Log in

View Full Version : SpyAxe -- For fuck's sake make it stop



Hitcher
3rd January 2006, 17:00
I am being driven mad by a piece of foistware -- an anti-spyware application called SpyAxe that comes to you via a trojan. Everytime I think that I have exterminated the fucker, back it comes. I'm using XoftSpy as my cleansing agent which seems to do the business OK each time.

Is anybody else being driven mad by this? What pills should I be taking?

SPORK
3rd January 2006, 17:09
I am being driven mad by a piece of foistware -- an anti-spyware application called SpyAxe that comes to you via a trojan. Everytime I think that I have exterminated the fucker, back it comes. I'm using XoftSpy as my cleansing agent which seems to do the business OK each time.

Is anybody else being driven mad by this? What pills should I be taking?
Take a daily dose of ZoneAlarm Pro, washed down with a cup of SpyHunter

MidnightMike
3rd January 2006, 17:18
Spybot :kick:

Highlander
3rd January 2006, 17:19
Failing that take the box outside and :bash: it with a sledge hammer until it stops moving.

Given that you have a dead arm at the moment, you might need some assitance with that though.

Motu
3rd January 2006, 17:19
I'm getting atleast 50 emails a day about Westpac Bank,I keep blocking the senders,but still they come thick and fast - what the hell is it all about?

Swoop
3rd January 2006, 17:20
Perhaps start up in "safe mode" then do a sweep? Stops nasties from initiating then hiding before being zapped...

El Dopa
3rd January 2006, 17:42
I'm getting atleast 50 emails a day about Westpac Bank,I keep blocking the senders,but still they come thick and fast - what the hell is it all about?

Dunno, but the cartoon in today's 'Harold' is devoted to this new phenomenon.

twinkle
3rd January 2006, 17:44
I am being driven mad by a piece of foistware -- an anti-spyware application called SpyAxe that comes to you via a trojan. Everytime I think that I have exterminated the fucker, back it comes. I'm using XoftSpy as my cleansing agent which seems to do the business OK each time.

Is anybody else being driven mad by this? What pills should I be taking?


here's instructions from symantec for removing it http://securityresponse.symantec.com/avcenter/venc/data/spyaxe.html

probably worth running this while you're at it http://www.microsoft.com/security/malwareremove/default.mspx

and this is free and supposedly good to run as well http://www.microsoft.com/security/malwareremove/default.mspx I can email the file to you if you haven't got a legit copy of windows.

If you've got some antivirus software there is probably instructions on their webpage to help you remove it also :spudbn:

Badcat
3rd January 2006, 17:46
http://www.apple.com/switch/

Sniper
3rd January 2006, 18:02
Spyaxe is an arse of a thing. You need to uninstall it from the Add/remove programs before using spybot to kill it.

MSTRS
3rd January 2006, 18:49
I'm getting atleast 50 emails a day about Westpac Bank,I keep blocking the senders,but still they come thick and fast - what the hell is it all about?
Sender's email address is blocked, but they only use it once then change. Over & over. I understand your pain but can't help.

Korumba
3rd January 2006, 19:04
If you still have it after all the above advice use this

http://forums.majorgeeks.com/showthread.php?t=78572

Worked fine for me and the ad aware se got the rest.

More than happy to email it to you if you like, if you are having trouble using it I could talk you through it on the phone...just pm me to get it organized.

SPORK
3rd January 2006, 19:14
I'm getting atleast 50 emails a day about Westpac Bank,I keep blocking the senders,but still they come thick and fast - what the hell is it all about?
If you were more of a nerd I'd suggest a SpamAssasin, that would delete all emails according to your criteria before they were even downloaded.

StoneChucker
3rd January 2006, 20:05
What is the benefit of using Zone Alarm Pro over the free/standard version of Zone Alard? The free version has the main element, the pro version add tools like tracing the source of an "attacker", etc... Or am I misled?

I don't use spyware tho, might check that one out:kick:

MOTOXXX
3rd January 2006, 20:12
my mate had the same one. its a real bastard of a thing. drives ya freakin nuts.

download the ms antispyware application with the lates updates. that got rid of it for him.

Ixion
3rd January 2006, 20:42
One word - *nix

kro
3rd January 2006, 21:00
This is an area of special interest for me, I have devoted a large amount of my 6 or so years online to identifying and killing all forms of spy/mal/adware. If you don't manage to fix the problem, I can suggest 3 programs that will. All of these are free. For the love of tristank, don't get a program called "Spyware Nuker", it is the opposit of what it says it is, and will infect you with all sorts of crap. Get these 3 instead.

CWShredder
SpybotSD12
Adaware

Firewalls wont prevent spyware, using a different browser like Firefox will make a huge huge difference, because 99% of the browser exploits that allow this shit into your PC, are written to exploit Internet Explorer.

I would seriously recommend yoiu use a diff browser, IE is just poo's.

Beemer
3rd January 2006, 23:01
I'm getting atleast 50 emails a day about Westpac Bank, I keep blocking the senders,but still they come thick and fast - what the hell is it all about?

You should count yourself lucky - I'm with Paradise (says who?) and I'm slowly receiving all the emails that were delayed last week. Today I got some from last Wednesday and Thursday. Great if they were work-related or important...

I got the Westpac one for the first time the other day - and I'm not even a customer! I was getting at least four or five a day offering either cheap Viagra or penis enlargers though - neither are on my list of must-haves!

I use the free Zone Alarm and AVG and both seem to work pretty well.

deathstar
4th January 2006, 01:01
just restored mine to a time before the virus arrived and make sure it doesn't get you

What?
4th January 2006, 05:37
I'm getting atleast 50 emails a day about Westpac Bank,I keep blocking the senders,but still they come thick and fast - what the hell is it all about?
It's called "phishing" - a scam where the scammers set up a website that looks for all the world like your bank's site and they ask you to confirm your username and password on line. You then find all your accounts empty (on the off-chance that there was something in them).

Sniper
4th January 2006, 07:43
Westpac knows about the email....

https://sec.westpac.co.nz/IOLB/newSession

DMNTD
4th January 2006, 08:15
I use:

Lavasoft Ad-Aware SE(removes adware)
SpyBot Search and Destroy(removes spyware)
Spyware Blaster(prevents spyware)
AVG free(anti-virus)
A2(trojans/virus)
WormGuard(prevents)

All are FREE programs and can be easily downloaded from places like Download.com (http://www.download.com/).
Have heard of people saying that free stuff is crap but we virtually never have any problems and if we do we're able to remove the threats quickly and efficiently.

manuboy
4th January 2006, 08:58
One word - *nix

Those of us running on corporate lans / wans don't get to make that call.

Same for Apple / whatever other alternatives get suggested.

Colapop
4th January 2006, 09:07
I use:

Lavasoft Ad-Aware SE(removes adware)
SpyBot Search and Destroy(removes spyware)
Spyware Blaster(prevents spyware)
AVG free(anti-virus)
A2(trojans/virus)
WormGuard(prevents)

All are FREE programs and can be easily downloaded from places like Download.com (http://www.download.com/).
Have heard of people saying that free stuff is crap but we virtually never have any problems and if we do we're able to remove the threats quickly and efficiently.
I've the same trojan/virus for a week and been getting rid of other associated viruses. I've got and have used Adaware, AVG, and Hijack This.
Hijack This is a mapping programme that I don't fully understand but it saves a log file that you can send to someone knowledgable who tells you what to delete.

I'll use the others you've mentioned too then report back.

Sniper
4th January 2006, 09:16
format C:/ might work

Ixion
4th January 2006, 09:20
Those of us running on corporate lans / wans don't get to make that call.

Same for Apple / whatever other alternatives get suggested.

Though presumably on corporate LAN you shouldn't get problems with viruses and malware. If you do your IS department need a rev up.

The privileges of being a sysadmin. The plebs get Windows. I get AIX, Solaris 10, and whatever flavour of Linux I feel like dabbling with. And DOS.

Sniper
4th January 2006, 09:21
Linux, you HEATHEN

Colapop
4th January 2006, 10:16
Isn't Linux that dude from the Peanuts cartoons?

WRT
4th January 2006, 10:47
format C:/ might work

No, it wont . . . cause someone has knocked your slash over.

Motu - rather than blocking an individual address, have you tried *@westpac.com.au? That should get the majority. Or you could try putting a filter in to check all subject lines for the words "westpac bank" as almost all of the emails have this.

Everyone should note that your bank (whichever bank that might be) will NEVER ask you for your passwords via email. In fact, they do not send out automated emails like this at all. The only time you should treat an email from a bank as being legit is if you knew about it before hand, and it came directly from someone you had been dealing with at the bank.

madboy
4th January 2006, 11:23
Hitcher, time to fess up to the world and tell us what sites you were looking at while Mrs H was at work... come on... we're all family here.

Sniper
4th January 2006, 11:37
No, it wont . . . cause someone has knocked your slash over.


Wind, my co-workers fart too much

Hitcher
4th January 2006, 11:54
Spyware Doctor (PC Tools) appears to have nailed this sucker. I shall now turn my full attention and wrath to the oxygen thieves responsible for SpyAxe and its wee helper Smitfraud-C. BASTARDS!! Never waste a one-armed man's time...

Momentum
4th January 2006, 17:05
real easy way to get rid off it
i had to use it

Go to Start
programs
accessories
system tools
system restore

restore to a day or two befor you got spy axe
everything you have loaded onto your pc after the date you restore to will go aswell but
its BUH BYE SPY AXE


the prick of a thing that it is

pritch
4th January 2006, 20:37
Linux, you HEATHEN\

SuSE says thanks :-)