Moxnix's Security FAQ's

Your Logo Here

 

 

Knowledge is Power

Site Navigation    


 Home

 Virus Checking Programs

 Firewalls

 Spyware and Malware

 Popups

 Browsers

 
 
 

Maleware, Spyware, & Hijackers

Spyware, malware, and programs that hijack your browser, are a growing threat on the internet today. Not only can they redirect your browser, but they are spying on you. They track and profile your browsing and target you for certain ads and popups that are annoying to say the least. They actually steal part of your bandwith and certainly slow your computer and browser down, considerably.

There are certain applications that are bundled with programs that you might want that redirect your browser through their sites instead of taking you where you really wish to go. The "Weather Bug" and "My Search Bar" are infamous for this, and come bundled with a lot of other software( that you might want).

The programs listed below will detect these and remove them for you.

Word of caution: Removing some of these can cause some applications to no longer work, as they have been bundled with them, and the EULA you agreed to (to load the application) demands they be present.

The programs below are not ranked in any specific order, except the first two (2). I would highly suggest that you get and use at least one of the first two( I use both regularly). Spybot Search & Destroy and Ad-Aware are needed by everyone. in my opinion. They rank right up there with a good virus checker and firewall.



Spyware and Malware Removal Tools

Spybot Search & Destroy: One of the finest free programs I know of. This program will find most (if not all) of the spyware and malware on your box and remove it. After you download it, be sure to update it before you run it. This will insure you have the lastest definitionsn avalible. You will be shocked at the number of entries you will have.  http://www.safer-networking.org/

Ad-Aware: Ad-Aware has two (2) versions, a freeware (which I use), and a payware (with more bells and whistles). Like Spybot S&D it will find and remove any spyware or malware you might have on your computer.  (Be sure to update it often)  http://www.lavasoftusa.com/software/adaware/

After running either Spybot S&D or Ad-Aware, you will find that you get less popups and popunders. Some of these are targeted by the spyware that was on your computer.

Spyware Blaster by JavaCool: This program (although good even as a stand a lone) is a complimentry program for Spybot S&D. Actually you can get it from the Spybot S&D control panel also.  http://www.javacoolsoftware.com/spywareblaster.html

SwatIt: Swat It Trojan & Bot Remover - Version 2.1, is a freeware program that is kind of slow, but it really digs deep through your files and registry. If you have something buried in your box, this program will find it.  http://www.swatit.org

 

More will be added as I get the time.



CoolWebSearch and Varients

Cool web search is a very intrusive form of malware.  Not only does it hijack your browser and search options, but it attempts to disable your ability to disable it.  It will prohibit you from reaching certain security site, and sites that have programs that could defeat it.  This particular piece of malware also has quite a few variants that operate in the same way.

"Application type: Scumware
Security Compromise: No.
Advertising: Yes.
Privacy Violation: Possible.
Stability Problems: Massive slowdowns in IE, system reboots, conflicts and problems."
   
"Description:

CoolWebSearch is a particularly virulent scumware program, that commonly hijacks the browser and redirects a visitor to either CoolWebSearch or any of its affiliates. It is considered to be a 'crossbred' strain of scumware because it has the characteristics of both scumware and a trojan virus. Although it appears to be a scumware program, effectively disguising its true nature it is technically coded as a trojan. This makes detection of this particular program extremely difficult at times. McAfee Security provides a good definition of a Trojan:

"A Trojan horse program is a malicious program that pretends to be a benign application; a Trojan horse program purposefully does something the user does not expect. Trojans are not viruses since they do not replicate, but Trojan horse programs can be just as destructive. Many people use the term to refer only to non-replicating malicious programs, thus making a distinction between Trojans and viruses."

The difficulty in removing CoolWebSearch has increased with each release of the latest strain."


Removale of CoolWebSearch and its varients

Merijn. org has developed CWShredder especially to combat CoolWebSearch.  They update it frequently and provide several locations to download it from.  It is a free ware program, BTW.
Also, as they say on Merijn.org website:
" There is a  variant of the Coolwebsearch trojan spreading that closes several anti-spyware apps when you try to open them.
If this is happening to you, download PepiMK's CoolWWWSearch.SmartKiller removal tool first and run it. After it does its job, CWShredder and HijackThis will run properly (as well Spybot S&D, Ad-aware and several anti-spyware forums)."
Merijn.org can be found here:   http://www.spywareinfo.com/~merijn/downloads.html
Also:
" If you are unable to download any of the files here and are redirected to a porn page, search page or just denied access to the file, try these alternate links that should always work:

HijackThis direct download: http://209.133.47.200/~merijn/files/HijackThis.exe

CWShredder direct download: http://209.133.47.200/~merijn/files/CWShredder.exe

The redirection is probably because of a Coolwebsearch variant (CWS.Aff.Tooncomics or CWS.Dreplace) that intercepts your download to prevent downloading my programs."

They also offer several other very good applications that will prove useful to the more experience computer users, like 'Hijackthis', and 'Startup List'.

Note: The links are in red (and not hot links-copy and paste only-) because my page editor is not working correctly at this time.


 

 

Create a free website at Webs.com