Security Information

Spyware - Your Web Browser is the Culprit!


My first experience with a spyware BHO based infection was several months ago. I had gone through all of the usual steps with the client's machine to clean it. Ad-Aware was run, Spybot: Search and Destroy was as well. Nothing looked suspicious in the system's startup. All appeared well, but it wasn't.

After extensive testing and no further symptoms I returned the computer to my client's home. I hooked it back up, and dialed the internet. Everything so far was progressing smoothly. But, as SOON as I loaded Internet Explorer: BAM the same pop-up advertisements and other annoying things started happening again. With much embarrassment I had to take the computer back to my office and try again.

It was all Internet Explorers fault. Microsoft Internet Explorer comes with a feature that is designed to add third-party functionality to their browser. It's actually a very good idea. Unfortunately, it now gets taken advantage of.

The producers of spyware know that many people now have spyware removers installed on their computers. They also know that quite a few people have the ability to check what is in their start-up. Because of this, BHO's are crafted so that the spyware lies dormant until Internet Explorer is opened. Then it can start its dirty work.

The best program to remove an errant Browser Help Object is HijackThis. This program was originally designed to remove homepage hijackers and gradually morphed into an all-around removal tool for everything. If there's any one tool that I couldn't part with it's HJT.

To start, download HijackThis 1991. Once you've got it, open it. Click the button that says "Do a system scan only". Following that, scroll down to the items labeled 02 - BHO. Remove anything here that looks suspicious. Internet Explorer does not require any BHO's to run. Just keep an eye on the path that it loads from, and the name of the file. A legitimate one will be fairly easy to spot, as it'll have a legit title and OK looking path.

If the filename looks like it was randomly made, like ASGSRT32.DLL or whatnot then there's a good 90% chance that it's bad. Even if you do remove one that's good, you can always use the restore feature of HJT to bring it back.

If you need any other HijackThis help then read the previous link.

Kevin Souter is a full time computer repair technician. He also operates a


MORE RESOURCES:

Aljazeera.net

Iraqi PM says British no longer needed for security
AFP - 9 hours ago
LONDON (AFP) — British troops are no longer necessary for the security of Iraq and should go home, Prime Minister Nouri al-Maliki said in a newspaper ...
Iraqi PM: UK forces 'not needed' Aljazeera.net
British troops 'should go home' BBC News
Thankyou, and Goodbye Times Online
Bloomberg - guardian.co.uk
all 248 news articles


WKRG-TV

Brenner: Social Security off limits to most creditors
Newsday, NY - Oct 12, 2008
If I elect to start to receive my Social Security benefit, will I get the check, or will the Internal Revenue Service take it to pay down my debt? ...
Deadline Is At Hand for Economic Stimulus Payment Filing Noozhawk
Time left for seniors, veterans to get payment Dekalb Daily Chronicle
Errors That Can Delay the Stimulus Payment eNews Park Forest
Honolulu Star-Bulletin - The Bay City Times - MLive.com
all 219 news articles


Wall Street Journal

Time works against candidates on Social Security, Medicare fixes
The Miami Herald, FL - Oct 12, 2008
By DAVID LIGHTMAN AND KEVIN G. HALL WASHINGTON -- Social Security and Medicare long have been considered the nation's fiscal time bombs, and the ticking is ...
CBJ: Part 1: Social Security Is Still Broken Charlottesville Daily Progress
Obama offers the better plan on Social Security Pueblo Chieftain
Elders' self-interest is to vote for Obama Newsday
Gwinnett Gazette - Daily News Tribune
all 80 news articles


Report slams TSA failure to track security passes
USA Today - 7 hours ago
By Nam Y. Huh, AP By Alan Levin, USA TODAY WASHINGTON — The agency overseeing security at the nation's airports failed for years to track security passes ...


Yoggie Security Systems Launches First Miniature Security Computer ...
MarketWatch - 34 minutes ago
Yoggie Security Systems(TM) today launched the world's first miniature hardware internet security devices for MacBooks and Mac desktop computers. ...


With Digipass for Mobile VASCO Data Security Expands Its ...
MarketWatch - 3 hours ago
With Digipass for Mobile and Digipass for Java & C API, VASCO provides answers to the security and user acceptance challenges of mobile banking. ...


Tight security promised for Streets of Brentwood
San Jose Mercury News,  USA - 12 hours ago
By Paula King With the Streets of Brentwood retail development set to open next week, local officials, law enforcement and developers are making security ...


Times Online

Edited transcript of interview between Nouri al-Maliki, the Iraqi ...
Times Online, UK - 11 hours ago
We want to sign such an agreement so that we don’t go to the Security Council (for an extension of the mandate) ... You know that the Security Council is ...
Envoy: US-Iraq Security Pact Pertains to Iraqis Fars News Agency
US-Iraq security pact a "pure Iraqi issue": Iran's Ambassador Payvand
Iraq's FM: 'Bold' decisions needed on bases deal The Associated Press
Los Angeles Times - Dar Al-Hayat
all 227 news articles


When the security watchdog is the underdog
Computerworld, MA - 7 hours ago
In data security, many of the toughest challenges have nothing to do with the bad guys. By Lisa Vaas October 13, 2008 (Computerworld) Think your security ...


Backlog jam grows for Social Security
Minneapolis Star Tribune, MN - 10 hours ago
He waited about two years for his Social Security disability benefit claim to be resolved. His wife, Linda, returned to work full time to see them through. ...

Security - Google News

home | site map
© 2006