View Full Version : Spy Axe
32VfromHell
01-03-2006, 12:03 AM
For the love of god, go to windows update and get all the latest urgent upgrades. This fucker attacked my computer today and it was hard-fucking-core. I have fought some tough motherfuckers before, but this malware was ACE. Basically Spy Axe gets installed as a trojan, then offers to fix its OWN intrusion, for a small fee of course! Thing hijacks everything down to your desktop wallpaper if you let it.
I hit it with a bunch of :
Hijackthis!
Ewido
Spybot
Adaware SE
PCCillin
and just about everything i could throw at it.
And to those of you with firefox who think you are safe, nu-uh. Lots of blogs on the subject were about firefox users.
http://www.infopackets.com/channels/en/windows/nicks_computer_security/2005/20051220_remove_spyaxe_removal_instructions.htm
There is a link for those who might think they are infected. Just keep on your toes guys!
90GT50
01-03-2006, 06:54 PM
It's a PITA, I had it about a month ago, google search spyaxe removal, there are some specific files in system32 you have to delete, and it works fine.
32VfromHell
01-05-2006, 07:26 PM
i just think its crazy how malware like this has gone to flat out extortion!
90GT50
01-05-2006, 08:39 PM
[QUOTE=32VfromHell]i just think its crazy how malware like this has gone to flat out extortion![/QUOTE]
Yep. Get it fixed yet?
32VfromHell
01-05-2006, 09:20 PM
kicked its bitch ass about 3 hours after i got infected. I made that post after i FINALLY got the bitch.
DarkWolf
01-06-2006, 12:22 AM
The reason even firefox isn't safe, is because IE still resides on the system. Unfortunately, the only way to truely remove IE is to ... pretty much break the system. All the MMC apps won't work if you remove the IE core (which is the internal html rendering engine. Just removing IE browser and OE will help, but with the core still on the system (because it's needed for things like Device Manager, Scandisk/defrag, System Info, System Restore, Disk Management, Services, etc) it's still got some holes.
What I did, with nLite, created a custom XP install that had no IE or OE, but left the core so the system would still be useable. Then, I went into Internet Options and locked it down, turned off java/javascript, activex, unchecked everything, no cookies, no history, no temp files, etc. Still not 100% safe, but should be good for most things as long as you don't physically run anything that's infected. Of course, firewall and anti-virus as well.
www.nliteos.com
Not too worried about it anymore though. At least not until Linux gets a significant market share (ha ha... yeah).
32VfromHell
01-06-2006, 06:04 AM
of course, you could just install the latest windows updates like i SHOULD have and not have the problem. =)
Firefox is solid, but its just a matter of time before its exploited completely and in the same boat.
slim87GT
01-06-2006, 08:05 AM
Its been on my computer for a week. It gets on my nerves. I was actually going to start a post asking about it and saw this one so thanks ill try the google thing
slim87GT
01-06-2006, 09:06 AM
HA HA it worked Thanks
90GT50
01-06-2006, 09:18 AM
[QUOTE=32VfromHell]kicked its bitch ass about 3 hours after i got infected. I made that post after i FINALLY got the bitch.[/QUOTE]yeah, it's a little PITA. adaware would show me that it found it, but it couldn't get rid of it, I had to bring my laptop into the other office cause the damn popup every 2 seconds was driving me crazy and I set my firewall to close so nothing else would come in, then had to look up instructions to remove the fucker.
stangcrazy
01-06-2006, 09:24 AM
I got hit with spyaxe a month or so ago, and today I just got hit with Spyware Striker, i'm sure this one is similar, but they are PITAs.
Hunt4m3x
01-06-2006, 10:48 AM
Thats newb shit!
stangcrazy
01-06-2006, 01:12 PM
[QUOTE=Hunt4m3x]Thats newb shit![/QUOTE]
Please do tell me then Hunt how the hell to get this new Spyware Strike off my computer...
vBulletin v3.0.6, Copyright ©2000-2008, Jelsoft Enterprises Ltd.