.Date : Wed, 03 Sep 2008 10:08:57 GMT

Security of Google's browser gets mixed marks - SecurityFocus
Times Online Security of Google's browser gets mixed marks SecurityFocus, CA - Sep 4, 2008 Yet, other features are missing, said Billy Hoffman, manager of Hewlett-Packard's Web security group. "They really have no features at all to help users ... Video: Tech Test: Google Chrome Lacks Polish AssociatedPress What are the security implications for Google Chrome? TechRepublic Google: Chrome Browser Will ... InternetNews.com Redmond Developer News - Register all 3,447 news articles
Publ.Date : Thu, 04 Sep 2008 16:13:10 GMT

Security firm spots Chrome 'SaveAs' flaw - CNET News
CNET News Security firm spots Chrome 'SaveAs' flaw CNET News, CA - Sep 6, 2008 A company in Vietnam has turned up the latest vulnerability in Chrome, according to a story posted to Information Week's Web site. ...
Publ.Date : Sat, 06 Sep 2008 18:37:59 GMT

Secure Computing Named Worldwide Leader of the Web Security ... - CNNMoney.com
Secure Computing Named Worldwide Leader of the Web Security ... CNNMoney.com - Sep 2, 2008 New data within the August 2008 IDC report, "Worldwide Web Security 2008-2012 Forecast and 2007 Vendor Shares" shows that Secure Computing owns 11 percent ...
Publ.Date : Tue, 02 Sep 2008 12:06:36 GMT

Hagerman & Company Deploys Mi5 Networks for Web Security - Business Wire (press release)
Hagerman & Company Deploys Mi5 Networks for Web Security Business Wire (press release), CA - Sep 3, 2008 The company’s Webgate web security appliances protect organizations against web -based threats, including malicious URLs, spyware, crimeware, ...
Publ.Date : Wed, 03 Sep 2008 12:05:56 GMT

Clearswift Selected a 2008 Best Products and Services Winner In ... - MarketWatch
Market Wire (press release) Clearswift Selected a 2008 Best Products and Services Winner In ... MarketWatch - Sep 3, 2008 Clearswift makes it easy to deploy, manage and maintain no-compromise e-mail and Web security across all gateways and in all directions. ... About Network Products Guide Awards DMN Newswire (press release) iovation Wins Award for Best in Internet Security Business Wire (press release) all 30 news articles
Publ.Date : Wed, 03 Sep 2008 15:18:18 GMT

Patch for Web Security Hole Has Leaks of Its Own - New York Times
Patch for Web Security Hole Has Leaks of Its Own New York Times, United States - Aug 8, 2008 The flaw could allow Internet traffic to be secretly redirected so thieves could, for example, hijack a bank’s Web address and collect customer passwords. ... Web security DNS patch not so secure: Is DNSSEC the answer? Product Reviews Top 10: A week full of security news InfoWorld Did a single security engineer avert a DNS disaster? BetaNews InformationWeek - NewsFactor Network all 434 news articles
Publ.Date : Sat, 09 Aug 2008 02:41:29 GMT

Hynix Semiconductor Selects Blue Coat Appliances for Web Security ... - MarketWatch
Hynix Semiconductor Selects Blue Coat Appliances for Web Security ... MarketWatch - Sep 2, 2008 In addition, ProxySG appliances can validate Website certificates to avoid phishing scams or similar security issues. Lee Byung-Gik, manager of automated ...
Publ.Date : Tue, 02 Sep 2008 11:48:15 GMT
UBB Webdesign.com © 2008