Spyware and Spam: How to Get Rid of It

Jeratain

On the can.
Joined
Nov 7, 2002
Messages
2,694
Location
SF, CA
UPDATED: September 28, 2004

Okay, I can see that there are a lot of people who don't know what their computer is doing behind their backs. So let me tell you what the deal is and what programs are a must:

Disclaimer: Never install anything or run something unless you know what you're doing / what it is.

First off: Ad Aware of course, http://www.lavasoftusa.com

This will scan and protect your computer from malascious spyware by safely removing it. This program is free, and it is a must. Make sure that you constantly check for updates as new spyware is created daily and the fine people at LavasoftUSA release updates.

Also: Spybot Search & Destroy, http://www.safer-networking.org/

This program does essentially what AdAware does, but is a bit more advanced and includes different features.

Potential question: Which should I download, AdAware or Spybot S&D?
Answer: Ultimately, the choice is yours. I personally feel that both programs compliment each other. AdAware will find items that Spybot wont, and vice versa. They both are powerful tools and can help, and there really isn't much harm in having both.

If you're still having problems...: Check out HijackThis (alternatively, you can Google it if that link is down.) It's a system editor, from the creator of CWShredder. In essence, it's like MSConfig or RegEdit, but it's more adept to search for browser parasites and spyware. It gives you a list of everything from your browser that is either good or bad and let's you choose what you want to keep or get rid of. It also makes backups of everything it changes, and can create a text logfile for analysis by others.

Someone in another forum said it best: "In the hands of an expert, it's an amazing tool. In the hands of a novice, it's less than useful, it's dangerous. So unless you're very, very sure of yourself, never make any changes in HijackThis without consulting others first." Heed that advice.

Sometimes if you have problems, you can run HijackThis and post your log into the post so that people can analyze it and tell you what is good and what is bad if you can't figure it out.


Second: Zone Alarm, http://www.zonelabs.com or Kerio Personal Firewall, http://www.kerio.com/us/kpf_home.html

This program protects your computer from unwanted access. For instance, let's say you have zone alarm running, and the gator program you did not know was installed on your computer wants to send information while you are on the internet. What happens is, Zone Alarm will alert you that the program is trying access the internet and you can stop it.

Essentially, Zone Alarm let's you choose what programs can / cannot have access to the internet, thereby stopping spyware from fulfilling its purpose. I reccommend Zone Alarm Pro if you wish to purchase it - It's well worth every penny, and the Pro version let's you block third party cookies, blocks pop-up ads, skyscraper ads, and more.

Zone Alarm is free, while Zone Alarm Pro has a free 30 day trial. This program is a must.

If you are running Windows XP, install Service Pack 2 and enable the built-in firewall. This is a very functional firewall and should do most of the things that ZoneAlarm does (with a few exceptions).

Third: Mail Washer, http://www.mailwasher.net/

What this program does is it connects to your mailbox (even hotmail) and it lets you mark the mail that is spam. It then sends out a message to each of the spammers telling them that they have reached an invalid mail box. This will usually have the spammers remove you from their list and thus save you the issue of having spam mail (or at least reduce that problem.) It's a bit of work at first marking each spam mail, but it can reduce your spam by as much as 80% (I'm saying that from experience). This program is free.

Fourth: Window Washer, http://www.webroot.com/wb/products/windowwasher/index.php

This program will clean your computer of any and all files you have downloaded while browsing the net. Let's say you went to a whole lot of sites where you get hundreds of cookies put on your system. (Cookies are also a form of spyware in many cases.) Well let's say you don't want to keep those cookies, but you do want to keep certain others. Window Washer will let you choose what cookies you want to keep, and it will delete the rest of the cookies from then on. So you can browse the net, log into the New York Times online without any problems after deleting all the other cookies, and feel safe. Window Washer will also clean out your Temporary Internet Files and History, as well as the index.dat file. Now you might be thinking that you can clean out these files manually through IE alone. What you might not know is that the index.dat file in IE cannot be deleted, wiped, or edited under a windows environment. (Index.dat file stores codes of every website you visit.) Window Washer bypasses this lock and safely cleans the file restoring it to the original status that it was. A great part of this program is that it will clean up lots of disk space, and do more than I even mentioned above. This program has a free 30 day trial. (Worth it just for the trial.)

Others have suggested: Tracks Eraser Pro. I have not personally tried this software, but it appears to do the same thing as Window Washer (possibly different, better, or worse).

Now regarding the Kazaa issue. NOTE: Kazaa is no good. Don't install it. Unless you can get your hands on a version of Kazaa Lite from the past (which is being quickly phased out), then use that. Otherwise, find other P2P networks for your legal file sharing purposes. Disregard the following text regarding Kazaa: Kazaa does require the ads and spyware to run. That's why you should never install Kazaa to begin with. Only install Kazaa Lite, or WinMX. WinMX has no spyware and works fine. Kazaa Lite is the exact same thing as Kazaa - it uses the same servers and everything. The only difference is, it doesn't have any of the spyware. You can find Kazaa Lite at http://www.kazaalite.nl/ or at http://doa2.host.sk/ .

Seeing that those links are now dead, and that Kazaa Lite has been killed by those who run Kazaa, it is now difficult to find this program on the internet. However if you search thoroughly you may find the install file. Luckily for you folks out there, hbdragon88 has posted a link for everyone that has all the old versions: Kazaa Lite (All Versions)


For Windows XP SP2 Users
If you are running Windows XP and have SP2 installed:
Right click My Computer and go to Properties.
On the Advanced tab click on the Settings button in the Preformance area.
You should have a new third tab: Data Execution Prevention.

I recommend choosing the "Turn on DEP for all programs and services except thos I select:" option.

What is DEP you ask?

Hardware DEP
The hardware version, is only available on a small number of systems. The idea is that hardware and software work together to protect critical parts of the kernel memory space (stack, heap, etc) so that when a buffer overrun occurs (this does not prevent overruns) the portion of memory that could otherwise be executed is non-executable (this is way over simplified). The idea is to minimize the impact of malicious code.
All the "Palladium" stuff people have been railing about....this is the first part of it.

Software DEP
Third party tools have been around do to this on Windows Systems for some time (StackDefender, Overflow Guard, etc). The idea is that you add software items to the kernel that have various ways of monitoring the memory space to try to prevent overrun execution. This is weaker than hardware DEP but does offer some good protections.

So that is the basics, by default the software DEP in SP2 is on for Windows and its services. You can optionaly turn on DEP for all software (which I recommend), and then exempt any programs you need that happen to fail due to it. The cool thing is when an app fails you will get information about the app and the vendor may already have a fix. The error looks a lot like a dr watson error that you have all probably seen but has a DEP title bar.

This isn't really a trick - it's more of a must-do option if you care about security.


Question: What exactly is spyware, how do I get it, and why do I need to worry?

Answer: Spyware is exactly what the name sounds like. It's software that helps companies spy on you. You see, companies like the Gator Corporation and Doubleclick.net are trying to find out what trends you have on the internet, and what your personal information is. Why would they want that? Well they don't want it - companies want it. So they gather this information through (unfortunately) legal means and then they sell it to companies who then send out advertisements to your email accounts. If they gather enough information they will mail it to you, call your house (telemarketing), and so on. Spyware can cause your computer to go slower, as well as mess with the settings and cause you to have many problems.

Spyware is capable of much more than I have just listed above, so don't take my word on that alone. Be safe when you browse the internet. Here's a few safety tips I think might help some out (they have been listed by a few users in the forum, thanks :))

1. Have a spammail account. I have one, it works perfect. I have a hotmail account that I use to register for any website I want to join, ie: New York Times, CNN, etc.

Only give out your real email to friends, business partners, etc.

2. Before you install anything, read the fine print. There are normally (by law) user agreements for any program you install on your computer. When installing the Divx 5.0 Pro player and codec, you might notice how it tells you that it is going to install the GAIN Network's software (Gator Corporation.) Always know what your'e putting on your computer before you install anything.

3. Browse the net safely. When you visit websites, don't be fooled by silly advertisements. Don't look at porn - those sites are the worst sites when it comes to pop ups and sending unwanted cookies.

____________
How do I know all this stuff? Am I pulling things out of my butt? Am I some sort of certified spyware / internet safety guy?

No. I'm no expert at this. I have done a few papers on hacking and internet privacy and spyware and so I have researched this topic quite thoroughly. There is much more to be said about cookies and spyware, but I think the basics should suffice.

Feel free to post some questions. I don't guarantee I'll know the answer to it, but I will try and help my best.
 
Nice post, I must say.

But Jeratain, are you totally positive that Kazaa Lite comes without all the sh*tty spyware? Just installed it, some functions have been removed, and you're able to tick what you wanna have installed, opposite Kazaa where, if you untick all other additional programs, the application won't install.

It's strange, though, that this site can just manipulate its own versions of Kazaa, obviously without Sharman Networks' (?) consent. Anyway, it's great for us spyware victims, we actually don't know how rudely they've been abusing own computer, untill we could finally have a look at the mess when Ad Aware came.

Additionally, this Kazaa Lite thingy is just as functional as the regular one; the bandwith/transfer rate doesn't seem to be lowered, and search results are just as good as the old one.

Again, thanks for your advice, thanks to you, you actually made be more conscious about all this and to be vigilant.
 
I knew about adaware and Kazaa lite, but not the other programs mentioned.

Thank you for posting about this.
 
Originally posted by nixon
But Jeratain, are you totally positive that Kazaa Lite comes without all the sh*tty spyware?

As far as I have seen / can tell, yes it has no spyware. (kazaa lite version 2.02 is the version I use.)
 
And for those of you, who have just removed their original kazaa after reading those posts.

CLEAN YOUR REGISTRY!!! It's still full of kazaa entries.
A nice program for this is regcleaner which is free as well.
 
A few minor updates.

1. Ad-Aware has released Ad-Aware 6 which is a huge step up from the previous version 5 platform. It has many new capabilities and is much more thorough than its predecessor. I highly reccommend that everyone download and install this new version. It is still a small download and does not require a high end-system to run.

2. Uninstalling regular Kazaa - First open up your control panel (assuming you are running Windows.) Now go to "Add/Remove Programs." Uninstall Kazaa from your computer. Once this completes, you will need to go to your hard drive directory and find the directory where you had previously installed Kazaa. (Usually it's located in C:\Program Files\Kazaa or something on those lines.) Delete this folder and it's contents. Note: Before deleting the contents of this folder be sure to save any files or media that you wish to keep which is in the "My Shared Folder" folder, which is normally located in the Kazaa folder. Once you have saved your shared files elsewhere you are safe to delete the contents of the Kazaa folder.

After you have finished deleting this folder, run Ad-Aware, or as Zelig suggested, you may also run Spybot Search & Destroy. This will find and remove any remaining spyware which Kazaa left behind.

When this task is complete, you can go ahead and install Kazaa Lite. As of February 19 the latest version is 2.1.

3. Also, make sure to periodicallly check for any software updates. Ad-Aware 6 comes with a built-in updater that will allow you to check for any reference file updates and will keep it up to date by the click of a button. Zone Alarm Pro is now up to version 3.5 and has many additional features than it's previous versions.

Also for those of you who are interested in downloading the DiVX Pro codec but are worried about the potential spyware that comes with it, you can also download K-Lite Codec Pack which is brought to you by the makers of Kazaa Lite. This pack comes with many different Codecs, including DiVX Pro 5.03. You can find this pack at: http://doa2.host.sk/
 
OK, Ad-aware is muuch more efficient now! Now, it takes about the same time as NAV uses on a full system scan. Gee. Always nice with improvements, though - and the design is a lot more sexy! :D ;)
 
I downloaded Zone alarm, but it is blocking access to a Computer that i know is "clean". It is my brother's computer, and zone alarm keeps telling me it's blocking his computer (i can tell by the IP adress it gives me.) Any way to open his IP so Zone Alarm doesn't block it?
 
Did you set your LAN as a trusted zone? If not, try that, it should fix your problem - that is assuming that you are both on the same LAN.
 
Originally posted by Civanator
how do i do that?
See the two sliders in your Zone Alarm settings panel? One says: "Internet Zone Security" and the other says "Trusted Zone Security" ?

Just go ahead and slide down the slider to "low" on the "Trusted Zone Security." Leave the Internet one alone however.

If you still don't know what to do, or if it still doesn't work, you can post your question and I'll try to answer, or you can just search for it yourself in the manual: http://download.zonelabs.com/bin/media/pdf/za31_help.pdf

This manual is in PDF format, so make sure you have Adobe Acrobat Reader to view it.
 
I now use both Spybot Search and Destroy as well as Adaware 6.0. One often finds something the other missed, no matter which I run first.
 
I think that it's barely legal to have that because it's embedded in the user agreement. By clicking "yes" you say that yeah, you can install spyware. But whichever, I'm still against such intrusion. Luckily for me I don't download much and Ad-aware turned up nothing.
 
I heard that you could just install kazaa, run adware to get rid of the spyware, and then use some sort of dummy files to replace the ones needed to start kazaa. I have no idea how it is done though. Maybe a search on the Internet could clear some of this. I just use WinMX these days. It's pretty nice IMHO.
 
Originally posted by goododa
I heard that you could just install kazaa, run adware to get rid of the spyware, and then use some sort of dummy files to replace the ones needed to start kazaa. I have no idea how it is done though. Maybe a search on the Internet could clear some of this. I just use WinMX these days. It's pretty nice IMHO.
You can do that, but installing Kazaa Lite is just easier to do really.
 
Back
Top Bottom