Home News Forum Articles
  Welcome back Join CF
You are here You are here: Home | Forum | PC completely virus-ridden!


You are currently viewing our boards as a guest which gives you limited access to view most of the discussions, articles and other free features. By joining our Virgin Media community you will have full access to all discussions, be able to view and post threads, communicate privately with other members (PM), respond to polls, upload your own images/photos, and access many other special features. Registration is fast, simple and absolutely free so please join our community today.


Welcome to Cable Forum
Go Back   Cable Forum > Computers & IT > Security & Virus Discussion

PC completely virus-ridden!
Reply
 
Thread Tools
Old 10-04-2008, 12:41   #16
 
 
Join Date: Nov 2003
Location: Leeds - the dog house
Age: 31
Services: Email me for a current price list
Posts: 8,095
greencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kings
greencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kingsgreencreeper is a king among kings
Send a message via Yahoo to greencreeper
Re: PC completely virus-ridden!

Hmmm. I've encountered Vundo before. Used a tool to get rid of it. Might still have a copy on my PC at work. Will check.

First off, I run Windows Update - patch the PC up to date. And install, immunise, and run Spybot. Otherwise you're just jelly juggling. Next I remove the girlware (free pretty desktop wallpapers, shopping toolbar thingy...) from Add/Remove Programs. Full virus scan. I use Spybot's tools to look at the BHO/ActiveX objects and delete any I don't like the look of. If they magically re-appear, I know it's bad. I also look at the startup list - Spybot shows you all the available startup locations (there are a lot). I go after dodgy DLLs (those mentioned in the startup list and BHO/ActiveX objects) using Processor Explorer and Movefile. See here - http://technet.microsoft.com/en-gb/s.../bb545046.aspx

It's always a major job - can take hours. If you have a backup of your data, a rebuild is likely to be quicker and guarantees the PC is clean.
__________________
Consistency is the last refuge of the unimaginative [Wilde]
greencreeper is offline   Reply With Quote
Old 02-05-2008, 11:02   #17
cf.member
 
Join Date: Nov 2007
Posts: 2
CableWoman is on a distinguished road
Re: PC completely virus-ridden!

Hey Nugg!!

I was talking with someone in Symantec (I had a short question) and I commented your case as well.

1st you need to be sure the virus defs are up to date. You can download the latest version using Intelligent Updater from http://www.symantec.com/avcenter/dow...es/US-N95.html.
Then go to the safe mode and run "navw32 -a" from Start menu->Run. This will launch full system scan again. In case you find any infection, put down which threats are present.
You can trust Norton when it says it was resolved. If you don't feel confident you can always check the load points for those threats to see they are gone.

Hope everything is ok
Fennella
CableWoman is offline   Reply With Quote
Old 02-05-2008, 11:24   #18
That damn leprechaun!!
 
Nugget's Avatar
 
Join Date: Sep 2003
Location: Just behind your eyes...
Age: 32
Services: Will provides gags for cash
Posts: 8,384
Nugget is a Tri-Star memberNugget is a Tri-Star memberNugget is a Tri-Star memberNugget is a Tri-Star memberNugget is a Tri-Star member
Nugget is a Tri-Star memberNugget is a Tri-Star memberNugget is a Tri-Star member
Re: PC completely virus-ridden!

Quote:
Originally Posted by CableWoman View Post
Hey Nugg!!

I was talking with someone in Symantec (I had a short question) and I commented your case as well.

1st you need to be sure the virus defs are up to date. You can download the latest version using Intelligent Updater from http://www.symantec.com/avcenter/dow...es/US-N95.html.
Then go to the safe mode and run "navw32 -a" from Start menu->Run. This will launch full system scan again. In case you find any infection, put down which threats are present.
You can trust Norton when it says it was resolved. If you don't feel confident you can always check the load points for those threats to see they are gone.

Hope everything is ok
Fennella
Thanks for that

I've actually reformatted it now, and everything's sorted. I've also got rid of Norton, 'cos it just went mad, and allowed everything in by the end of it...
__________________
The doctor told me that BOTH my eyes were lazy! And that's why it was the best summer ever.

Never knowingly sober
Nugget is offline   Reply With Quote
Old 02-05-2008, 11:27   #19
Cable Forum Team
 
David F's Avatar
 
Join Date: Feb 2005
Location: midlands
Age: 38
Services: Mummy that man was nasty to me!!!
Posts: 17,167
David F has an impressive sixpackDavid F has an impressive sixpack
David F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpackDavid F has an impressive sixpack
Send a message via AIM to David F Send a message via MSN to David F Send a message via Yahoo to David F
Re: PC completely virus-ridden!

Quote:
Originally Posted by CableWoman View Post
Hey Nugg!!

I was talking with someone in Symantec (I had a short question) and I commented your case as well.

1st you need to be sure the virus defs are up to date. You can download the latest version using Intelligent Updater from http://www.symantec.com/avcenter/dow...es/US-N95.html.
Then go to the safe mode and run "navw32 -a" from Start menu->Run. This will launch full system scan again. In case you find any infection, put down which threats are present.
You can trust Norton when it says it was resolved. If you don't feel confident you can always check the load points for those threats to see they are gone.

Hope everything is ok
Fennella
Dont spose you asked them why their product is poop ?
__________________
zinglebarb was here
The blade twists you feel it burn it hurts so bad! how many more times in this life before it kills
David F is offline   Reply With Quote
Old 02-05-2008, 16:01   #20
cf.member
 
Join Date: May 2008
Posts: 16
GoldenBoar is an unknown quantity at this point
Re: PC completely virus-ridden!

Quote:
Originally Posted by Nugget View Post
Thanks for that

I've actually reformatted it now, and everything's sorted. I've also got rid of Norton, 'cos it just went mad, and allowed everything in by the end of it...
Good decision. Norton is garbage. Stick to the freeware.

Anti-Virus - pick one only
AVG
Avast
Avira

Anti-spyware
Spybot Search & Destroy (basic real-time)(avoid TeaTimer)
Adaware
A-squared
Spyware Terminator (Real-time)
SUPERAntiSpyware
Spyware Doctor (basic real-time)(If you're PC can run it)

Personal Firewall
Comodo

---------- Post added at 15:01 ---------- Previous post was at 14:55 ----------

Quote:
Originally Posted by greencreeper View Post
Hmmm. I've encountered Vundo before. Used a tool to get rid of it. Might still have a copy on my PC at work. Will check.

First off, I run Windows Update - patch the PC up to date. And install, immunise, and run Spybot. Otherwise you're just jelly juggling. Next I remove the girlware (free pretty desktop wallpapers, shopping toolbar thingy...) from Add/Remove Programs. Full virus scan. I use Spybot's tools to look at the BHO/ActiveX objects and delete any I don't like the look of. If they magically re-appear, I know it's bad. I also look at the startup list - Spybot shows you all the available startup locations (there are a lot). I go after dodgy DLLs (those mentioned in the startup list and BHO/ActiveX objects) using Processor Explorer and Movefile. See here - http://technet.microsoft.com/en-gb/s.../bb545046.aspx

It's always a major job - can take hours. If you have a backup of your data, a rebuild is likely to be quicker and guarantees the PC is clean.
Here are the name of the Vundo Removal tools
VundoFix.exe
VirtumundoBeGone.exe

and smitfraud removal tools,

SmitfraudFix.exe - anti-virus may complain, it's a false positive though.
smitRem.exe

another good removal tool is SDFix.exe
GoldenBoar is offline   Reply With Quote
Old 03-05-2008, 00:46   #21
That damn leprechaun!!
 
Nugget's Avatar
 
Join Date: Sep 2003
Location: Just behind your eyes...
Age: 32
Services: Will provides gags for cash
Posts: 8,384
Nugget is a Tri-Star memberNugget is a Tri-Star memberNugget is a Tri-Star memberNugget is a Tri-Star memberNugget is a Tri-Star member
Nugget is a Tri-Star memberNugget is a Tri-Star memberNugget is a Tri-Star member
Re: PC completely virus-ridden!

Quote:
Originally Posted by GoldenBoar View Post
Good decision. Norton is garbage. Stick to the freeware.

Anti-Virus - pick one only
AVG
Avast
Avira

Anti-spyware
Spybot Search & Destroy (basic real-time)(avoid TeaTimer)
Adaware
A-squared
Spyware Terminator (Real-time)
SUPERAntiSpyware
Spyware Doctor (basic real-time)(If you're PC can run it)

Personal Firewall
Comodo
M'eh, not bothered with that either - I've now got McAfee, which seems to be doing the tick (so far...) . I have downloaded Spybot, but I'm really not fussed about the rest of that - far too much hassle, and it'll get in the way of me doing stuff
__________________
The doctor told me that BOTH my eyes were lazy! And that's why it was the best summer ever.

Never knowingly sober
Nugget is offline   Reply With Quote
Old 03-05-2008, 12:04   #22
cf.addict
 
cleshe's Avatar
 
Join Date: Nov 2007
Location: stafford
Age: 70
Services: virgin 4Mbs ,now upgraded to 10Mbps
Posts: 204
cleshe is on a distinguished road
Re: PC completely virus-ridden!

There is some advice on the majorgeeks site that I have found helpful in the same circumstances.
I think this link should get you there.
http://forums.majorgeeks.com/showthread.php?t=35407
Unfortunately it's a long process, and not always successful. you could end up reformatting whatever you try.Good luck.

---------- Post added at 12:04 ---------- Previous post was at 11:56 ----------

Quote:
Originally Posted by Nugget View Post
M'eh, not bothered with that either - I've now got McAfee, which seems to be doing the tick (so far...) . I have downloaded Spybot, but I'm really not fussed about the rest of that - far too much hassle, and it'll get in the way of me doing stuff
Just an aside, but the one you've chosen didn't fare much better than Norton in the group tests run by PCPRO and PC Advisor.Kaspersky came top , followed by AVG free if I remember right
cleshe is offline   Reply With Quote
Old 03-05-2008, 23:07   #23
Duh !
 
Join Date: Jun 2003
Location: S Manchester
Age: 59
Posts: 1,678
basa is the helpful onebasa is the helpful one
basa is the helpful one
Re: PC completely virus-ridden!

Quote:
Originally Posted by GoldenBoar View Post
Good decision. Norton is garbage. Stick to the freeware.

Anti-Virus - pick one only
AVG
Avast
Avira

Anti-spyware
Spybot Search & Destroy (basic real-time)(avoid TeaTimer)
Adaware
A-squared
Spyware Terminator (Real-time)
SUPERAntiSpyware
Spyware Doctor (basic real-time)(If you're PC can run it)

Personal Firewall
Comodo

---------- Post added at 15:01 ---------- Previous post was at 14:55 ----------



Here are the name of the Vundo Removal tools
VundoFix.exe
VirtumundoBeGone.exe

and smitfraud removal tools,

SmitfraudFix.exe - anti-virus may complain, it's a false positive though.
smitRem.exe

another good removal tool is SDFix.exe
TBH IMO AVG ain't worth the time and you only really need Spybot and SUPERAntiSpyware, the rest are just bloat. AdAware and A-squared are rubbish now.

Oh and get SpywareBlaster on there as well. That and Spybot might have blocked a lot of those malware problems brought on by the virii.
__________________
Tone

Think outside the Fox

Last edited by basa; 03-05-2008 at 23:11.
basa is offline   Reply With Quote
Old 03-05-2008, 23:45   #24
Permanently Banned
 
Join Date: Aug 2007
Posts: 382
trevortt is on a distinguished road
Re: PC completely virus-ridden!

Quote:
Originally Posted by Nugget View Post
Hi Guys (and Gals!),

Having had Norton go completely mad last week and tell me that my PC had both the Downloader and Metajuan trojans, I ran a full scan and (I thought) cleared them.

Unfortunately, having switched on again last night, it again went mad, saying that those two were still there, and there was also one called Trojan.Vundo...

I turned off Sysetm Restore, put it into Safe Mode, and ran the scan again - 6 hours later, it told me that there were 13 (13!) viruses detected. Norton claims to have repaired them all, but I have to say I'm not 100% convinced. Before I either kick it around the room, or re-format it (which I also don't know how to do (), can anyone suggest anything else that I can do, seeing as I'm rapidly losing the will to live...

TIA
Norton is pants get Nod32 or AVG Free.
trevortt is offline   Reply With Quote
Old 04-05-2008, 00:14   #25
Cable Forum Team
 
Maggy J's Avatar
 
Join Date: Jun 2003
Location: between Portsmouth and Southampton.
Age: 55
Services: VM DTV,VM 1MB,VM Phone
Posts: 17,976
Maggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star member
Maggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star memberMaggy J is a Tri-Star member
Send a message via AIM to Maggy J Send a message via Yahoo to Maggy J
Re: PC completely virus-ridden!

I'm happy with NOD32...yes it's not free but it's not expensive and it does the job without being bloatware.
__________________
Prejudice is opinion without judgement...Voltaire.
Is still Incognitas at heart.
Maggy J is offline   Reply With Quote
Old 04-05-2008, 01:20   #26
Gibbering Idiot
 
G UK's Avatar
 
Join Date: May 2007
Location: NG17
Age: 25
Services: L TV, L BB, M Phone
Posts: 228
G UK is just really niceG UK is just really niceG UK is just really niceG UK is just really niceG UK is just really niceG UK is just really niceG UK is just really niceG UK is just really niceG UK is just really nice
Re: PC completely virus-ridden!

Kaspersky all the way here.
__________________
I think perhaps the most important problem is that we are trying to understand the fundamental workings of the universe via a language devised for telling one another when the best fruit is. Terry Pratchett
G UK is offline   Reply With Quote
Old 04-05-2008, 01:23   #27
Mal
We are watching...
 
Mal's Avatar
 
Join Date: Jun 2003
Location: Swinton
Age: 34
Services: Virgin Media
Posts: 7,755
Mal is a king among kings
Mal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kingsMal is a king among kings
Re: PC completely virus-ridden!

Quote:
Originally Posted by Incognitas View Post
I'm happy with NOD32...yes it's not free but it's not expensive and it does the job without being bloatware.
I agree, it does its job, without the bloat.
__________________
Moscow 21 May 2008
Mal is offline   Reply With Quote
Old 04-05-2008, 13:34   #28
A cats life for me.
 
joglynne's Avatar
 
Join Date: Feb 2007
Location: Manchester.
Services: V & V+ XL, V Phone & L BB
Posts: 2,613
joglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute star
joglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute starjoglynne is an absolute star
Re: PC completely virus-ridden!

My Kaspersky is coming to the end of it's free trial and rather than just go for the paid renewal I thought I would have a look at NOD32 as so many of the posters rate it.

I don't know if it's of any use to anyone else but I have found that there is currently a free 30 day trial on offer here
__________________
..................
..jo.....Help Cable Forum's City grow
joglynne is offline   Reply With Quote
Old 05-05-2008, 00:12   #29
cf.member
 
Join Date: Mar 2008
Posts: 51
TheBruce1 is an unknown quantity at this point
Re: PC completely virus-ridden!

Kaspersky 2009(V8) which is a TR at the moment and should be released sometime in June has been getting rave reviews, they have added new tools, but the footprint is smaller.

Quote:
Major Improvements in v8:
-NEW...HIPS
-NEW...Whitelisting Technology (whitelisting certain programs to automatically allow Kaspersky to decide whether an application can connect to the internet and perform specific activity... less user intervention and more user friendly... less popups and requests from PDM and firewall.
-NEW...Scanning of Vulnerabilities in installed programs (so you can update them to prevent the programs being "exploited" and malware being installed on your computer via them)
-NEW...Advanced Reporting Capabilities (more in depth reports of activity of your programs and more statistics)
-NEW...Virtual Keyboard (to prevent keyloggets logging keys, good to use when entering personal details/passwords)
-NEW...Database of malicious URLs (Alerting users about prolific malware hosting websites)
-NEW...System Restore Wizard (Help fix damage caused to the computer after an infection; restoring functionality)
-NEW...GUI
-IMPROVED...Speed of overall product components (More efficient and faster scanning and will not slow computer down as much as previous versions thanks to the rebuilt/improved antivirus engine.

Other Improvements:
-Enhanced PDM
-Improved Heuristics
-New Packer Detection (suspicious packer and multi-packer)
ScreenShots:
http://malwarecrawler.com/kaspersky/
__________________
Member of ASAP
Member of UNITE

I want nothing to do with Phorm, in anyway, shape or Phorm
TheBruce1 is offline   Reply With Quote
Old 05-05-2008, 00:22   #30
Permanently Banned
 
Join Date: Aug 2007
Posts: 382
trevortt is on a distinguished road
Re: PC completely virus-ridden!

Quote:
Originally Posted by joglynne View Post
My Kaspersky is coming to the end of it's free trial and rather than just go for the paid renewal I thought I would have a look at NOD32 as so many of the posters rate it.

I don't know if it's of any use to anyone else but I have found that there is currently a free 30 day trial on offer here
Aye, that's how i got to buy it..i took the 30 day trial and then bought it.
trevortt is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


All times are GMT +1. The time now is 10:43.


Links
Google
 
Web www.cableforum.co.uk


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.1.0
Copyright © 2003 - 2008, Cable Forum.
(s204569790.onlinehome.info)