Urgent Help w/ Virus Issues

DrFuNk328

Member
Dec 19, 2008
35
0
0
My roommate is being dominated by the "Antivirus 360" fake security patch. He mistakenly bought into this worm. We are looking for any additional help to over-ride and cease this virus from corrupting his computer further.

He doesn't know what else to do and thus I have tried to help him out. I have tried searching for it manually and deleting the "SOB" but I am very unsuccessful. I have also tried restoring his system to a prior point, but it seems the worm is doing its job. I apologize for such a noob topic, but any help would be greatly appreciated. THANKS!

ps...he is running XP.
 

mechBgon

Super Moderator<br>Elite Member
Oct 31, 1999
30,699
1
0
As an opening move, back up his important stuff, and then try scanning the system with these two bootable CDs:

http://www.f-secure.com/linux-...escue-cd-300-released/ (download the Zip file, and burn the .ISO to CD using imgburn or whatever)

http://www.free-av.de/en/tools...vir_rescue_system.html (this .exe makes a bootable CD directly)


Once they've been run, now boot into Windows, install Superantispyware, have it update, and then let it scan (bonus points for rebooting into Safe Mode after updating, and scanning in Safe Mode).

After that, run HijackThis and post a logfile to see where it's at. Also run the free Secunia vulnerability checkup utility to fix stuff that might've been used to install the scamware.

BTW later on I'm going to scoot this over to the Security forum, so if you don't see it here, it's over in Security :beer:
 

DrFuNk328

Member
Dec 19, 2008
35
0
0
MechBgon,

Hey, I appreciate the help.

First of all, I will forward this information to him and see what he says. He says he is going to take his laptop to a tech place for help. He isn't that tech savy and I was just going to provide him some information on this issue.

Second of all, I agree with these steps, I bet these will work, but I'm sure he won't do it. To much hassle I guess. I guess you could say college kids these day...to lazy. haha

Last, I apologize that I didn't put this on the Security forum. I just needed a quick response thats all. I'm sorry, and I am ok with this being switched over.

Thanks again!!
 

roc17

Member
Dec 26, 2003
112
0
0
See my earlier post in this forum - Roc17. A responder suggested 'malwarebytes' which cleaned it up just fine.

Good luck.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |