New Posts  All Forums:Forum Nav:

virus

post #1 of 19
Thread Starter 
I hope this is the area to post this....Ok here's the deal..my brothers laptop had a virus on it where a fake anti virus software would come up and start scanning. This virus also disabled McAfee wasnt able to get it running. Went under system configurator (run=msconfig). Enabled it again but when i restarted the computer it still would work. It would show the icon in the lower right corner then once you click on it, it disapeers. I took out the HDD put it on a docking station plugged it into mine ran Kaspersky it found 6 viruses after it finished ran it 2 more times to make sure everything was ok. Put it back into the laptop. Still same problem McAfee wont run the fake antivirus is gone but still won't allow connection to the internet. Any Ideas what to do next???confused.gif
Harley
(13 items)
 
  
CPUMotherboardGraphicsRAM
i7-920 ASUS P6T V2 EVGA GTX570 Corsair Dominator 12gb 
Hard DriveOptical DriveOSPower
OCZ 90gb Vertex 2/Hitachi 1tb/Velociraptor 300gb ASUS DVDrw/CDrw Windows 7 Ultimate 64-bit Corsair HX850w 
CaseMouseMouse Pad
CM690 NVIDIA Edition Logitech G9x Steelseries 
  hide details  
Reply
Harley
(13 items)
 
  
CPUMotherboardGraphicsRAM
i7-920 ASUS P6T V2 EVGA GTX570 Corsair Dominator 12gb 
Hard DriveOptical DriveOSPower
OCZ 90gb Vertex 2/Hitachi 1tb/Velociraptor 300gb ASUS DVDrw/CDrw Windows 7 Ultimate 64-bit Corsair HX850w 
CaseMouseMouse Pad
CM690 NVIDIA Edition Logitech G9x Steelseries 
  hide details  
Reply
post #2 of 19
Download, update, and run malwarebytes and avira free.
post #3 of 19
I just fixed a laptop with that problem about 5 days ago for someone. McAfee never detected anything during the scan when the laptop was infected. I have concluded that McAfee is useless.

I simply uninstalled McAfee and installed Microsoft Security Essentials for them. Free from the Microsoft website and better than McAfee ever was.
    
CPUMotherboardGraphicsRAM
Intel i7 4720HQ Razer nVidia GTX 970m Integrated RAM 
Hard DriveOSMonitorKeyboard
M.2 SSD Windows 10 Professional Integrated Integrated 
MouseMouse PadAudio
Trackpad/Razer Mamba/Razer Orochi Corsair (portable)/Steelseries (Desk) Integrated Speakers 
  hide details  
Reply
    
CPUMotherboardGraphicsRAM
Intel i7 4720HQ Razer nVidia GTX 970m Integrated RAM 
Hard DriveOSMonitorKeyboard
M.2 SSD Windows 10 Professional Integrated Integrated 
MouseMouse PadAudio
Trackpad/Razer Mamba/Razer Orochi Corsair (portable)/Steelseries (Desk) Integrated Speakers 
  hide details  
Reply
post #4 of 19
Download antimalwarebytes, update it, go into safe mode, do full scan. Should be all good tongue.gif.

Thats what I do anyway.
    
CPUMotherboardGraphicsRAM
Intel i3 540 P7H55M-Pro XFX 6770 OCZ Platinum 
Hard DriveHard DriveHard DriveOptical Drive
OCZ Vertex 2E  Samsung F4 Maxtor DiamondMax 23 LG Super-multi Drive 
CoolingOSMonitorKeyboard
Coolermaster Hyper212+ Microsoft Windows 7 Professional 64-bit LG W2361V Razer Tarantula 
PowerCaseMouseMouse Pad
Corsair CX430v2 Coolermaster Elite 335 Logitech MX518 Roccat Taito 
AudioAudioAudio
Asus Xonar DG Logitech Z523 2.1 Speakers Sennheiser PC350 Headset 
  hide details  
Reply
    
CPUMotherboardGraphicsRAM
Intel i3 540 P7H55M-Pro XFX 6770 OCZ Platinum 
Hard DriveHard DriveHard DriveOptical Drive
OCZ Vertex 2E  Samsung F4 Maxtor DiamondMax 23 LG Super-multi Drive 
CoolingOSMonitorKeyboard
Coolermaster Hyper212+ Microsoft Windows 7 Professional 64-bit LG W2361V Razer Tarantula 
PowerCaseMouseMouse Pad
Corsair CX430v2 Coolermaster Elite 335 Logitech MX518 Roccat Taito 
AudioAudioAudio
Asus Xonar DG Logitech Z523 2.1 Speakers Sennheiser PC350 Headset 
  hide details  
Reply
post #5 of 19
download rkill to disable any malware processes in use. Then use malwarebytes and superantispyware
 
Work Rig
(11 items)
 
 
CPUMotherboardGraphicsRAM
i7-2700k @ 4.5GHz  Asus P8Z68-V/Gen3 Asus GTX 1070 Strix OC G.Skill Ripjaws 16GB 
Hard DriveCoolingOSKeyboard
Crucial M4 128GB + 1TB F3 + Crucial M500 256GB Noctua NH-D15S Windows 10 Pro Cooler Master Novatouch TKL 
PowerCaseMouseMouse Pad
Cooler Master V1000 600T SE Roccat Kone XTD Steel Series 9HD 
CPUMotherboardGraphicsRAM
i7 950 Rampage III Gene 2x EVGA GTX 680 SLI 24gb HyperX 
Hard DriveCoolingOSMonitor
960GB Crucial M500 Intel Stock Windows 7 64bit Enterprise HP ZR2440w + Z24i 
KeyboardPowerCase
Ducky Brown Antec TP-750 Antec Sonata 
  hide details  
Reply
 
Work Rig
(11 items)
 
 
CPUMotherboardGraphicsRAM
i7-2700k @ 4.5GHz  Asus P8Z68-V/Gen3 Asus GTX 1070 Strix OC G.Skill Ripjaws 16GB 
Hard DriveCoolingOSKeyboard
Crucial M4 128GB + 1TB F3 + Crucial M500 256GB Noctua NH-D15S Windows 10 Pro Cooler Master Novatouch TKL 
PowerCaseMouseMouse Pad
Cooler Master V1000 600T SE Roccat Kone XTD Steel Series 9HD 
CPUMotherboardGraphicsRAM
i7 950 Rampage III Gene 2x EVGA GTX 680 SLI 24gb HyperX 
Hard DriveCoolingOSMonitor
960GB Crucial M500 Intel Stock Windows 7 64bit Enterprise HP ZR2440w + Z24i 
KeyboardPowerCase
Ducky Brown Antec TP-750 Antec Sonata 
  hide details  
Reply
post #6 of 19
Everything these people said.

However, sometimes you need to disable a proxy in your settings.

Go into internet explorer.
Hit ALT to bring up the menu bar.
Click on Tools. Click on Internet Options.
Click on the tab at the top that says "Connections".
Then there is a button near the bottom that says "Lan Settings", click on it.
Bottom half of that window it says "Proxy settings".
Delete everything there and remove both the check boxes.

That should disable any default proxy for your computer. Most viruses do not set proxy settings for Firefox or chrome separately.

Edit - The flavor of virus you have on your computer is classified as "rogue antispyware/anyivirus virus/spyware.
Windfall
(13 items)
 
  
CPUMotherboardGraphicsRAM
Q9550 Asus P5E3 Premium Wifi XFX HD Radeon 6950 SuperTalent 
Hard DriveOptical DriveOSMonitor
WADFALS1001 WD Black Edition 1TB x 2 Raid 0 DVD-RW DIE VISTA, Using W7 24Inch 1920x1200 
PowerCase
Corsair 750TX Corsair 800D 
  hide details  
Reply
Windfall
(13 items)
 
  
CPUMotherboardGraphicsRAM
Q9550 Asus P5E3 Premium Wifi XFX HD Radeon 6950 SuperTalent 
Hard DriveOptical DriveOSMonitor
WADFALS1001 WD Black Edition 1TB x 2 Raid 0 DVD-RW DIE VISTA, Using W7 24Inch 1920x1200 
PowerCase
Corsair 750TX Corsair 800D 
  hide details  
Reply
post #7 of 19
Thread Starter 
ok did the rkill right away warnings were popping up so something is running on it doing a malwarebytes scan as we type...I'll update once it completers thanks for all your help.
Harley
(13 items)
 
  
CPUMotherboardGraphicsRAM
i7-920 ASUS P6T V2 EVGA GTX570 Corsair Dominator 12gb 
Hard DriveOptical DriveOSPower
OCZ 90gb Vertex 2/Hitachi 1tb/Velociraptor 300gb ASUS DVDrw/CDrw Windows 7 Ultimate 64-bit Corsair HX850w 
CaseMouseMouse Pad
CM690 NVIDIA Edition Logitech G9x Steelseries 
  hide details  
Reply
Harley
(13 items)
 
  
CPUMotherboardGraphicsRAM
i7-920 ASUS P6T V2 EVGA GTX570 Corsair Dominator 12gb 
Hard DriveOptical DriveOSPower
OCZ 90gb Vertex 2/Hitachi 1tb/Velociraptor 300gb ASUS DVDrw/CDrw Windows 7 Ultimate 64-bit Corsair HX850w 
CaseMouseMouse Pad
CM690 NVIDIA Edition Logitech G9x Steelseries 
  hide details  
Reply
post #8 of 19
the trick with rkill is if you do get pop ups from the malware alerting you to it (malware will try to close rkill), leave the warning window from the malware open, and then run rkill again with the pop up up. If you close the malware window warning rkill will not work.
Quote:
These warnings are just fake alerts by the malware that has hijacked your computer trying to protect itself. Two methods that you can try to get past this and allow RKill to run are:

* When you receive the warning message, leave the message on the screen and try running RKill again.
* If that does not work, just keep launching RKill until it catches and stays up long enough to kill the malware


Yes, both methods are not elegant, but they will work if you keep trying. Unfortunately, there is not much better I can do at this point for some malware that are very tenacious at killing all processes that run.

On a final note, when you download and run RKill, certain anti-virus programs may state that the program is a security risk. This is because some of the tools used by RKill can be used for good or bad, though the programs themselves are perfectly harmless, and most anti-virus programs just lump them into the bad category. I assure you we are using them only for good purposes :thumbsup:

Edited by ez12a - 1/17/11 at 1:31pm
 
Work Rig
(11 items)
 
 
CPUMotherboardGraphicsRAM
i7-2700k @ 4.5GHz  Asus P8Z68-V/Gen3 Asus GTX 1070 Strix OC G.Skill Ripjaws 16GB 
Hard DriveCoolingOSKeyboard
Crucial M4 128GB + 1TB F3 + Crucial M500 256GB Noctua NH-D15S Windows 10 Pro Cooler Master Novatouch TKL 
PowerCaseMouseMouse Pad
Cooler Master V1000 600T SE Roccat Kone XTD Steel Series 9HD 
CPUMotherboardGraphicsRAM
i7 950 Rampage III Gene 2x EVGA GTX 680 SLI 24gb HyperX 
Hard DriveCoolingOSMonitor
960GB Crucial M500 Intel Stock Windows 7 64bit Enterprise HP ZR2440w + Z24i 
KeyboardPowerCase
Ducky Brown Antec TP-750 Antec Sonata 
  hide details  
Reply
 
Work Rig
(11 items)
 
 
CPUMotherboardGraphicsRAM
i7-2700k @ 4.5GHz  Asus P8Z68-V/Gen3 Asus GTX 1070 Strix OC G.Skill Ripjaws 16GB 
Hard DriveCoolingOSKeyboard
Crucial M4 128GB + 1TB F3 + Crucial M500 256GB Noctua NH-D15S Windows 10 Pro Cooler Master Novatouch TKL 
PowerCaseMouseMouse Pad
Cooler Master V1000 600T SE Roccat Kone XTD Steel Series 9HD 
CPUMotherboardGraphicsRAM
i7 950 Rampage III Gene 2x EVGA GTX 680 SLI 24gb HyperX 
Hard DriveCoolingOSMonitor
960GB Crucial M500 Intel Stock Windows 7 64bit Enterprise HP ZR2440w + Z24i 
KeyboardPowerCase
Ducky Brown Antec TP-750 Antec Sonata 
  hide details  
Reply
post #9 of 19
+1 on rkil and malwarebytes but if that doesn't do the trick, combofix most certainly should.
Workhorse
(13 items)
 
  
CPUMotherboardGraphicsRAM
965BE C3 Gigabyte 880GA-UD3H Onboard 8gb G.Skill Ripjaws DDR3 
Hard DriveOSMonitorPower
Crucial C300 64gb / 1tb WD1002FAEX Windows 7 Pro x64 HP 2311x Seasonic X-650 Gold 
CaseMouse
Lian Li A-05NB Intellimouse Explorer 3.0 
  hide details  
Reply
Workhorse
(13 items)
 
  
CPUMotherboardGraphicsRAM
965BE C3 Gigabyte 880GA-UD3H Onboard 8gb G.Skill Ripjaws DDR3 
Hard DriveOSMonitorPower
Crucial C300 64gb / 1tb WD1002FAEX Windows 7 Pro x64 HP 2311x Seasonic X-650 Gold 
CaseMouse
Lian Li A-05NB Intellimouse Explorer 3.0 
  hide details  
Reply
post #10 of 19
Quote:
Originally Posted by XAslanX;12045958 
Download, update, and run malwarebytes and avira free.

alsan long time no see!

avira is bestmode. used it, love it.
3/4 BeastMode
(14 items)
 
  
CPUMotherboardGraphicsRAM
Phenom II 1090T 4.0ghz Asus Crosshair IV Exteme evga gtx 980 16gb G.Skill Ripjaws 
Hard DriveCoolingOSMonitor
samsung evo ssd corsair h70 win 10 3x 27' ACER LEDs 5760x1080 
KeyboardPowerCaseMouse
razer blackwidow chroma Silverstone Decathlon 1200W corsair obsidian  razer deathadder 
Mouse Pad
chroma firefly 
  hide details  
Reply
3/4 BeastMode
(14 items)
 
  
CPUMotherboardGraphicsRAM
Phenom II 1090T 4.0ghz Asus Crosshair IV Exteme evga gtx 980 16gb G.Skill Ripjaws 
Hard DriveCoolingOSMonitor
samsung evo ssd corsair h70 win 10 3x 27' ACER LEDs 5760x1080 
KeyboardPowerCaseMouse
razer blackwidow chroma Silverstone Decathlon 1200W corsair obsidian  razer deathadder 
Mouse Pad
chroma firefly 
  hide details  
Reply
New Posts  All Forums:Forum Nav:
  Return Home
  Back to Forum: Networking & Security