PDA

View Full Version : Hi-Jacked??



JJG43
03-19-2006, 01:38 AM
I started getting a web page that would pop up when I had my browzer closed.{ some sports site}. I ran yahoo anti spy,adaware SE, house call, my anti virus scanner and found no trojans,or bad spyware. Also I can't access my task manager, CMD command line, or msconfig either,the windows pops stating it is in use by another program?? Is this what a Hijack trojan does??

RAB
03-19-2006, 02:14 AM
Try booting into safe mode and see if you can access the task manager and other system utilites.
If it just started doing this you might try a system restore point also. If a system restore will work I would do as thorough of a virus scan possible afterwards.

JJG43
03-19-2006, 10:10 AM
Tried in safe mode with networking and ran the the various scanners, nothing found.
Still can't access task manger,ect,ect.
When I try any of the previous restore dates is can't complete the process and fails.
Format Time grrrrrrr???????
I thought about booting with my XP disc and trying the the system repair option.

Bluetiereign
03-19-2006, 10:36 AM
Hijack This! (http://www.spywareinfo.com/~merijn/downloads.html)

Search for... let it make backups.. and check and erase everthing it finds.

They have a load of other cleaner programs too.

JJG43
03-19-2006, 01:02 PM
CW shredder found nothing. This program hi-Jack this v1.99.1 I installed and did the scan only.Ok out of what it found, how do you know what is bad and what isn't?? Some of the entries pertain to software and hardware I have installed. Would it be the " Unknown" entries that it finds to be the problem??

RAB
03-19-2006, 05:15 PM
I've seen allot of support forums that you post your Hi-Jack This results on and describe your problems. They will go through and tell you what and how to delete the problems.
Personally I would back up any files you need or want and reformat and do a clean install. It's a pain i know but usually allot less stressfull than trying to find and remove some virus or adware thats buried in the OS.

JJG43
03-19-2006, 07:26 PM
I was going to try raid 1 again,guess I got an early start to it that I had planned.:regan:

Bluetiereign
03-19-2006, 10:31 PM
I just delete everything Hijack finds... but that is me... I ran into a program that took my CD Drives away.. and made it impossible to install them again.. kinda made me ill.. I managed to get them back..but I use a different recovery program than windows restore. Restore is good if you have a mild problem. I never found it useful if you had a big one though.

Redhawk
03-20-2006, 02:56 PM
Try going to Internet options, programs tab, manage add ons. Lock at add ons that have been used by Internet Explorer and see if all looks normal. This is where your page hijackers will be. Be sure to chech all the java programs to see if you see anything unusual.

RAB
03-20-2006, 04:33 PM
He can't access his task manager, msconfig or command line. I think he has something more than a browser hijacker.

Redhawk
03-20-2006, 05:06 PM
Do you have a joystick hooked up. I have had my saitek evo hookes up and the profiler running and the throttle get bumped up a little and it immediately close cmd and other windows I try to open. Don't really know why but when i close the profiler it works fine. The task manager does sound like a trojan. Avast is a good free anti virus that gets trojans also. After you install check for updates then run a scan on boot up and if it finds anything move to vault if possible, if not delete. I work on computers every day and I get more viruses and trojans off with avg, avast, hijackthis and spybot s&d than with Norton or Mcafee and all the ones I mentioned are free and update regularly. If all else fails. I have a copy of msconfig on a cd and when all else fails, it will run msconfig from the cd rom. You can download msconfig here http://www.perfectdrivers.com/howto/msconfig.html Download it and see if you can't run it from A: or D: if this is your CD Rom and at least you should be able to stop the program causing the problem from here.

JJG43
03-20-2006, 09:38 PM
Rgr will do redhawk and I'll get back with anything I see:regan:

JJG43
03-26-2006, 06:24 PM
I was able to access the msconfig but only that,cmd and taskmanger naaa.
I didn't find anything out of the norm running in it tho. What I did notice was when I used reg xp cleaner I was always getting 100-200 invalid entries,also
more and more prgrams kept poping up with a window stating in is in use.
REEEEEEFORRRRRRRRRRRRRRMMATTTTTTTTTT time:brutal173.gif:

wildman2
03-26-2006, 08:06 PM
before you format it may be a good idea to use data eraser to obliterate any info on the drive.

JJG43
03-26-2006, 11:08 PM
Got a tip on one? shareware version??

RAB
03-26-2006, 11:38 PM
Theres a program called BC Wipe. I'll try to find the copy I have and send it to ya.

Redhawk
03-26-2006, 11:49 PM
JJG
You know how to keep from activating windows again don't you. If not or if anyone else is interested in knowing how heres what you do: Just copy wpa.dbl after you activated the first time. It is located in the WINDOWS\system32 folder. Now if you reinstall Windows XP just copy the file back and you're up and running again.
It will save you some time and the hassle of explaining to Bill's cronies that your not trying to rip them off.

JJG43
03-27-2006, 12:59 AM
Rgr made a bootable wipe disc and I tested it, works good.
Red, I've done alot of rewrites lately,aahh never had a problem activating. I don't get the idea of your comment dude:help:

Redhawk
03-27-2006, 01:07 AM
Do you have a built System or Propiety?
Propieties don't have to activate, but if you have a custom built non-propiety system you can just load windows XP one time without having to call Windows and convince them that your not loading on a second system. A hassle if you ask me. They act like your a thief trying to steal from them.

JJG43
03-27-2006, 12:32 PM
Custon built about 4.5 years ago, only original part is the motherboard and chip, guess it
isn't an significant change in the eyes of MS.Therefore I have never had a problem activating the
OS.I did actually talk to a human being once when I first registered with MS when I got the
PC.I have probably done about approx. 6-8 reformats with this unit for various reasons,never
questioned my MS Red.

Redhawk
03-27-2006, 04:04 PM
Are you running Windows XP ? I have never had a reformat and complete install without having to talk to a human because the activation code is only good for one install unless you have a cd like my work Cd for installing on new systems. ( Windows XP Pro Corperate Edition) I have even had to reactive after one of my spy ware programs remove the MS File one time LOL.

RAB
03-27-2006, 04:32 PM
I run the XP Pro. Ive never had to register on an install. LOL Don't even know how to.

JJG43
03-27-2006, 05:11 PM
Home XP

JJG43
03-28-2006, 06:50 PM
activation code is only good for one install ,are you kidding me??

Redhawk
03-28-2006, 10:15 PM
That's the way it is suppose to be for windows XP. That's why we have to buy multi lincenses. If you change harddrives or sometimes even video cards or sound cards or CD-Roms if it's a genuine windows xp operating system it is suppose to let windows know and it is suppose to ask for instalation code and your are suppose to have to re- active. It's suppose to be the new anti- pirateing thingy. The corperate is suppose to be the only one you don't have to activate and the only one that is suppose to be able to install on more than one system. Funning thing is, I bought a new windows xp pro cd and installed on one of my systems and it said that the activation code was already in use. It was new in the box when I bought it. Guess they aren't as good as they think. There is a lot of copies of XP Pro corprate out there and that is the only one that doesn't have to be activated unless you have a propiety (Dell, HP, Compaq, Acer, NCR, A Open ect.) these have different arrangements with windows and most have their own version that have different programs and drivers for their system only.