Wikiposts
Search
Computer/Internet Issues & Troubleshooting Anyone with questions about the terribly complex world of computers or the internet should try here. NOT FOR REPORTING ISSUES WITH PPRuNe FORUMS! Please use the subforum "PPRuNe Problems or Queries."

´Security Tool´virus

Thread Tools
 
Search this Thread
 
Old 27th Feb 2011, 19:17
  #21 (permalink)  
 
Join Date: Mar 2001
Location: UK
Posts: 424
Received 0 Likes on 0 Posts
NT, If it is still there AVG isn't picking it up and everything (fingers crossed) seems back to normal?
The Claw is offline  
Old 27th Feb 2011, 19:30
  #22 (permalink)  
 
Join Date: Nov 2007
Location: Hoylake
Age: 50
Posts: 414
Likes: 0
Received 0 Likes on 0 Posts
AVG didnt pick it up for me either, sounds like you have a result though, is everything working at normal speed? if you have a few hours spare might be worth running the full service from microsoft, it defrags as well as find things that shouldnt be there.

Windows Live OneCare safety scanner: Free online tool for PC health and safety
Nearly There is offline  
Old 27th Feb 2011, 19:34
  #23 (permalink)  
 
Join Date: Nov 2010
Location: Sweden
Posts: 473
Received 159 Likes on 71 Posts
What's the name of this virus?
Avionker is offline  
Old 27th Feb 2011, 19:35
  #24 (permalink)  
 
Join Date: Nov 2007
Location: Hoylake
Age: 50
Posts: 414
Likes: 0
Received 0 Likes on 0 Posts
Spy Tool and/or Security Tool
Nearly There is offline  
Old 27th Feb 2011, 19:51
  #25 (permalink)  
 
Join Date: Nov 2010
Location: Sweden
Posts: 473
Received 159 Likes on 71 Posts
Oh ok, I got hit by this the other day:-

Encyclopedia entry: Rogue:Win32/FakePAV - Learn more about malware - Microsoft Malware Protection Center

As soon as it popped up on the screen I thought it looked "hooky", so I shut down my browser and started a scan. Microsoft security essentials cleared it no problems, so I guess it wasn't the same thing.
Avionker is offline  
Old 28th Feb 2011, 03:38
  #26 (permalink)  
 
Join Date: Mar 2001
Location: UK
Posts: 424
Received 0 Likes on 0 Posts
Nearly There, thanks a million for that link. My computer is now much faster!

That virus is definitely linked to Ebay, whilst browsing Ebay I had another attack only this time it was stopped by AVG.
The Claw is offline  
Old 28th Feb 2011, 12:12
  #27 (permalink)  
 
Join Date: Aug 2007
Location: London, New York, Paris, Moscow.
Posts: 3,632
Likes: 0
Received 0 Likes on 0 Posts
Apologies

Bugger, think I have a similar problem.
A fishing website has unwittingly been hosting something nasty in Java apparently and last night PC started displaying multiple windows "store" failure messages, the badness stops only after un-installing AVAST completely and restarts when AVAST is reloaded.

Any hints on online viri checkers that check system before you reload an AV program??

GR

Sorry guys should open eyes more
glad rag is offline  
Old 28th Feb 2011, 12:57
  #28 (permalink)  
 
Join Date: Jan 2008
Location: Bracknell, Berks, UK
Age: 52
Posts: 1,133
Likes: 0
Received 0 Likes on 0 Posts
Originally Posted by glad rag
Bugger, think I have a similar problem.
A fishing website has unwittingly been hosting something nasty in Java apparently and last night PC started displaying multiple windows "store" failure messages, the badness stops only after un-installing AVAST completely and restarts when AVAST is reloaded.

Any hints on online viri checkers that check system before you reload an AV program??

GR

Sorry guys should open eyes more
Malwarebytes

Download it, update it, boot into safe mode with command prompt and navigate to cprogram files\malwarebytes' antimalware by using 'cd' commands in the command prompt, then run mbam.exe
Do a full scan, and remove anything it finds that's bad.
Mike-Bracknell is offline  
Old 28th Feb 2011, 14:28
  #29 (permalink)  
 
Join Date: Aug 2007
Location: London, New York, Paris, Moscow.
Posts: 3,632
Likes: 0
Received 0 Likes on 0 Posts
It seems that the PC won't let me use safe mode as it no longer recognises the Admin users password!

Hmm.

Hari Kari time.
glad rag is offline  
Old 28th Feb 2011, 15:15
  #30 (permalink)  
More bang for your buck
 
Join Date: Nov 2005
Location: land of the clanger
Age: 82
Posts: 3,512
Likes: 0
Received 0 Likes on 0 Posts
Have you tried just hitting return ie a blank password?
green granite is offline  
Old 28th Feb 2011, 15:42
  #31 (permalink)  
 
Join Date: Aug 2007
Location: London, New York, Paris, Moscow.
Posts: 3,632
Likes: 0
Received 0 Likes on 0 Posts
No GG I have never never heard of that one --what happenned was eventually the person remembered her admin password (spaces are a terrible thing) and it went to the welcome rotating blue circle working symbol, then about 10-15 seconds later reverted back to the wrong password/user name window thing.

Also I have isolated all startup items via msconfig, still doing it, last software addition-from HP [cd for a new printer], has been removed, can't get fully into safe mode,[ however it tries to load windows files but freezes/stops at one called #####CHDISK#### in the file listing ......] running full malware scan at preent but obviously not in safe mode.

Thinking of booting from the supplied Dell OS disk to see if it will go into a OS repair mode........................scratching head now I'm afraid...

GR.
glad rag is offline  
Old 28th Feb 2011, 17:07
  #32 (permalink)  
 
Join Date: Jan 2008
Location: Bracknell, Berks, UK
Age: 52
Posts: 1,133
Likes: 0
Received 0 Likes on 0 Posts
Offline NT Password & Registry Editor
Mike-Bracknell is offline  
Old 28th Feb 2011, 17:45
  #33 (permalink)  
 
Join Date: Feb 2002
Location: UK
Age: 58
Posts: 3,507
Received 186 Likes on 104 Posts
I'd be interested to hear HOW you victims were caught!
Picked mine up from iMdB checking out who the gorgeous actress in The Sea Wolves is/was. (Barbera Kellerman if anyones curious).

Avast would scan but CCleaner wouldn't. I did a system restore to the previous week and ran CCleaner in safe mode. This seemed to do the trick. A quick (half an hour) Avast system scan picked up nada, but all seems ok now.

It seems a Java vulnerability is letting it in, from what I can glean from the t'interweb.

Thanks for the link to Mbam.
TURIN is offline  
Old 1st Mar 2011, 04:19
  #34 (permalink)  
 
Join Date: Mar 2000
Location: Location Location
Posts: 448
Likes: 0
Received 0 Likes on 0 Posts
Glad Rag You can start in safe mode by swithching on from dead while holding the F8 key down. You don't need any password for this.
Hobo is offline  
Old 1st Mar 2011, 15:42
  #35 (permalink)  
 
Join Date: Sep 2007
Location: England
Age: 59
Posts: 18
Likes: 0
Received 0 Likes on 0 Posts
Microsoft Essentials stopped something from eBay yesterday. Big red screen warning stating that "shopping.Ebay" page was unsafe and not to continue.

Clicked off the page and came back later with no problems.
WhatsThatNoise is offline  
Old 1st Mar 2011, 18:48
  #36 (permalink)  

Dir. PPRuNe Line Service
 
Join Date: Dec 1998
Location: Southern England
Posts: 562
Likes: 0
Received 4 Likes on 2 Posts
A lot of websites are currently dangerous due to poisoned adverts.

Tainted ads punt scareware to surfers on LSE and Myvue sites ? The Register

In other words, every website with ads is a potential risk.

PPD
PPRuNe Dispatcher is offline  
Old 1st Mar 2011, 18:51
  #37 (permalink)  
Per Ardua ad Astraeus
 
Join Date: Mar 2000
Location: UK
Posts: 18,579
Likes: 0
Received 0 Likes on 0 Posts
Hello PPD - long time no see....

Isn't PPRune a website with ad
v e
r
t s

Damn - what has happened to my screen?
BOAC is offline  
Old 1st Mar 2011, 19:41
  #38 (permalink)  
More bang for your buck
 
Join Date: Nov 2005
Location: land of the clanger
Age: 82
Posts: 3,512
Likes: 0
Received 0 Likes on 0 Posts
So we can reclassify Adblock as an anti-virus program then.
green granite is offline  
Old 2nd Mar 2011, 08:27
  #39 (permalink)  
 
Join Date: Aug 2007
Location: London, New York, Paris, Moscow.
Posts: 3,632
Likes: 0
Received 0 Likes on 0 Posts
I'm baaccckkkk






So we can reclassify Adblockt as an anti-virus program then.
In my case the damn thing got through adblock/noscript as the "site" already had "permissions" Grrrrr

Which neatly brings me onto a point.
When the site owner casually writes up the infection [on his forum matters thread] as a Java problem and will be" fixed within a week", does this not leave them liable for the damage caused by their continuing to keep their infected site up?

Last edited by glad rag; 2nd Mar 2011 at 08:35. Reason: spelling
glad rag is offline  
Old 2nd Mar 2011, 13:01
  #40 (permalink)  
Per Ardua ad Astraeus
 
Join Date: Mar 2000
Location: UK
Posts: 18,579
Likes: 0
Received 0 Likes on 0 Posts
Just been talking to my local PC shop who are rubbing their hands in glee. 48 machines in in 14 days. Culprits appear to be McAffee and AVG at the moment
BOAC is offline  


Contact Us - Archive - Advertising - Cookie Policy - Privacy Statement - Terms of Service

Copyright © 2024 MH Sub I, LLC dba Internet Brands. All rights reserved. Use of this site indicates your consent to the Terms of Use.