Results 1 to 30 of 30

Thread: Opps.... got a little virus

  1. #1
    Join Date
    Dec 2005
    Location
    Massachusetts
    Posts
    7,379

    Opps.... got a little virus

    I was trying to get a keygen for a DVD rip program and it was late and I wasnt thinking about a virus at the time and now that i download it every 15 seconds i have that little window tray icon popping up and saying "Your Computer is Infected, Spyware dectected" But it is not letting me turn on my firewall or anything, I've ran AVG and Adaware a few times and havnt caught the bug yet. Any help would be appreciated.

  2. #2
    Join Date
    Dec 2005
    Location
    /V\ANCHESTER uk
    Posts
    4,548
    did i cause this.

  3. #3
    Join Date
    Dec 2005
    Location
    Massachusetts
    Posts
    7,379
    Quote Originally Posted by spencer
    did i cause this.
    yeah you did you bum now fix it! haha

  4. #4
    Join Date
    Jan 2006
    Location
    Houston
    Posts
    4,225
    yah ...most key places have tons of virus's and porn ...go fig


    use microsoft's adware program and run it in safe mode.

  5. #5
    Join Date
    Dec 2005
    Location
    Massachusetts
    Posts
    7,379
    how do i get microsoft's adware?

  6. #6
    Join Date
    Jan 2006
    Location
    Houston
    Posts
    4,225

  7. #7
    Join Date
    Dec 2005
    Location
    Massachusetts
    Posts
    7,379
    thanks alot man i knew i could count on you guys, im gonna try it now

  8. #8
    Join Date
    Dec 2005
    Location
    Massachusetts
    Posts
    7,379
    its only letting me download the plug in not the actual program?

  9. #9
    Join Date
    Dec 2005
    Location
    Massachusetts
    Posts
    7,379
    nevermind i got it

  10. #10
    Join Date
    Dec 2005
    Location
    /V\ANCHESTER uk
    Posts
    4,548
    Quote Originally Posted by SVTMuscle
    yeah you did you bum now fix it! haha
    lmao hey, less of the bum, its not my fault no one wants to employ me. haha
    Last edited by spencer; 04-13-2006 at 11:51 AM.

  11. #11
    Join Date
    Nov 2004
    Location
    Sweden
    Posts
    1,592
    bro, did it change ur desktop aswell? i mean when u got the virus?

  12. #12
    Join Date
    Nov 2004
    Location
    Sweden
    Posts
    1,592
    Go and have your computer scanned HERE (http://uk.trendmicro-europe.com/cons...all_launch.php)

    Then, go and read both these threads by RBS. Follow all the instructions exactly.

    How to remove Trojans and its ilk! (www.techspot.com/vb/topic30213.html) and How to remove Begin2search / coolwebsearch and other nasties. (www.techspot.com/vb/topic17297.html)

    Then see. How to post your Hijackthis log-file as an ATTACHMENT. (www.techspot.com/vb/topic19133.html)

    Regards Howard :wave: :wave:
    this removes a virus that sounds exacly like urs, try it, hope it works

  13. #13
    Join Date
    Dec 2005
    Location
    Massachusetts
    Posts
    7,379





    I found that kind of funny haha

  14. #14
    Join Date
    Nov 2004
    Location
    Sweden
    Posts
    1,592
    hahaha good ol microsoft eh

  15. #15
    Join Date
    Dec 2005
    Location
    Massachusetts
    Posts
    7,379
    "Your computer is running fine"
    "Your computer is infected"


    Its like a slut denying she has an STD haha

  16. #16
    Join Date
    Jan 2006
    Location
    Houston
    Posts
    4,225
    lol sorry...mebe that's not the right proggie... looks like it... i'll let ya know when i get home ... my work computer has serious web limitations sorry.

  17. #17
    Join Date
    Jan 2006
    Location
    Houston
    Posts
    4,225
    apparently you have the newer version of it... i havn't actually tried that one ... sorry it didnt' help :|

  18. #18
    Join Date
    Dec 2005
    Location
    Massachusetts
    Posts
    7,379
    yeah it didnt work haha... umm will a System Restore work?

  19. #19
    Join Date
    Jul 2005
    Location
    St. Paul, MN
    Posts
    1,475
    don't forget safe mode

  20. #20
    Join Date
    Dec 2005
    Location
    Massachusetts
    Posts
    7,379
    Yeah I did safe mode, didnt make a differnece

  21. #21
    run this free virus scan from trendmicro
    http://housecall.trendmicro.com/

    then run your avg antivus scan

    The following free scanners will remove 99% of known Spyware. Ad-aware, Spybot - Search and Destroy and Windows Defender should be updated weekly. CCleaner (cleaner button - windows tab only) should always be run first to save on scanning time. Tough to remove Spyware requires a more thorough scan in Safe Mode.

    http://www.ccleaner.com/downloadbuilds.asp
    CCleaner
    CCleaner (Crap Cleaner) removes unused and temporary files from your system, including cleaning the registry.

    Installation Warning - The latest Standard version of CCleaner bundles the useless Yahoo Toolbar. Do not install this! Get the Basic or Slim versions instead. If you accidentally do install it, simply use add/remove in the windows control panel to remove it immediately.

    Prefetch Warning - Recently CCleaner has added a performance slowing cleaning option, uncheck "Old Prefetch Data" and NEVER select this option for cleaning as it will increase application and Windows load times. Cleaning the Prefetch folder is a Myth and actually hurts performance. I have contacted the makers of CCleaner unsuccessfully and have had subsequent topics brought up on their forums locked or deleted. For such a great program to turn a blind eye towards its users is unacceptable. I look forward to the makers of CCleaner to rectify this situation. Anyone who claims this should be cleaned for ANY reason does not understand how Windows Prefetching works. Read the source for irrefutable proof and then test it yourself. - Source

    Instructions - Download the Basic or Slim versions and install. Go to the "Windows" tab, uncheck "Old Prefetch Data" then select "Run Cleaner". Next select the "Applications" tab and select "Run Cleaner". Finally select the "Issues" button and select "Scan for Issues" when it finishes scanning select "Fix Selected Issues", then "Fix All Selected Issues".

    Notes - The Issues button is a registry cleaner and does not need to be run often. A good time to run it is after applications have been uninstalled.

    http://www.trendmicro.com/cwshredder/
    CWShredder 2.x
    CoolWebSearch is one of the worst Spyware infections. The latest variants use a Hidden DLL that is installed by taking over the file system's data stream and stealthing the DLL file. Some AntiVirus programs will detect and clean it from memory but as soon as your system is rebooted and another Internet connection made, it will reinstall itself. CWShredder 2.x removes this variant.

    Instructions - Download, close all web browsers and run, select "Fix" and "OK". After it is finished select "Next" to see if you were infected. Run CWShredder again to confirm all known variants of CoolWebSearch have been removed.

    http://fileforum.betanews.com/detail...al/965718306/1
    Ad-aware SE
    Application to scan and remove Spyware, Adware, hijackers and other malicious software.

    Instructions - Install, Update and Run. Select "Start", "Perform Full System Scan", "Next" and Remove all Spyware items it finds. To select all items for removal right-click on any of the found items and left-click "Select All". Tough to remove Spyware requires a more thorough scan. Reboot your computer into safe mode by pressing the F8 key down during boot up and selecting "Safe Mode" from the Windows Advanced Options menu. In safe mode do another Ad-aware scan and remove the remaining Spyware infections.

    http://www.safer-networking.org/en/mirrors/index.html
    Spybot - Search and Destroy
    Application to scan and remove Spyware, Adware, hijackers and other malicious software.

    Instructions - Install Spybot (Do not install the Teatimer), select "Update", "Search For Updates", check the box next to each update and then select "Download Updates" Then select "Search and Destroy", "Check for problems" and after scanning is complete "Fix selected problems". Tough to remove Spyware requires a more thorough scan. Reboot your computer into safe mode by pressing the F8 key down during boot up and selecting "Safe Mode" from the Windows Advanced Options menu. In safe mode do another Spybot scan and remove the remaining Spyware infections.

    Update - Spybot by default now ignores certain products such as New.Net and Sidestep for no good reason. New.Net compromises the WinSock stack by routing all your DNS queries through the NewDotNet.DLL. To enable detection go to "Settings", "Ignore products", "All products" Tab, right click on "Product", left-click on "Deselect all". Then run another scan.

    http://www.microsoft.com/downloads/d...displaylang=en
    Microsoft Windows Defender
    "Microsoft Windows Defender (Formerly Microsoft AntiSpyware) is a free program that helps protect your computer against security threats caused by Spyware and other unwanted software. It features Real-Time Protection, a monitoring system that recommends actions against Spyware when it's detected."

    Instructions - All updates happen through Windows Updates and are automatic. Select "Scan Options", then "Full Scan". Tough to remove Spyware requires a more thorough scan. Reboot your computer into safe mode by pressing the F8 key down during boot up and selecting "Safe Mode" from the Windows Advanced Options menu. In safe mode do another scan and remove the remaining Spyware infections. Windows Defender also includes Real Time Spyware Protection, if you wish to disable this for performance reasons, go to "Tools", "General Settings", scroll down to "Real-time protection options" and uncheck "Turn on real-time protection (recommended)".

    Spybot - Search and Destroy
    Protect Yourself before threats find their way into your system.

    Instructions - Select "Immunize" and then the "Immunize" button to block common Spyware programs from installing themselves in the future.

    http://fileforum.betanews.com/detail...r/1056258294/1
    SpywareBlaster
    Application to prevent the installation of Active-X based Spyware.

    Instructions - Install, select "Updates", "Check for Updates". Then select "Protection" and finally "Enable All Protection".
    Last edited by operationgetbig; 04-18-2006 at 02:35 PM.

  22. #22
    Join Date
    Sep 2005
    Posts
    3,137
    yea system restore shoulda done that shit if not ur ****ed

  23. #23
    Join Date
    Dec 2005
    Location
    Massachusetts
    Posts
    7,379
    thanks guys but im all set i kicked that virus' ass Chuck Norris style

  24. #24
    Quote Originally Posted by operationgetbig
    run this free virus scan from trendmicro
    http://housecall.trendmicro.com/

    then run your avg antivus scan

    The following free scanners will remove 99% of known Spyware. Ad-aware, Spybot - Search and Destroy and Windows Defender should be updated weekly. CCleaner (cleaner button - windows tab only) should always be run first to save on scanning time. Tough to remove Spyware requires a more thorough scan in Safe Mode.

    http://www.ccleaner.com/downloadbuilds.asp
    CCleaner
    CCleaner (Crap Cleaner) removes unused and temporary files from your system, including cleaning the registry.

    Installation Warning - The latest Standard version of CCleaner bundles the useless Yahoo Toolbar. Do not install this! Get the Basic or Slim versions instead. If you accidentally do install it, simply use add/remove in the windows control panel to remove it immediately.

    Prefetch Warning - Recently CCleaner has added a performance slowing cleaning option, uncheck "Old Prefetch Data" and NEVER select this option for cleaning as it will increase application and Windows load times. Cleaning the Prefetch folder is a Myth and actually hurts performance. I have contacted the makers of CCleaner unsuccessfully and have had subsequent topics brought up on their forums locked or deleted. For such a great program to turn a blind eye towards its users is unacceptable. I look forward to the makers of CCleaner to rectify this situation. Anyone who claims this should be cleaned for ANY reason does not understand how Windows Prefetching works. Read the source for irrefutable proof and then test it yourself. - Source

    Instructions - Download the Basic or Slim versions and install. Go to the "Windows" tab, uncheck "Old Prefetch Data" then select "Run Cleaner". Next select the "Applications" tab and select "Run Cleaner". Finally select the "Issues" button and select "Scan for Issues" when it finishes scanning select "Fix Selected Issues", then "Fix All Selected Issues".

    Notes - The Issues button is a registry cleaner and does not need to be run often. A good time to run it is after applications have been uninstalled.

    http://www.trendmicro.com/cwshredder/
    CWShredder 2.x
    CoolWebSearch is one of the worst Spyware infections. The latest variants use a Hidden DLL that is installed by taking over the file system's data stream and stealthing the DLL file. Some AntiVirus programs will detect and clean it from memory but as soon as your system is rebooted and another Internet connection made, it will reinstall itself. CWShredder 2.x removes this variant.

    Instructions - Download, close all web browsers and run, select "Fix" and "OK". After it is finished select "Next" to see if you were infected. Run CWShredder again to confirm all known variants of CoolWebSearch have been removed.

    http://fileforum.betanews.com/detail...al/965718306/1
    Ad-aware SE
    Application to scan and remove Spyware, Adware, hijackers and other malicious software.

    Instructions - Install, Update and Run. Select "Start", "Perform Full System Scan", "Next" and Remove all Spyware items it finds. To select all items for removal right-click on any of the found items and left-click "Select All". Tough to remove Spyware requires a more thorough scan. Reboot your computer into safe mode by pressing the F8 key down during boot up and selecting "Safe Mode" from the Windows Advanced Options menu. In safe mode do another Ad-aware scan and remove the remaining Spyware infections.

    http://www.safer-networking.org/en/mirrors/index.html
    Spybot - Search and Destroy
    Application to scan and remove Spyware, Adware, hijackers and other malicious software.

    Instructions - Install Spybot (Do not install the Teatimer), select "Update", "Search For Updates", check the box next to each update and then select "Download Updates" Then select "Search and Destroy", "Check for problems" and after scanning is complete "Fix selected problems". Tough to remove Spyware requires a more thorough scan. Reboot your computer into safe mode by pressing the F8 key down during boot up and selecting "Safe Mode" from the Windows Advanced Options menu. In safe mode do another Spybot scan and remove the remaining Spyware infections.

    Update - Spybot by default now ignores certain products such as New.Net and Sidestep for no good reason. New.Net compromises the WinSock stack by routing all your DNS queries through the NewDotNet.DLL. To enable detection go to "Settings", "Ignore products", "All products" Tab, right click on "Product", left-click on "Deselect all". Then run another scan.

    http://www.microsoft.com/downloads/d...displaylang=en
    Microsoft Windows Defender
    "Microsoft Windows Defender (Formerly Microsoft AntiSpyware) is a free program that helps protect your computer against security threats caused by Spyware and other unwanted software. It features Real-Time Protection, a monitoring system that recommends actions against Spyware when it's detected."

    Instructions - All updates happen through Windows Updates and are automatic. Select "Scan Options", then "Full Scan". Tough to remove Spyware requires a more thorough scan. Reboot your computer into safe mode by pressing the F8 key down during boot up and selecting "Safe Mode" from the Windows Advanced Options menu. In safe mode do another scan and remove the remaining Spyware infections. Windows Defender also includes Real Time Spyware Protection, if you wish to disable this for performance reasons, go to "Tools", "General Settings", scroll down to "Real-time protection options" and uncheck "Turn on real-time protection (recommended)".

    Spybot - Search and Destroy
    Protect Yourself before threats find their way into your system.

    Instructions - Select "Immunize" and then the "Immunize" button to block common Spyware programs from installing themselves in the future.

    http://fileforum.betanews.com/detail...r/1056258294/1
    SpywareBlaster
    Application to prevent the installation of Active-X based Spyware.

    Instructions - Install, select "Updates", "Check for Updates". Then select "Protection" and finally "Enable All Protection".


    Do exactly what was recommended here. I guarantee you have more than one virus. That is the new Microsoft Windows Defender, replaced the AntiSpyware.

  25. #25
    Oh and the program telling you that you are infected is a virus/malware. Be sure to go into Add/Remove programs and uninstall unwanted programs.

    Also install www.ewido.com and check out www.castlecops.com for specific infections.

  26. #26
    Join Date
    May 2006
    Location
    Who knows?
    Posts
    388
    It's so much easier just to reformat. I've gotten it down to a science. I have all my programs and such installed again in an hour and 15 minutes flat. Yea, or just make a backup. Norton Ghost can be helpful too in the future. It will allow you to restore your computer to any previous time. So if you know you got a virus or whatever, you can restore your OS to like an hour before you got it. Just a suggestion. Good luck with it.
    -John

  27. #27
    Join Date
    Aug 2005
    Location
    australia
    Posts
    169
    also somthing i found that really helps:

    goto either windows defender and click on the "browse software tab"

    or control panels "browse software"

    look at startup programs and currently running programs. Its fairly easy to see the prgrams that should'ent be there they have no developer or brand and are not digitally signed. if ur not sure if the file is used go to google and type in the file name 9times out of 10 its spyware . i found myself contantly removing stuff and viruses when simply deley=ting some of these programs fixed it .

  28. #28
    Join Date
    May 2006
    Location
    Ubiquitous
    Posts
    6

    Protect this time!

    **thanks guys but im all set i kicked that virus' ass Chuck Norris style**

    Good to hear you took care of it bro, hope you got it all.

    *FOR ALL MEMBERS;

    Hey I work for a software company that sells to all sizes of businesses, and we have an awesome security product Fortinet. This ..ish scans and blocks EVERY virus, spyware, malware, greyware, worm, trojan,....well you get the idea, EVERYTHING. Most Antivirus software, Norton, Mcafee, Symantec usually do a decent job, but most often only scan email, but not web traffic(http), and almost no company scans and protects IM and P2P traffic. Fortinet does it all, Antivirus, spyware, intrusion prevention, spam, web filtering, and it is an awesome firewall as well. Companies pay big bucks for this, we just did a deal with a television station here for $120K! I just put a personal version of this on my home computer called ForiClient, it costs me about $20 a year.

    Not to sound like an advertisement, I can get this for people on this board for my cost if you want ~$20 a year, they sell it online for $70 and it is about to jump to $80. This does me no good toward quotas or goals but I have ruined a computer or two myself with virus and hate to see that for anyone.

    Their website; http://www.fortinet.com/products/forticlient.html

    If anyone is interested just PM me.

    ....just like Pops used to say, it's all good if you make it safe for the wood. (I think he was talking about something different but I think it can translate over to this situation.)

  29. #29
    Join Date
    Jul 2005
    Location
    St. Paul, MN
    Posts
    1,475
    i'll stick with avg, or you i can find a demo of your program and see how softICE and myself would mix

  30. #30
    Join Date
    May 2006
    Location
    Ubiquitous
    Posts
    6
    I think they do have an eval on the website I listed above but if I am not mistaken it is set up like a lead generation thing for Fortinet's sales people; you enter your business name, how many employees etc. But do give it a shot if you like, the link is on the bottom right of the page. Good luck.

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •