Page 1 of 2 12 LastLast
Results 1 to 10 of 17

Thread: Tech Advice Needed - Malware Problem

Hybrid View

Previous Post Previous Post   Next Post Next Post
  1. #1
    Join Date
    2nd Jan 2008
    Location
    NSW (southwest metro)
    Posts
    3,760

    Default

    Ben, make sure you download and run Anti-Malware from Malwarebytes. Here's a direct link to the program -> http://majorgeeks.com/downloadget.ph...d909666f809b26

    You do not need to purchase this program to remove the virus. And the only diff between this and the full version is scheduling scans.

  2. #2
    Join Date
    24th Nov 2009
    Location
    1984
    Posts
    8,244

    Default

    Thanks mate. I'm guessing that it's best to download it to an external HD or USB device instead of the PC that may be infected?

    Also, (noob question here) should I run it in 'safe mode'? I didn't do the system restore in safe mode and it seemed to work.

    EDIT: I've also read that some variations of this virus won't allow you to run a system restore. I'm assuming that since I was able to, it should be fixed
    Last edited by 5FDP; 21st April 2010 at 12:23 PM.
    New Acquisitions:
    TR Astrotrain, Skullsmasher, & Hardhead
    Scouting For:
    G1 Boxes & Cardbacks
    - - - - - - - - - - - - - - -
    [COLLECTION] [CREATIVE] [MK COLLECTION]



  3. #3
    MV75's Avatar
    MV75 is offline Rank 6 - Dedicated Member
    Join Date
    27th Dec 2007
    Location
    Brisbane, QLD
    Posts
    2,879

    Default

    Everyone get this:

    http://www.microsoft.com/security_essentials/

    DO IT DO IT DO IT.

    I've had it with 3rd party anti virus. The only version of this one is free, there is no $ motive.

    As for the ops problem, what was it exactly? Wasn't that vista defender virus was it? My nieghbour had that nightmare a while ago.

    Quote Originally Posted by 5FDP View Post
    Thanks mate. I'm guessing that it's best to download it to an external HD or USB device instead of the PC that may be infected?

    Also, (noob question here) should I run it in 'safe mode'? I didn't do the system restore in safe mode and it seemed to work.

    EDIT: I've also read that some variations of this virus won't allow you to run a system restore. I'm assuming that since I was able to, it should be fixed
    Gotta get to know what exactly has hijacked your system first. You'll find they wipe out being able to system restore and to go to anti virus websites, so it's hard to fix the problem after the fact.
    Code:
    O o 
      _
     / --------------------------------
    |      IMMA FIRIN MA LAZAR!!!
     \_--------------------------------

  4. #4
    Join Date
    24th Nov 2009
    Location
    1984
    Posts
    8,244

    Default

    Quote Originally Posted by MV75 View Post
    Can I run this in conjuction with my other anti-virus s/w?

    Quote Originally Posted by MV75 View Post
    As for the ops problem, what was it exactly? Wasn't that vista defender virus was it? My nieghbour had that nightmare a while ago.
    It's looks something like this (amongst a million and one other pop-ups)...



    When you click on the 'remove' button, it asks for your details to upgrade to the newest version.

    This is what I think I have (or a variation of) >
    http://www.microsoft.com/security/po...ernetAntivirus
    New Acquisitions:
    TR Astrotrain, Skullsmasher, & Hardhead
    Scouting For:
    G1 Boxes & Cardbacks
    - - - - - - - - - - - - - - -
    [COLLECTION] [CREATIVE] [MK COLLECTION]



  5. #5
    MV75's Avatar
    MV75 is offline Rank 6 - Dedicated Member
    Join Date
    27th Dec 2007
    Location
    Brisbane, QLD
    Posts
    2,879

    Default

    Quote Originally Posted by 5FDP View Post
    Can I run this in conjuction with my other anti-virus s/w?
    No, uninstall your other stuff. Dunno. The MSE does anti vir, firewall, malware, etc. It does it all.

    Besides, why would you want to?


    It's looks something like this (amongst a million and one other pop-ups)...

    [IMG]http://img.photobucket.com/albums/v374/vishaal_here/Antivirus_1.jpg

    When you click on the 'remove' button, it asks for your details to upgrade to the newest version.

    This is what I think I have (or a variation of) >
    http://www.microsoft.com/security/po...ernetAntivirus
    Yea, looks like a hijack. You don't get that shit accidently.

    http://www.bleepingcomputer.com/viru...irus-1-removal

    Personally, I'd just nuke the site from orbit, (reinstall windows), to be sure. But I assume you have a crapton of photos and other crap you've never backed up, so you can't.
    Code:
    O o 
      _
     / --------------------------------
    |      IMMA FIRIN MA LAZAR!!!
     \_--------------------------------

  6. #6
    Join Date
    2nd Jan 2008
    Location
    NSW (southwest metro)
    Posts
    3,760

    Default

    Follow the link provided by MV75, which eventuates to Malwarebytes Anti-Malware anyway~

    You can download that from the link I gave in the first post from the infected computer and it doesn't need to be in safe mode to run. Just make sure you follow the instruction to restart after running a FULL SCAN

  7. #7
    Join Date
    24th Nov 2009
    Location
    1984
    Posts
    8,244

    Default

    Cheers guys! You're both awesome

    One last question - so considering all of the above suggestions you've given me, I take it that the system restore that I ran didn't do jack?
    New Acquisitions:
    TR Astrotrain, Skullsmasher, & Hardhead
    Scouting For:
    G1 Boxes & Cardbacks
    - - - - - - - - - - - - - - -
    [COLLECTION] [CREATIVE] [MK COLLECTION]



  8. #8
    Join Date
    7th Jan 2010
    Location
    Sydney
    Posts
    1,710

    Default

    Quote Originally Posted by 5FDP View Post
    Can I run this in conjuction with my other anti-virus s/w?
    You can, but I wouldn't recommend it.
    You should only run one anti-virus on your system as they dont play nice with each other.
    Quote Originally Posted by 5FDP View Post
    Also, (noob question here) should I run it in 'safe mode'?
    If your system has been breached then running scans, system restores and such from safe mode is often your best bet as safe mode limits file and registry access (less chance of the virus spreading).
    Quote Originally Posted by 5FDP View Post
    I guess I just want to make sure they are removed altogether avoiding having to do a complete re-install.
    I would say get SpyBotSD and run it a few times to check the registry for nastys.
    That program coupled with your anti-virus and windows user account control (which is on by default) should protect you.

  9. #9
    Join Date
    2nd Jan 2008
    Location
    NSW (southwest metro)
    Posts
    3,760

    Default

    Quote Originally Posted by 5FDP View Post
    Nope, it's not popping up anymore. From what I have read elsewhere, a system restore doesn't necessarily remove the infected files but rather they are just 'dormant' and can still cause issues at a later stage.

    I guess I just want to make sure they are removed altogether avoiding having to do a complete re-install.
    After running malwarebytes, run a FULL AV scan (I'm certain at this point there isn't any other bug)

    Quote Originally Posted by DarkHyren View Post
    I would say get SpyBotSD and run it a few times to check the registry for nastys.
    However if you wanted to be sure there's nothing else, you can run spybotSD. I wouldn't rely on it too heavily as the scan engine is quite similar. Also you may find that spybotSD is now rather resource intensive (not like the version they had a couple of years ago)

    After which if you think your restore points are infected and don't need it anymore, you can delete it by running a disk cleanup (start, accessories, system tools), 2nd tab provides you an option to delete all restore points except the last
    Last edited by Saintly; 22nd April 2010 at 10:22 AM. Reason: wrong word

  10. #10
    Join Date
    7th Jan 2010
    Location
    Sydney
    Posts
    1,710

    Default

    Quote Originally Posted by Saintly View Post
    After which if you think your restore points are infected and don't need it anymore, you can delete it by running a disk cleanup (start, accessories, system tools), 2nd tab provides you an option to delete all restore points except the last
    Personally I find that if you don't need any of the restore points and you think they might be infected your best bet is to turn them off as it wipes them completely.
    If you do actually have something hiding in the restore points, deleting all but the last one might not do anything as it could just be hiding in the last one.
    Then you can run your scans in safe mode and afterwards if all is clean you can always turn system restore back on.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •