Velocity Reviews - Computer Hardware Reviews

Velocity Reviews > Newsgroups > Computing > NZ Computing > SpySheriff

Reply
Thread Tools

SpySheriff

 
 
Philip
Guest
Posts: n/a
 
      06-10-2006
One of our two Windows machines (Dell Dimension 8400, Win XP SP2) has
acquired a SpySheriff infection. AVG & Spybot report it as malware but
don't seem able to clear it out.

Google tells me it's resistant to being removed and can lead randomly to
BSOD.

A product from Canada called XoftSpy claims to be able to remove it but
shows an unhealthy interest in my credit card, and has a website full of
praise that is entirely self-referential.

Any suggestions?

Philip
 
Reply With Quote
 
 
 
 
wogers nemesis
Guest
Posts: n/a
 
      06-10-2006
On Sun, 11 Jun 2006 09:04:01 +1200, Philip wrote:

> One of our two Windows machines (Dell Dimension 8400, Win XP SP2) has
> acquired a SpySheriff infection. AVG & Spybot report it as malware but
> don't seem able to clear it out.
>
> Google tells me it's resistant to being removed and can lead randomly to
> BSOD.
>
> A product from Canada called XoftSpy claims to be able to remove it but
> shows an unhealthy interest in my credit card, and has a website full of
> praise that is entirely self-referential.
>
> Any suggestions?
>
> Philip


ad-aware, ewido
 
Reply With Quote
 
 
 
 
XPD
Guest
Posts: n/a
 
      06-10-2006

"Philip" <> wrote in message
news:448b3595$...
> One of our two Windows machines (Dell Dimension 8400, Win XP SP2) has
> acquired a SpySheriff infection. AVG & Spybot report it as malware but
> don't seem able to clear it out.
>
> Google tells me it's resistant to being removed and can lead randomly to
> BSOD.
>
> A product from Canada called XoftSpy claims to be able to remove it but
> shows an unhealthy interest in my credit card, and has a website full of
> praise that is entirely self-referential.


One of my clients purchased XoftSpy a while ago to remove some spyware......
it didnt work. However, Xoft were in regular contact with him trying to
assist. Cant remember the final outcome tho.


 
Reply With Quote
 
Matthew Poole
Guest
Posts: n/a
 
      06-10-2006
On Sun, 11 Jun 2006 09:04:01 +1200, someone purporting to be Philip didst
scrawl:

*SNIP*
> Any suggestions?
>

The ultimate solution: reinstall.
As a secondary option, install something that doesn't get infected with
spyware

--
Matthew Poole
"Don't use force. Get a bigger hammer."

 
Reply With Quote
 
bambam
Guest
Posts: n/a
 
      06-10-2006
Philip <> wrote in news:448b3595$:

> One of our two Windows machines (Dell Dimension 8400, Win XP SP2) has
> acquired a SpySheriff infection. AVG & Spybot report it as malware but
> don't seem able to clear it out.
>
> Google tells me it's resistant to being removed and can lead randomly to
> BSOD.
>
> A product from Canada called XoftSpy claims to be able to remove it but
> shows an unhealthy interest in my credit card, and has a website full of
> praise that is entirely self-referential.
>
> Any suggestions?


Have a look at SuperAntiSpyware-

http://www.superantispyware.com/

One of the program developers posts in alt.privacy spyware and the program
has been getting some good feedback in there lately.
I have the program on my computer and it seems quite nice. Can't vouch for
it's effectiveness as I'm clean.
As for XoftSpy, it looks like it's clean now, but I wouldn't use it.

http://www.spywarewarrior.com/rogue_...e.htm#xos_note

--
Calling Atheism a religion is like calling bald a hair color.
 
Reply With Quote
 
Mark C
Guest
Posts: n/a
 
      06-11-2006
Philip <> wrote in
news:448b3595$:

> One of our two Windows machines (Dell Dimension 8400, Win XP
> SP2) has acquired a SpySheriff infection. AVG & Spybot report it
> as malware but don't seem able to clear it out.
>
> Google tells me it's resistant to being removed and can lead
> randomly to BSOD.


Manual removal instructions here might help:
http://securityresponse.symantec.com.../adware.spyshe
riff.html

Booting in Safe Mode is likely the key to getting it deleted
manually.
 
Reply With Quote
 
SchoolTech
Guest
Posts: n/a
 
      06-11-2006
Philip wrote:
> One of our two Windows machines (Dell Dimension 8400, Win XP SP2) has
> acquired a SpySheriff infection. AVG & Spybot report it as malware but
> don't seem able to clear it out.
>
> Google tells me it's resistant to being removed and can lead randomly to
> BSOD.
>
> A product from Canada called XoftSpy claims to be able to remove it but
> shows an unhealthy interest in my credit card, and has a website full of
> praise that is entirely self-referential.
>
> Any suggestions?
>
> Philip


Good luck
I just reinstalled my PC to get rid of the related Brave_____ (can't
quite remember at the moment) thing which hacks its way in.
 
Reply With Quote
 
SchoolTech
Guest
Posts: n/a
 
      06-11-2006
SchoolTech wrote:
> Philip wrote:
>> One of our two Windows machines (Dell Dimension 8400, Win XP SP2) has
>> acquired a SpySheriff infection. AVG & Spybot report it as malware but
>> don't seem able to clear it out.
>>
>> Google tells me it's resistant to being removed and can lead randomly
>> to BSOD.
>>
>> A product from Canada called XoftSpy claims to be able to remove it
>> but shows an unhealthy interest in my credit card, and has a website
>> full of praise that is entirely self-referential.
>>
>> Any suggestions?
>>
>> Philip

>
> Good luck
> I just reinstalled my PC to get rid of the related Brave_____ (can't
> quite remember at the moment) thing which hacks its way in.


Bravesentry - nasty thing that pops up messages saying "Windows security
center has detected spyware in your PC" when you know full well that
Windows Security Center doesn't do any such thing.

Beware of tools promising "free" removal that give you a free scan but
then demand a registration fee. As my computer was infected with several
of these things and every time it started up they were automatically
accessing porn sites and other nasty things which I had not authorised,
I just bit the bullet and formatted the HDD then reinstalled Windows.

Have a look in Google for opinions of XoftSpy - there seems to be a
similar degree of scepticism in message boards about it.

 
Reply With Quote
 
.
Guest
Posts: n/a
 
      06-12-2006
In article <448bf64d$>,
says...
> Philip wrote:
> > One of our two Windows machines (Dell Dimension 8400, Win XP SP2) has
> > acquired a SpySheriff infection. AVG & Spybot report it as malware but
> > don't seem able to clear it out.
> >
> > Google tells me it's resistant to being removed and can lead randomly to
> > BSOD.
> >
> > A product from Canada called XoftSpy claims to be able to remove it but
> > shows an unhealthy interest in my credit card, and has a website full of
> > praise that is entirely self-referential.
> >
> > Any suggestions?
> >
> > Philip

>
> Good luck
> I just reinstalled my PC to get rid of the related Brave_____ (can't
> quite remember at the moment) thing which hacks its way in.
>


If you can find manual removal instructions for this type of scumware,
then Barts PE (or Utimate Boot CD for Windows, a extended Barts PE) is
very useful tool in removing this crap as it operates outside the
Windows installation by being a live Windows CD (as some scumware can
not even be removed from Safe mode).
 
Reply With Quote
 
SchoolTech
Guest
Posts: n/a
 
      06-17-2006
.. wrote:
> In article <448bf64d$>,
> says...
>> Philip wrote:
>>> One of our two Windows machines (Dell Dimension 8400, Win XP SP2) has
>>> acquired a SpySheriff infection. AVG & Spybot report it as malware but
>>> don't seem able to clear it out.
>>>
>>> Google tells me it's resistant to being removed and can lead randomly to
>>> BSOD.
>>>
>>> A product from Canada called XoftSpy claims to be able to remove it but
>>> shows an unhealthy interest in my credit card, and has a website full of
>>> praise that is entirely self-referential.
>>>
>>> Any suggestions?
>>>
>>> Philip

>> Good luck
>> I just reinstalled my PC to get rid of the related Brave_____ (can't
>> quite remember at the moment) thing which hacks its way in.
>>

>
> If you can find manual removal instructions for this type of scumware,
> then Barts PE (or Utimate Boot CD for Windows, a extended Barts PE) is
> very useful tool in removing this crap as it operates outside the
> Windows installation by being a live Windows CD (as some scumware can
> not even be removed from Safe mode).


The problem is - working out how to get rid of it altogether
I had this nasty one downloading files from traffall.biz, had been doing
it for about a week and running stuff through porn sites behind my back
as well, all recorded in our internet logs. Spent hours trying to get
rid of it, I would be running Sysinternals Process Watcher (it disables
access to Task Manager) and whoops, another process with a strange
filename like 60AC.TMP would launch itself from somewhere. After
checking everything I could think of I formatted and reinstalled, also
gets rid of all the crap it downloaded. It only took a few hours to get
everything working again from scratch.
 
Reply With Quote
 
 
 
Reply

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off




Advertisments
 



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57