Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Tech Question (ADWARE)
ME

Posted on 11/30/2004 8:04:57 AM PST by MJY1288

I need help getting rid of an adware file that hijacks my browser and changes my "Home" page "About:blank"

The Adware file is something called CWS/hijack.html and the CWS stands for Cool Web Site. I have tried everything and it just won't go away. Any help would be greatly appreciated


TOPICS: Miscellaneous; Your Opinion/Questions
KEYWORDS: adware; internetsecurity; spyware
Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-8081 next last
To: MJY1288

Download CWS Shredder to get it rid of. Then download Ad-Adware to clean up your windows file and download Spybot S&D to catch what Ad-Adware doesn't. Then download JavaCool Spyblaster to keep this nasty from EVER reinstalling. Finally, download Pivx to hardwall Internet Explorer from malicious code. And get a Trojan scanner like Ewido Security Suite to catch any trojans your anti-virus software misses. Hope all this helps.


21 posted on 11/30/2004 8:13:23 AM PST by goldstategop (In Memory Of A Dearly Beloved Friend Who Lives On In My Heart Forever)
[ Post Reply | Private Reply | To 1 | View Replies]

To: MJY1288

It sounds like Lop.com was somehow installed on your computer. I believe Search200.com has a removal program but be wary because this is where your problem came from…


22 posted on 11/30/2004 8:13:52 AM PST by Heartlander
[ Post Reply | Private Reply | To 1 | View Replies]

To: Rightwing Conspiratr1

I use several different spysweepers because none of them find it all.


23 posted on 11/30/2004 8:14:58 AM PST by Taylor42
[ Post Reply | Private Reply | To 19 | View Replies]

.


24 posted on 11/30/2004 8:15:31 AM PST by firewalk
[ Post Reply | Private Reply | To 23 | View Replies]

To: BwanaNdege

I downloaded free Spybot about 6 months ago and have been trouble free since. Highly recommended!!!!


25 posted on 11/30/2004 8:16:20 AM PST by finallyatexan
[ Post Reply | Private Reply | To 18 | View Replies]

To: Recovering Hermit; All
THANKS, THAT FIXED THE PROBLEM

Thank you everyone for your help

Freepers are the best!

26 posted on 11/30/2004 8:16:46 AM PST by MJY1288 (HOUSE CLEANING AT THE STATE DEPT. AND CIA IS IMMINENT)
[ Post Reply | Private Reply | To 3 | View Replies]

To: MJY1288

I bought SpySweeper because of a dialer that I couldn't get rid of--drove me nuts. I ran SpySweeper and it didn't find it. I called SpySweeper Tech Support and explained the problem. Those guys fixed it within a half hour. They're great and very patient. I highly recommend the product. I do, however, run both SpySweeper and Adware.


27 posted on 11/30/2004 8:17:15 AM PST by ExTexasRedhead
[ Post Reply | Private Reply | To 8 | View Replies]

To: MJY1288

As I remember, that was a horrible one to get rid of.

My first recommendation is to switch to a Mac or Linux, which don't have these problems. Apple is better if you want to continue using commercial software like Microsoft Office. It will save you an unbelievable amount of heartache with problems like this.

If that's not possible, search the web for "cws removal". I did, and found this, among millions of other links:

http://www.silentrunners.org/sr_cwsremoval.html

Ignore the ones that say you have to buy stuff. Often what they're selling you just introduces new spyware. If you want a spyware removal program, Spybot Search and Destroy and Ad Aware are said to be the best, but last time I looked even they didn't do much against CWS and variants.

Hope that helps.

D


28 posted on 11/30/2004 8:17:30 AM PST by daviddennis (;)
[ Post Reply | Private Reply | To 1 | View Replies]

To: MJY1288
I've found Pest Patrol (available here,or if you prefer the downloadable purchase, here) to be the best at spyware removal. Freebies such as AdAware and Spybot will both remove spyware, but certainly not all of it. If you do use Pest Patrol (or, for that matter, any of the others), it's best to install the program, reboot, enter safe mode (hit F8 while the computer first starts, and then choose safe mode). Once in safe mode, run your anti-spyware program, reboot, safe mode, and run program again. Do this until you are rid of the spyware. Hopefully, this will help.
29 posted on 11/30/2004 8:23:30 AM PST by Born Conservative (New annual national holiday for liberals: Shock and Awe Day , November 3rd.)
[ Post Reply | Private Reply | To 1 | View Replies]

people people..... before you simply throw out "spybot" or "adaware" you should at least take the time to see what the problem is. There are plenty of things that those cant fix.

my favorite post is "download hijack this"

hijack this does NOTHING to fix anything...and unless you are good at fooling around in the registry it is useless---unless you want a 10lb paperweight


30 posted on 11/30/2004 8:24:52 AM PST by KneelBeforeZod (Deus Lo Volt!)
[ Post Reply | Private Reply | To 8 | View Replies]

To: Recovering Hermit

ping


31 posted on 11/30/2004 8:25:17 AM PST by infohawk
[ Post Reply | Private Reply | To 3 | View Replies]

To: MJY1288

I had this problem and it is very difficult to eradicate. None of the standard spyware software will get rid of it for you, so people who are recommending Lavasoft don't know what they're talking about. You have to manually remove it yourself. By searching google for information, I found a tech support website that gave me step-by-step directions. I don't remember exactly where, but I put some search terms into Google and found it.

The basic concept is that you have to download a free program that creates a text file showing each command being executed on bootup. Then you have to go into your bootup file and manually delete the command lines that were inserted by the virus.

I followed the directions and it worked. The problem went away and my computer was not harmed in any way. But it was scary because I was concerned about deleting a command line that I needed. But as it turned out, it wasn't that hard to tell which ones were the offending commands that rerouted your browser.


32 posted on 11/30/2004 8:25:52 AM PST by Maximilian
[ Post Reply | Private Reply | To 1 | View Replies]

To: MJY1288

a copy of CoolWebShredder should take care of it. Spybot will also grab it and let you delete it.


33 posted on 11/30/2004 8:26:35 AM PST by RJS1950 (The rats are the "enemies foreign and domestic" cited in the federal oath)
[ Post Reply | Private Reply | To 1 | View Replies]

To: MJY1288; All

Just a general spyware note - sometimes you need to install and run the updates for the programs mentioned - then reboot into safe mode and run the programs to clean up the mess.

To get to safe mode, start tapping on the F5 key when your PC is first booting up.


34 posted on 11/30/2004 8:26:37 AM PST by GaltMeister (The only time a Democrat should be allowed in the White House is to visit the President.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: MJY1288
Bump for later. I have been jerking around with my laptop for two days trying to get rid of this bug.

Hackers should be drawn and quartered after being burned over a spit for an hour ot so.

Thanks for posting this.

35 posted on 11/30/2004 8:28:45 AM PST by Fzob (Why does this tag line keep showing up?)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Maximilian
CWShredder fixed the problem in 20 seconds, I just ran Spy Sweeper and Lavasoft and neither found any remnants of it :-)
36 posted on 11/30/2004 8:29:30 AM PST by MJY1288 (HOUSE CLEANING AT THE STATE DEPT. AND CIA IS IMMINENT)
[ Post Reply | Private Reply | To 32 | View Replies]

To: KneelBeforeZod

Hijack This should be set to SCAN only. It lets you look in the bowels of Windows to see what's running and then post the results in one of the anti-spyware forums. The experts there can help return your computer to normal. However, once you get it back, the best piece of anti-intrusion software I've tried is Pvix's Qwik Fix Pro. It will lock down Windows by turning off unneeded services and patching dangerous exploits used by virus and trojan writers and malware pushers. Check it out. http://www.pivx.com


37 posted on 11/30/2004 8:30:30 AM PST by goldstategop (In Memory Of A Dearly Beloved Friend Who Lives On In My Heart Forever)
[ Post Reply | Private Reply | To 30 | View Replies]

To: MJY1288
I have the program now, and when I scan the system with it, it finds the files and deletes them and it returns immediately

I have three kids. So, I've had this Adware problem twice in the past year. The last time it happened my oldest disengaged Norton and downloaded a browser hijacker (thinking it was something else). Subsequent attempts to get programs to get rid of the bug failed and the virus always regenerated.

So far only one thing has worked: Re-installing the operating system. I hate to discourage you but I think you will arrive at this outcome.

38 posted on 11/30/2004 8:31:26 AM PST by Types_with_Fist (I'm on FReep so often that when I read an article at another site I scroll down for the comments.)
[ Post Reply | Private Reply | To 6 | View Replies]

To: MJY1288

It looks like CWshredder is a new program written since I had the problem which was specifically designed to get rid of just this specific virus. Better than manually deleting registry entries yourself. Glad you found a solution.

I noticed on another post that someone mentioned "Hijack this." That rings a bell as the name of the program I used to create a registry log. But as someone else pointed out, if you mess up your registry, you could have serious problems with your computer.


39 posted on 11/30/2004 8:31:35 AM PST by Maximilian
[ Post Reply | Private Reply | To 26 | View Replies]

To: Types_with_Fist

Not necessarily. Some of the nasties also break your internet connection string and if its broken even reinstalling Windows won't fix it. That's why you should use LSPfix software to fix the connection string before reinstalling Windows. The best course is still prevention and having either IE-SpyAd or Qwik-Fix will keep dangerous websites out of bounds. So if a kid disables anti-virus software or a firewall, malicious code can't run because its blocked. Think of it as a condom for the World Wide Web.


40 posted on 11/30/2004 8:36:52 AM PST by goldstategop (In Memory Of A Dearly Beloved Friend Who Lives On In My Heart Forever)
[ Post Reply | Private Reply | To 38 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-8081 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson