Advertisement
If you have a new account but are having problems posting or verifying your account, please email us on hello@boards.ie for help. Thanks :)
Hello all! Please ensure that you are posting a new thread or question in the appropriate forum. The Feedback forum is overwhelmed with questions that are having to be moved elsewhere. If you need help to verify your account contact hello@boards.ie

Free alternative to SpyHunter?

Options
  • 09-06-2015 1:30pm
    #1
    Administrators, Business & Finance Moderators, Society & Culture Moderators Posts: 16,905 Admin ✭✭✭✭✭


    Hey all

    As the title suggests, can anyone recommend something that does the same job as SpyHunter but without having to pay €43 every 6 months? Usually I don't mind paying for this type of software if it gets the job done, but I'm absolutely smashed this month, and my computer is riddled with adware/malware.

    I initially noticed something was up when my Chrome and Firefox home pages were changed to Omiga Search and Delta Homes respectively. I scanned my computer with my antivirus software (AVG 2015 full paid version) and it showed nothing. There was nothing in my program files to uninstall, so I reset my browsers. Chrome seems to be working fine now (although there's probably a few things in the background that I haven't noticed) but Firefox is still a mess.

    I downloaded SpyHunter 4 and set it to scan; it came up with 700 odd threads detected :( Of course when I went to try and remove them, you have to register and pay beforehand.

    So far I've run Spybot S&D - it got rid of some of the stuff, then I ran the bleedincomputer one, and it got rid of some more. Then I rebooted in safe mode, and ran Spybot again, it found some more bits and I got rid of those.

    I'm running the SpyHunter scan again, and it's still in progress, but so far it's still detecting 151 threats. (AVG is still showing up that everything is clear, the asshats.)

    Can anyone recommend any other tools to try?

    Thanks guys!


Comments

  • Administrators, Business & Finance Moderators, Society & Culture Moderators Posts: 16,905 Admin ✭✭✭✭✭Toots


    Forgot to mention I also ran the bleedincomputer on in safe mode, but it didn't detect anything else.


  • Registered Users Posts: 840 ✭✭✭jsa112


    run malwarebytes and post the log it gives

    https://www.malwarebytes.org/mwb-download/


  • Administrators, Business & Finance Moderators, Society & Culture Moderators Posts: 16,905 Admin ✭✭✭✭✭Toots


    Ok, just ran it and here's the results thing:

    Malwarebytes Anti-Malware
    www.malwarebytes.org

    Scan Date: 09/06/2015
    Scan Time: 16:24:15
    Logfile: results.txt
    Administrator: Yes

    Version: 2.01.6.1022
    Malware Database: v2015.06.09.04
    Rootkit Database: v2015.06.02.01
    License: Trial
    Malware Protection: Enabled
    Malicious Website Protection: Enabled
    Self-protection: Disabled

    OS: Windows 7 Service Pack 1
    CPU: x64
    File System: NTFS
    User: Catherine

    Scan Type: Threat Scan
    Result: Completed
    Objects Scanned: 397795
    Time Elapsed: 23 min, 38 sec

    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Disabled
    Heuristics: Enabled
    PUP: Enabled
    PUM: Enabled

    Processes: 0
    (No malicious items detected)

    Modules: 0
    (No malicious items detected)

    Registry Keys: 2
    PUP.Optional.CrossRider.C, HKLM\SOFTWARE\WOW6432NODE\APPDATALOW\SOFTWARE\Crossrider, , [bcec0eaa375358de789175771de6ed13],
    PUP.Optional.Crossrider.C, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\_CrossriderRegNamePlaceHolder_, , [f4b4d1e76327bc7a9cddc4bd25e008f8],

    Registry Values: 0
    (No malicious items detected)

    Registry Data: 0
    (No malicious items detected)

    Folders: 29
    PUP.Optional.YouAreAwesome.A, C:\Program Files (x86)\You are Awesome, , [c0e8883037532214e8d1710af90ca15f],
    Rogue.Multiple, C:\ProgramData\1837308050, , [4e5aa3154d3d2d099504ebbc01024bb5],
    PUP.Optional.CouponFactor.A, C:\ProgramData\CouponFactor, , [83253f7958323600fa6700d58b78b24e],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\image, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\en-US, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\es-419, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\es-ES, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-BE, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-CA, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-CH, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-FR, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-LU, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\it-CH, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\it-IT, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pl, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pt, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pt-BR, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\ru, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\ru-MO, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\tr-TR, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\vi-VI, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\zh-CN, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\zh-TW, , [8622dddb761454e225ba638662a19868],

    Files: 51
    PUP.Optional.MultiPlug.Uns, C:\ProgramData\CouponFactor\CouponFactor.exe, , [099fe0d88604df571e1b213c58ab768a],
    PUP.Optional.OpenCandy, C:\Users\Catherine\Downloads\PowerISO6-x64.exe, , [9612befa1278e551503275ed62a430d0],
    PUP.Optional.YouAreAwesome.A, C:\Program Files (x86)\You are Awesome\You are Awesome.dat, , [c0e8883037532214e8d1710af90ca15f],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\ffsearch_toolbar!1.0.0.1031.xpi, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\install.data, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\msvcp110.dll, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\msvcr110.dll, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\searchProvider.xml, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\about.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\about_bk.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\btn.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\btn_apply.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\close.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\conf.xml, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\conf_back.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\input_bk.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\logo.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\main.xml, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\radio_1.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\radio_2.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\rigth_arrow.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\settings.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\data.html, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\indexIE.html, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\indexIE8.html, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\main.css, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img\google_trends.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img\icon128.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img\icon16.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img\icon48.png, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img\loading.gif, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img\logo32.ico, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\en-US\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\es-419\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\es-ES\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-BE\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-CA\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-CH\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-FR\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-LU\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\it-CH\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\it-IT\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pl\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pt\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pt-BR\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\ru\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\ru-MO\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\tr-TR\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\vi-VI\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\zh-CN\messages.json, , [8622dddb761454e225ba638662a19868],
    PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\zh-TW\messages.json, , [8622dddb761454e225ba638662a19868],

    Physical Sectors: 0
    (No malicious items detected)


    (end)


  • Registered Users Posts: 840 ✭✭✭jsa112


    delete what it found

    also run adwcleaner and post its log

    http://www.bleepingcomputer.com/download/adwcleaner/


  • Administrators, Business & Finance Moderators, Society & Culture Moderators Posts: 16,905 Admin ✭✭✭✭✭Toots


    Ok, just ran it there, and before I could post up the log my 3 year old decided it would be fun to switch off the pc. So I ran it again, and here's what it gave

    # AdwCleaner v4.206 - Logfile created 09/06/2015 at 17:15:06
    # Updated 01/06/2015 by Xplode
    # Database : 2015-06-09.1 [Server]
    # Operating system : Windows 7 Home Premium Service Pack 1 (x64)
    # Username : Catherine - CATHERINE-PC
    # Running from : C:\Users\Catherine\Downloads\AdwCleaner.exe
    # Option : Cleaning

    ***** [ Services ] *****


    ***** [ Files / Folders ] *****


    ***** [ Scheduled tasks ] *****


    ***** [ Shortcuts ] *****


    ***** [ Registry ] *****


    ***** [ Web browsers ] *****

    -\\ Internet Explorer v11.0.9600.17728


    -\\ Mozilla Firefox v38.0.5 (x86 en-US)


    -\\ Google Chrome v43.0.2357.81


    *************************

    AdwCleaner[R0].txt - [16422 bytes] - [09/06/2015 11:33:08]
    AdwCleaner[R1].txt - [922 bytes] - [09/06/2015 12:32:59]
    AdwCleaner[R2].txt - [1169 bytes] - [09/06/2015 17:04:02]
    AdwCleaner[R3].txt - [1158 bytes] - [09/06/2015 17:10:51]
    AdwCleaner[S0].txt - [8935 bytes] - [09/06/2015 11:36:36]
    AdwCleaner[S1].txt - [985 bytes] - [09/06/2015 12:34:07]
    AdwCleaner[S2].txt - [1236 bytes] - [09/06/2015 17:05:32]
    AdwCleaner[S3].txt - [1084 bytes] - [09/06/2015 17:15:06]

    ########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [1143 bytes] ##########


  • Advertisement
  • Registered Users Posts: 840 ✭✭✭jsa112


    hows it running, any issues ?


  • Administrators, Business & Finance Moderators, Society & Culture Moderators Posts: 16,905 Admin ✭✭✭✭✭Toots


    It seems grand now, should I be doing anything else to make sure there's nothing left behind?


  • Registered Users Posts: 840 ✭✭✭jsa112


    na just run malwarebytes and avg occasionally. you just had some advertising junk, nothing particularly bad. I wouldn't pay for spyhunter anymore btw


  • Administrators, Business & Finance Moderators, Society & Culture Moderators Posts: 16,905 Admin ✭✭✭✭✭Toots


    Awesome! Thanks a million! Just wondering should my AVG not have caught some of that stuff and blocked it, or does this stuff pretty much ignore firewalls etc?


  • Registered Users Posts: 840 ✭✭✭jsa112


    na that stuff is in a grey area legally so some programs wont detect it. also it more than likely got bundled in when you installed something else


  • Advertisement
  • Administrators, Business & Finance Moderators, Society & Culture Moderators Posts: 16,905 Admin ✭✭✭✭✭Toots


    oooh that's sneaky!! Thanks a million for your help!


Advertisement