![]() |
![]() |
![]() |
||||
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
![]() ![]() |
|
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed. |
|
Thread Tools |
![]() |
#1 |
Registered User
Join Date: Apr 2002
Posts: 16
|
Help with homepage highjack please
Can anyone please help me. I went to a site and when I left it, I got a popup that is asking to change my homepage. I say no, and the popup wont go away. It has highjacked me to their site which is called about blank and it is a search page with spyware advertisements. I ran adaware and spybot, and it wont go away.
I have completey shut down and rebooted and the popup still comes up. Anyone have a fix, I would certainly appreciate it. Thanks in advance Miranda |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#2 |
I need a beer
![]() Industry Role:
Join Date: Jun 2002
Location: ♠ Toiletville ♠
Posts: 133,944
|
I used thisNo Spy Xtreme and it removed it.I tried all the others and they won't remove it permanantly.
Also I did this Turn off your system restore. You have to disable the active desktop, but it has to be done via the registry. That's the spyware porngraph uses. HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre ntVersion\Policies\Explorer Add a DWORD value called NoActiveDesktop and set the data to 1. Restart, you're set.
__________________
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#3 | |
Confirmed User
Join Date: May 2004
Location: Inside the computer
Posts: 347
|
Quote:
look for CWshredder download it and run it. It dosent install to the you computer but only works when you click on it after DL. Hope that does it ![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#4 |
Confirmed User
Join Date: Jun 2003
Location: Santa Barbara
Posts: 1,152
|
LOL what!?!?
It hijacked you and took you to about:blank? ![]() ![]()
__________________
ICQ 40402622 The only sig on GFY without spam! |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#5 |
Registered User
Join Date: Apr 2002
Posts: 16
|
Thank you,
spunky1 and thumbsUP for the quick response and help. thumbsUP, I downloaded CWshredder and it removed the following: Removed from your system: - CWS.Searchx It fixed the problem. I really appreciate your help and time. Thanks again. Miranda ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#6 |
GFY HALL OF FAME DAMMIT!!!
Join Date: Oct 2003
Posts: 58,202
|
CSW Shredder, kicks ass... glad you fixed the problem. Damn spyware
![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#7 |
Confirmed User
Join Date: Aug 2002
Location: MI
Posts: 367
|
I found that norton actually removes these things pretty well if your program is up to date.
__________________
Kiss a piano player today |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#8 |
Confirmed User
Industry Role:
Join Date: Aug 2001
Location: Beach
Posts: 5,281
|
CSW shredder will not work on this - I got this fucking hijack this week, it is such a pain in the ass to get rid of..........
follow these steps: The hidden culprit (using Windows XP Pro) that keeps reinfecting the machine is the registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs You need to remove it. Some folks say to change the registry key value to random characters using the free reglite utility (which may work as well) but I removed the key. The value of the key is hidden and causes Windows to load the trojan DLL every time any application is run. The way to remove the registry key is not obvious. If you just delete it from regedit, the trojan DLL will undo your handy work. Here's what worked for me: 1. Rename the HLM\Software\Microsoft\Windows NT\CurrentVersion\Windows folder to Windows2. 2. delete the AppInit_DLLs key under the Windows2 folder. 3. Rename the Windows2 folder back to Windows. Now that AppInit_DLLs is gone, run your favorite spyware/adware utilities such as Adaware 6, CWShredder, and Hijack This. I also run Norton Utilities, which helps if you don't trust your instincts for repairing registry files. Remember, I'm not a geek and just want to use computers & software rather than reinvent them from the ground up. 4. Reboot your machine. Your computer should be free at last. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#9 | |
Confirmed User
Industry Role:
Join Date: Aug 2001
Location: Beach
Posts: 5,281
|
Quote:
![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#10 | |
Confirmed User
Industry Role:
Join Date: Aug 2001
Location: Beach
Posts: 5,281
|
Quote:
Miranda sorry to tell you but it's going to come back unless you remove it from the registry ![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#11 |
Registered User
Industry Role:
Join Date: Jul 2003
Location: Encrypted. Access denied.
Posts: 31,779
|
How do you get into the registry? I have never done that before...
I have XP Home on the machine that is infected. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#12 | |
Confirmed User
Industry Role:
Join Date: Aug 2001
Location: Beach
Posts: 5,281
|
Quote:
be careful in there, only delete the key mentioned above |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#13 |
Confirmed User
Industry Role:
Join Date: Aug 2001
Location: Beach
Posts: 5,281
|
then go here:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows look for AppInit_DLLs |
![]() |
![]() ![]() ![]() ![]() ![]() |