PDA

View Full Version : Driveby Download


R J Kinloch
23rd Jun 2008, 20:32
My daughter downloaded a cheat for a game and also accidentally got this adware?

It continually pops up and tells me I have dangerous Trojan Horses on my system.

If I have AVG doesn't pick them up so I doubt they exist.

If you click in the popup it directs you to http://ieavdownloadstart.com and presents you with the executable file ieav.exe.

Non of the programs I have on my computer will find this nasty and rolling my comp back to a previous date doesn't work as it says nothing has changed.

Whist I admire the technical ability shown in the writing of this nasty it's bloody annoying.

Anyone got any ideas on how to KILL IT:ugh:

RudeNot2
23rd Jun 2008, 20:46
Try adaware 2008.. or spybot. Both free and may rid you of said internet demon!!

Jhieminga
23rd Jun 2008, 21:08
I usually put the filename of such programs in google, it tends to turn up pages with removal instructions or tips to (free) removal utilities. Worth a shot.

Gertrude the Wombat
23rd Jun 2008, 21:39
That's not a "driveby download". She deliberately downloaded something, on purpose - it just wasn't quite what she naively imagined it to be.

A "driveby download" is where you visit a web page, click on nothing, download nothing, and still get infected.

Personally I treated this as a people problem needing a people problem, not as a technical problem needing a technical solution. My children have now been trained out of downloading nasties, certainly onto my network; this is a one-off permanent fix, so I no longer have to worry about anti-virus stuff and other ways of fighting malware.

Bushfiva
23rd Jun 2008, 22:46
Search for superantispyware.

isi3000
24th Jun 2008, 00:39
Well I have exactly the same problem at the moment, a voice keeps announcing 'caution a virus has been detected...'. Definitely try Adaware, helped quite a lot in sorting the problem. You could probably get something to back it up though (like ZoneAlarm or Avast) :ok:

Tarq57
24th Jun 2008, 02:20
Gertrude is correct; this was not a drive by download.
Anyway, download Rogue Remover (http://www.malwarebytes.org/rogueremover.php) (from Malware Bytes), update the definitions, run it.
IEAV is a rogue program, cloned from such lovelies as MalwareBell, or IEDefender. (Love the way rogues often use names that sound like valid programs.) (NOT).
RogueRemover has MalwareBell in its def's, so there's an excellent chance it will do the job. And it's fast. And free.
Other reputable antispywares, with a bit more clout than AVG, AdAware etc include Superantispyware (http://www.superantispyware.com/) and MBAM (http://www.malwarebytes.org/mbam.php) (from the same co. as Rogue Remover.

R J Kinloch
24th Jun 2008, 19:51
Thanks for your help:)

Malwarebytes Anti-Malware (Free) did the job:D