Anyone else get this virus

Joined
Sep 5, 2007
Messages
1,790
Today while I was reading post in this forum my computer picked up a virus. I was using Internet Explorer. This thing had locked out Internet explorer and even my basic computer file that lets me clean out unwanted disk data. It is associated with some sorse that is trying to sell me virus protection. Im using fixfox now but my computer files are still locked . Anyone else seen this or can give me the link to a program I can install to try to get rid of it. It acts alot like a trojan horse. thanks
 

JustJason

Vice Admiral
Joined
Aug 27, 2007
Messages
5,321
Re: Anyone else get this virus

They need to make a law that says anybody who writes a virus/malware will be tried and if found guilty shot behind the courthouse, no appeals.
 

PiratePast40

Lieutenant Commander
Joined
Mar 21, 2009
Messages
1,734
Re: Anyone else get this virus

Running a scan in safe mode should be a priority. If you're lucky the executable file for the virus will be tagged by a file in the startup menu which won't start in safe mode.

I haven't found a single anti-virus program that will catch everything. Microsoft security essentials is decent as is malwarebytes. Spyware doctor has worked well for me.
 

DECK SWABBER 58

Lieutenant Commander
Joined
Aug 14, 2009
Messages
1,913
Re: Anyone else get this virus

It is associated with some sorse that is trying to sell me virus protection. It acts alot like a trojan horse. thanks
I had one similar. After trying various things had to erase the hard drive.
What is it called?
 

Dave Barnett

Petty Officer 1st Class
Joined
Jan 16, 2010
Messages
282
Re: Anyone else get this virus

I had the same thing last week. It was a malicious one too. It locked up all my files and wouldn't let any programs run. I did manage to run them by re-booting and opening the program as soon as the computer booted. It took the virus a little while to load. Each individual program had to be run at boot up. The bad part is Malwarebytes and my anti virus both missed it. I finally had to format and start over. Try Malwarebytes if you are able. It is a great program and is free. I downloaded mine from C-net www.downloads.com In the past it has most always caught and deleted these malware/virus junk. Another program I have used with good results is Spybot it also is free and available from downloads.com A good anti virus I have used is Avast and is free their website is www.avast.com hope this helps. God Bless. Dave
 

j_martin

Admiral
Joined
Sep 22, 2006
Messages
7,474
Re: Anyone else get this virus

There's a few of them that do that. We use Kaspersky at work, so I run a rescue disk, which is Kaspersky mounted on a BartPE preinstall environment.

Kaspersky finds the virus, supplies a name, and deletes the files. I keep track of the actual file names, and look up with another computer the trojan for manual removal instructions.

Once that's done, I boot into safe mode. If it won't go, I boot back into Bart and copy the registry hives from the backup directory into the windows hive directory.

Back to safe mode. Once there I manually clean up the registry, looking for the previously recorded files, and other names gotten from the write-up looked up on the web earlier. Then I'll check the run sections of the registry. For good measure I'll run HijackThis and look for anything unusual.

Usually that'll get it fixed, but it's a hassle. I call it job security.

hope it helps
John
 

Summer Fun

Banned
Joined
Mar 2, 2002
Messages
2,251
Re: Anyone else get this virus

Today while I was reading post in this forum my computer picked up a virus.
I just caught this , Thats impossible from just reading a post on here !!.
You must of had to clicked on a link in that thread ??.
 

xxxflhrci

Chief Petty Officer
Joined
Jun 14, 2008
Messages
637
Re: Anyone else get this virus

The OL got a very similar virus on my desktop a from a link of Facebook a few months ago. I fought it for 3 days and couldn't get rid of it. It locked up my hard drive and started eating free space. I finally got all the files I wanted off and put in a new hard drive....In my case, it was the easiest and most logical repair...My old drive was 8 years old and getting noisy. A new one twice as big was only 50 bucks.
 

Cofe

Lieutenant Commander
Joined
Apr 23, 2009
Messages
1,883
Re: Anyone else get this virus

I gave up using Internet Explorer years ago because of security issues. Use Firefox or Chrome browsers, and enable the pop up blocker security.
Pop ups should be outlawed!

Here are some free removal tools if you know the name of the virus, worm, or whatever else is ailing your comp. http://www.symantec.com/business/security_response/removaltools.jsp
 

mike243

Petty Officer 2nd Class
Joined
Apr 3, 2009
Messages
123
Re: Anyone else get this virus

i got the same bug earlier this year,i was using firefox & my wife was looking at motels for a 25th wedding aniverssary trip,it kept shutting the computer down & then restarting,i finaly got the program manager pulled up & stopped the files from loading & then wiped it out & reformatted :( ,i would put the first 10 bullets into the folks that make these virus but to be honest the ones selling the protection have to be linked at some level to the crooks :eek: ,
 

j_martin

Admiral
Joined
Sep 22, 2006
Messages
7,474
Re: Anyone else get this virus

At work I've found that a little training goes a long way. Here it is in a nutshell.

Usually, any reasonable firewall-antivirus running on your machine will keep an intruder from directly installing a trojan. They do it by using you to install it.

They send a popup that appears to be a windows message that your computer is infected. It asks if you want to remove it. The popup includes a red x in the corner that appears like a normal windows close icon. It isn't.

Clicking anywhere on the popup, including the close x, will then download the trojan software, which usually installs itself as a run service, and also has multiple hooks to detect an uninstall and reinstall itself.

To get around this, first you need to be very suspect of any "emergency" message.

To kill the install disguised as an emergency message, hit CNTRL-ALT-DELETE which opens the windows task manager. Go to applications, and kill the browser that's running. Usually it's already so deeply hooked that everything running in the browser will have to go down.

If you are not aware of your surroundings and fall for the false message, then the cleanup usually involves rocket science.
 

mrz333

Cadet
Joined
May 1, 2010
Messages
21
Re: Anyone else get this virus

Boot in safe mode. Use disk clean up to delete all cookies, history, temp files etc. This will erase your passwords so make sure you have them. You'll need to re-enter these to get emails and log on to this site as an example. On line banking numbers and passwords will also be deleted so have them handy the next time you access them. Run your updated virus protection program.

You'll next need to run a registry cleaner, like RegCure. This removes all the Com/activex, shared dll's stuff which is why your browser has been hijacked and why you're having trouble getting into security programs and sites.

Spyware will not find these. Using a free or non-subscription spyware will also not necessarily get you up to date databases. We are always one step behind the hackers that plant this stuff so a prompt and up to date response is needed.

Software like RegCure, when used a few times a week or when things seem to be running slow, will, in a few minutes, get rid of a lot of problems. This is not a substitute for virus removal only a detection device that corrects settings affected by a virus or spyware after the incident.

A good spyware not only has up to date spyware, malware and virus detection but has a privacy and shredder apps. After all is done defrag your drive and bleach free space. This takes hours. Then do another FULL virus scan. You should be good to go.

You can reduce pop-ups by upping the security settings on your browser. In some cases this restricts access to popups you do want so you'll need to pick and choose the ones you want.

Lastly, backup backup backup backup. I like the mirror image backup of Vista to an external hard drive, or, just back up files to Carbonite or something like that. Make sure you're backing up a clean drive or files. If things get really out of hand or your drive fails, an extenal drive mirror will get you back up and running like nothing happened.
 

dolluper

Captain
Joined
Jul 19, 2004
Messages
3,904
Re: Anyone else get this virus

Have you tried system restore....back to a date before the virus
Start>accessories>systems tools
After she's fixed pop out your windows verison install disc and install a recovery consuel [sp}
Everyone should have the recovery consuel on their putters from new but of coarse NOT
it's one of micro's secrets,or computer retaillers secrets....keep everyone dumb
 

Tig

Chief Petty Officer
Joined
Sep 20, 2009
Messages
416
Re: Anyone else get this virus

It is associated with some source that is trying to sell me virus protection.
I went 12 rounds with one that looked like that last month on my niece's computer. I'm not sure I ever found the real beast that was throwing assorted crap at me. Clean it up, wait a day and something new would pop up. Many many scanners, manually hunting files and registry entries were only temporary fixes. Long story short, that was the first time ever that I could not kill a virus without having to restore the operating system.
 

mrz333

Cadet
Joined
May 1, 2010
Messages
21
Re: Anyone else get this virus

Unless you clean up the registry they'll just keep coming back.
 

waterinthefuel

Commander
Joined
Nov 15, 2003
Messages
2,728
Re: Anyone else get this virus

Software like RegCure, when used a few times a week or when things seem to be running slow, will, in a few minutes, get rid of a lot of problems. This is not a substitute for virus removal only a detection device that corrects settings affected by a virus or spyware after the incident.

I would avoid regcure like the plague.

http://www.squidoo.com/is-regcure-a-scam
 
Top