right ive got some serious adware on my commie, and need to know how to get shot, in the ctrl, alt del menu theres loads of processes like facegame.exe proxylogon.exe rundll.exe and such, all unclosable, and if you do they only open again.

theres also these files and many other like them in the windows folder on the c drive.

and every 2 mins or so i get a pop up in IE, which i know has nothin to do with the sites i use cause i use fire fox to browse.

ive done and adaware scan, and delted what thats found but theres still loads left, andbody recomend any (prefereably free) programs to get shot of the rot!!

cheers all!
Try SpyBot Search & Destroy and SuperAntiSpyware. 2 very good freebies!
if you have windows xp as your OS - click on the start icon bottom LHS and then the run icon - type in 'msconfig' hit will get a large screen appear , click on the startup tab and then basically disable or untick all of the things that you don't need running when you switch it on , this will help your computer run 'leaner' when it is loading up everything at start up. You should only need any anti virus software ticked everything else is normally non essential - if you are not sure leave it ticked.

Then install adaware and avg from - they are both free. Run them one after the other restart your pc and that should sort it.

A short term easy fix:

Start, run, type 'Notepad', bang enter and notepad will appear.

Then go start, run, and copy and paste this "c:\windows\system32\drivers\etc\" again, bang enter and it will bring up a folder.

The drag and drop the "hosts" file into notepad.

It should look something like this:

# Copyright (c) 1993-1999 Microsoft Corp.
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
# For example:
# # source server
# # x client host localhost

If there are a load of entries below " localhost" you'll probably find they are for the spyware app, tells it what pages to open etc. Delete them and it should stop opening the ads, unless you've added anything yourself, it should look as above, so delete all except whats above.
this is gettin unbareable now, ive started in safe mode, delted everything i can fiond that could possibley be causing it, ive run adaware in safe mode and delted 87 threats, i did the ms confid and reduced a list from about 25 to 7 or 8

i did the thing with the notepad in safe mode and it showed exactly what you copyed and pasted, but i dunno if that makes a difference with it bein in safe mode, ive got avg on download now, gonna run that soon. im just hoping its not past the point of no return, this lap tops 2 years old at chrimbo, and it was still going great up till the start of this week! not bad the way computers are these days, (although, its not much of a lap top any more, i stood on the screen when i was drunk, so i pulled it off, and use a flatscreen moniter thats attached to the wall!! so its like a very small desktop!)
you could try a 'system restore' and that may work.

click on start - all programs - accessories - system tools -system restore.

I suggest you restore your laptop to an earlier time , you won't lose anything and is completely reversible.


by the way a full scan with AVG will take about an hour !!
well ive downloaded avg, and it wouldnt install, so i got avira anti virus, started the scan, its already chucked out 6, 2 of which were causeing the most bother and its got rid of the facegame.exe processes from my process lists! another 90% to go, ill let you know how i get on, thanks for the tips tho!
starting to get a bit concerned now, looks like ive downloaded summit pretty serious, so far discovered 8000 malware? and its only upto d in a file in WINDOWS folder, it must have been hidden because i looked in windows loads, and all these files are named after films and popular games. i must have downloaded summit very sour!
