Google Answers Logo
View Question
 
Q: Ending pop ups from zipzappromos ( Answered,   9 Comments )
Question  
Subject: Ending pop ups from zipzappromos
Category: Computers > Internet
Asked by: flamekeeper-ga
List Price: $25.00
Posted: 26 Feb 2005 07:54 PST
Expires: 28 Mar 2005 07:54 PST
Question ID: 481307
I,m trying to stop POP UPS from zipzappromos.com.
   I've tried with no luck at all,with only 3 yrs exp, on this PC .I
just cannot figure it out. No PoP Up controls will do the job. So I
figured somebody out there is a lot more qualified than I. Please
respond,
 here is the operating/platform of my pc, thought it might help.
                             Flamekeeper/the Preacher


Logfile of HijackThis v1.99.1
Scan saved at 11:06:16 PM, on 2/17/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Norton Internet Security\ISSVC.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Softex\OmniPass\Omniserv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\System32\Tablet.exe
C:\Program Files\Softex\OmniPass\OPXPApp.exe
C:\WINDOWS\Explorer.EXE
C:\windows\system\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Common Files\Logitech\QCDriver\LVCOMS.EXE
C:\Program Files\Logitech\ImageStudio\LogiTray.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\WINDOWS\LTMSG.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\AdStatus Service\AdStatServ.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\WORDsearch 7\ZipScript.exe
C:\Program Files\AdStatus Service\AdStatKeep.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpomau08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\Updates from HP\137903\Program\BackWeb-137903.exe
C:\Program Files\interMute\SpamSubtract\SpamSubtract.exe
C:\NavPress\ZIPscrpt.exe
C:\Program Files\America Online 9.0a\waol.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoFXM08.exe
C:\Program Files\America Online 9.0a\shellmon.exe
C:\Program Files\Common Files\Aol\aoltpspd.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\Temporary Directory 1 for
hijackthis[1].zip\HijackThis.exe
C:\Program Files\Messenger\msmsgs.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://us8.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL
= http://srch-us8.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr/*http://www.yahoo.com/ext/search/search.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.iwantsearch.com/to.php?ID1=457&ID2=22720648&ID3=33721634547&ID4=1&ID5={7EC5C836-F51F-44E7-9233-B14D136A7782}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr/*http://www.yahoo.com/ext/search/search.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://red.clientapps.yahoo.com/customize/ie/defaults/stp/ymsgr*http://my.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr/*http://www.yahoo.com
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {021BB032-80A8-4FB6-B3D5-CF27B1553B95} -
C:\WINDOWS\mslagent\4b_1,0,1,0_mslagent.dll (file missing)
O2 - BHO: Yahoo! Companion BHO -
{02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program
Files\Yahoo!\Common\ycomp5_2_3_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
- C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Norton Internet Security -
{9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common
Files\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} -
C:\Program Files\Norton Internet Security\Norton
AntiVirus\NavShExt.dll
O3 - Toolbar: hp toolkit - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} -
C:\HP\EXPLOREBAR\HPTOOLKT.DLL
O3 - Toolbar: &Yahoo! Companion -
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program
Files\Yahoo!\Common\ycomp5_2_3_0.dll
O3 - Toolbar: 3DNA Toolbar - {2ECB7FB2-0333-416F-92FD-4904AD49252B} -
C:\WINDOWS\system32\3DNATO~1.DLL
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} -
C:\Program Files\AOL Toolbar\toolbar.dll
O3 - Toolbar: (no name) - {0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - (no file)
O3 - Toolbar: Norton Internet Security -
{0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common
Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus -
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton
Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [CamMonitor] c:\Program
Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] c:\Program
Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common
Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE
C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Common
Files\Logitech\QCDriver\LVCOMS.EXE
O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program
Files\Logitech\ImageStudio\ISStart.exe
O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program
Files\Logitech\ImageStudio\LogiTray.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common
Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program
Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [AOL Spyware Protection]
"C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [Pure Networks Port Magic]
"C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [LTMSG] LTMSG.exe 7
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [AdStatus Service] C:\Program Files\AdStatus
Service\AdStatServ.exe
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop
Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program
Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Instant Access] rundll32.exe EGDACCESS_1057.dll,InstantAccess
O4 - HKCU\..\Run: [ZipScript] C:\Program Files\WORDsearch 7\ZipScript.exe
O4 - Startup: spamsubtract.lnk = C:\Program
Files\interMute\SpamSubtract\SpamSubtract.exe
O4 - Startup: ZIPscript.lnk = C:\NavPress\ZIPscrpt.exe
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program
Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: America Online Tray Icon.lnk = C:\Program
Files\America Online 9.0a\aoltray.exe
O4 - Global Startup: hp officejet 4100 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program
Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
Office\Office10\OSA.EXE
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Quicken Scheduled Updates.lnk = C:\Program
Files\Quicken\bagent.exe
O4 - Global Startup: Updates from HP.lnk = C:\Program Files\Updates
from HP\137903\Program\BackWeb-137903.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program
Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: Yahoo! Dictionary - file:///C:\Program
Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! Search - file:///C:\Program
Files\Yahoo!\Common/ycsrch.htm
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD}
- C:\Program Files\Yahoo!\Messenger\yhexbmes0411.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger -
{4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program
Files\Yahoo!\Messenger\yhexbmes0411.dll
O9 - Extra button: AOL Toolbar -
{4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL
Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar -
{4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL
Toolbar\toolbar.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683}
- C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program
Files\Messenger\msmsgs.exe
O12 - Plugin for .pdf: C:\Program Files\Internet Explorer\PLUGINS\nppdf32.dll
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {01FE8D0A-51AD-459B-B62B-85E135128B32} (DD_v4.DDv4) -
http://www.drivershq.com/DD_v4.CAB
O16 - DPF: {26D73573-F1B3-48C9-A989-E6CE071957A1} -
http://akamai.downloadv3.com/binaries/EGDAccess/EGDACCESS_1057_XP.cab
O16 - DPF: {469C7080-8EC8-43A6-AD97-45848113743C} -
http://akamai.downloadv3.com/binaries/IA/nethv32_EN_XP.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj
Class) - http://aolcc.aol.com/computercheckup/qdiagcc.cab
O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class)
- http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yse/ymmapi_416.dll
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo
Class) - http://www.symantec.com/techsupp/activedata/SymAData.cab
O16 - DPF: {E04EAE82-14AD-41CB-BF5A-45556ABB8347} (WebCoachDownload
Class) - http://esupport.aol.com/help/engine/aolcinst.cab
O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj
Class) - https://www-secure.symantec.com/techsupp/activedata/ActiveData.cab
O16 - DPF: {F72BC3F0-6C20-4793-9DDA-258589D8A907} -
http://akamai.downloadv3.com/binaries/IA/netslv32_EN_XP.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{D079F4AE-A4CB-4804-9390-5DC68CEDFC6A}:
NameServer = 205.188.146.145
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: OPXPGina - C:\Program Files\Softex\OmniPass\opxpgina.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online,
Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown
owner - C:\Program Files\Common Files\AOL\AOL Spyware
Protection\\aolserv.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec
Corporation - C:\Program Files\Common Files\Symantec
Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation
- C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec
Corporation - C:\Program Files\Common Files\Symantec
Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec
Corporation - C:\Program Files\Common Files\Symantec
Shared\ccSetMgr.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program
Files\Norton Internet Security\ISSVC.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) -
Symantec Corporation - C:\Program Files\Norton Internet
Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA
Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Softex OmniPass Service (omniserv) - Unknown owner -
C:\Program Files\Softex\OmniPass\Omniserv.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program
Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec
Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec
Corporation - C:\Program Files\Common Files\Symantec
Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation -
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program
Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: TabletService - Wacom Technology, Corp. -
C:\WINDOWS\System32\Tablet.exe
Answer  
Subject: Re: Ending pop ups from zipzappromos
Answered By: siliconsamurai-ga on 26 Feb 2005 08:23 PST
 
Hi, thank you for submitting your question to Answers.Google, I hope I
can provide the information you are seeking.

There are several aspects to the answer. First, if you haven?t tried
it already, IE 6.0 has pop up blocking, perhaps you haven?t enabled it
or don?t have it turned high enough. I know you say that pop-up
blockers won't work but you may not have tried all the options so I
want to outline those steps first.

Go to the browser's Tools pull-down menu, select Pop-up Blocker, and
then click Pop-up Blocker Settings. (There is also an FAQ link at the
bottom of that dialog screen.)

Select the High setting in the box near the bottom of the dialog box. 

"If you want to see pop-ups that are blocked when you have this
setting turned on, hold down the CTRL key while the window opens."
(Microsoft help)

That is the extreme setting which is supposed to stop virtually everything.

If you have tried every blocking tool and still have the problem then
you either have spyware on your system launching the popup and need to
follow my directions below on removing spyware, or have somehow
approved content from that site (not necessarily intentionally.)

Tools, Pop-up Blocker, Pop-up Blocker Settings will display Web
Addresses to allow, simply Remove the offending address. You may need
to remove everything you don?t recognize.

Another setting to alter or verify is:
Tools, Internet Options, Security.
Then look in the various zones to see if you can locate the offending
site and modify the settings appropriately.

As a long-term solution you can also download firefox, which has
superior ad-blocking and popup-blocking features to Internet Explorer.

Whether or not you do that, you should load one or more anti-spyware
programs which should clean out what amounts to an infection.

You can load Lavasoft?s free Ad-Aware scanner on your system and run
it periodically. I visited the site you specified in your question
just to see how virulent the popup windows are and I didn?t get
?infected? using the full 1.0 version of the Firefox browser.

Nor did I experience any popup ads of any sort so I conclude the using
Firefox would eliminate your problem, especially in conjunction with a
good spyware scanner such as Ad-Aware. The major benefit of this
solution is that it is entirely free.

A secondary benefit is that it doesn?t require any updates or detailed
fiddling with Internet Explorer which can make other sites act
differently.

Google search term: lavasoft download
http://www.lavasoftusa.com/support/download/

Google search Term: Microsoft antispyware download
http://www.microsoft.com/downloads/details.aspx?FamilyID=321cd7a2-6a57-4c57-a8bd-dbf62eda9671&displaylang=en

You can also try the free Google toolbar which has some excellent
pop-up blocking tools.

Toolbar.gooogle.com


Thank you again for turning to Answers.Google for help. I should
probably mention that I have written reviews of both the Ad-Aware and
the Microsoft AntiSpyware software and determined that the Microsoft
program probably isn?t worth the cost (which is also free at this
time.)

Clarification of Answer by siliconsamurai-ga on 26 Feb 2005 08:37 PST
If the latest version of ad-aware doesn't clean out the infection,
check out the detailed information at:

http://www.windowsbbs.com/showthread.php?t=40764

but you should try my suggestions first because ad-aware is updated
regularly, even the free version and, it it works, that's the simplest
solution after altering IE settings.

google search term: "zipzapromos" spyware

You might also want to check out 
http://tools.zerosrealm.com/killbox.zip

Clarification of Answer by siliconsamurai-ga on 05 Mar 2005 06:39 PST
I don?t know if you?ve tried everything else I recommended or if you
still have the problem, but here are some additional links and
information.

AdStatComm.dll
AdStatKeep.exe
AdStatServ.exe 
Appear to be running and may be the problem.

http://www.superadblocker.com/spywaredisplay.html?id=2057

Have you disabled System Restore and are you running in Safe Mode?

If you don?t disable System Restore, any problems you remove may just
get loaded right back into your system.

Look in Start, MyComputer, Properties, System Restore or Start,
Control Panel, System, System Properties, System Restore and check
?turn off system restore,? if you are comfortable doing this,
otherwise see this site for specific directions on disabling and
re-enabling system restore

http://support.microsoft.com/default.aspx?scid=kb;en-us;310405

Safe Mode
http://www.virusthreatcenter.com/page.aspx?pageId=13

Safe mode will disable internet access.

Windows XP users should try to use the System Configuration Utility
before rebooting.

Probably the easiest way to start this is to simply open the Start,
Help tab and search for System Configuration Utility, then run it from
there. This also gives you easy access to information about the SCU.

You must be logged on as system administrator to use this tool.

Only if that fails, shutdown and power off the system then reboot and
use the F8 key ? this must be done just after BIOS loads and that
isn?t obvious so you will probably need to experiment. HINT: make a
note of approximately how long it took to get F8 to work. This time
will remain nearly the same each time.

Lavasoft Ad-Adaware does not kill adstat but there is information in this forum

http://www.lavasoftsupport.com/index.php?showtopic=57820

In that discussion I found that we had all ignored the simplest
solution of all, just use the Windows remove program tool.

Look in control panel > add/remove programs for "Adstatus Service"

Apparently that doesn?t work for everyone but give it a try.


I found Kilbox again

http://www.downloads.subratam.org/KillBox.zip

Copy or unzip Killbox to your Desktop (Do not run from the download site)

You can also run
http://www.safer-networking.org/en/index.html

Also, there is a pretty good free pop-up blocker at

http://www.kephyr.com/misc/promo/stpl/index.phtml?source=bassindex

Please let me know if these don't do the job, whether you have system
restore turned off and whether you have tried these from Safe Mode.

Request for Answer Clarification by flamekeeper-ga on 05 Mar 2005 13:26 PST
Bro's, I could'nt wait, I had to find a answer for the problem fast
and I had a fellow from Windows BBS.COM fix it for me , right off the
bat ,he had the answer to my problem, It took 5 days of research of my
PC, But the POP UP'S are gone and I have more SPYWARE/Protection on my
PC than the yellow pages. I feel confortable. I thank you very much
for trying to help,
                       God Bless-The Preacher , Flamekeeper

Clarification of Answer by siliconsamurai-ga on 06 Mar 2005 04:42 PST
ok
Comments  
Subject: Re: Ending pop ups from zipzappromos
From: siliconsamurai-ga on 26 Feb 2005 08:48 PST
 
HMMM, Kilbox appears to be gone, let me know if the other solutions
don't work and I'll provide more links.
Subject: Re: Ending pop ups from zipzappromos
From: mister2u-ga on 26 Feb 2005 09:26 PST
 
Here is an analysis of you hi-jack this log file
http://hijackthis.de/logfiles/f56a1d20a63216439b9b02b964fef01a.html
It will only be here for 3 days.You can DIY here
http://hijackthis.de/index.php?langselect=english  after that,
Subject: Re: Ending pop ups from zipzappromos
From: mister2u-ga on 26 Feb 2005 09:38 PST
 
I think Adstatkeep is the culprit,you can find out how to remove it here 
http://forums.thatcomputerguy.us/lofiversion/index.php/t11530.html
Subject: Re: Ending pop ups from zipzappromos
From: flamekeeper-ga on 28 Feb 2005 12:33 PST
 
I have run spybot,everything OK, Run Adware got rid of one ,did'nt
really know which ones to delete, Still no luck, Microsoft spyware
too,no luck.All of the above.
help can anybody help me,LOL Boy. these are relentless,,Preacher
Subject: Re: Ending pop ups from zipzappromos
From: mark_bett-ga on 03 Mar 2005 22:02 PST
 
You may also want to try editing your HOSTS file in your ETC directory:
C:\WINDOWS\system32\drivers\etc

add the entry

www.zipzappromos.com  127.0.0.1

this will tell your computer to look to itself for the webpage instead
of actually looking to the real zipzappromos.com website.
Subject: Re: Ending pop ups from zipzappromos
From: siliconsamurai-ga on 04 Mar 2005 00:22 PST
 
flamekeeper, did you go through the extensive procedure discussed at
http://www.windowsbbs.com/showthread.php?t=40764?
Subject: Re: Ending pop ups from zipzappromos
From: siliconsamurai-ga on 05 Mar 2005 06:43 PST
 
flamekeeper Have you simply tried to remove adstatus in the control panel?

Please see my additional clarification above.
Subject: Re: Ending pop ups from zipzappromos
From: siliconsamurai-ga on 05 Mar 2005 06:56 PST
 
If all else fails, RegRun is expensive but it will remove adstatkeep.exe.

http://www.greatis.com/appdata/d/a/adstatkeep.exe.htm

I didn't want to recommend it because of the price until you had tried
the free alternatives and because I can't be certain adstat is the
cause of the zipzappromos problem.  Of course adstat is malware and
should be removed anyway.
Subject: Re: Ending pop ups from zipzappromos
From: flamekeeper-ga on 05 Mar 2005 13:27 PST
 
Request for Answer Clarification by flamekeeper-ga on 05 Mar 2005 13:26 PST 
Bro's, I could'nt wait, I had to find a answer for the problem fast
and I had a fellow from Windows BBS.COM fix it for me , right off the
bat ,he had the answer to my problem, It took 5 days of research of my
PC, But the POP UP'S are gone and I have more SPYWARE/Protection on my
PC than the yellow pages. I feel confortable. I thank you very much
for trying to help,
                       God Bless-The Preacher , Flamekeeper

Important Disclaimer: Answers and comments provided on Google Answers are general information, and are not intended to substitute for informed professional medical, psychiatric, psychological, tax, legal, investment, accounting, or other professional advice. Google does not endorse, and expressly disclaims liability for any product, manufacturer, distributor, service or service provider mentioned or any opinion expressed in answers or comments. Please read carefully the Google Answers Terms of Service.

If you feel that you have found inappropriate content, please let us know by emailing us at answers-support@google.com with the question ID listed above. Thank you.
Search Google Answers for
Google Answers  


Google Home - Answers FAQ - Terms of Service - Privacy Policy