WheelsRCool Report post Posted September 17, 2009 So my computer got infected with this very bad virus, it won't let me access certain websites, or delete it from my computer, or even do a System Restore. It disguises itself as a spyware removal software, and popped up at me and I accidentally downloaded it, not quite realizing what I was doing (I thought it was part of a piece of spyware prevention software I had). Apparently this is a very tough bot to remove. I have read thus far the three ways to remove it are either have a professional do it (there's an online business that does this), or purchase software to remove it (this software is supposed to be good at removing it), or one can try manually removing it themselves, but you can mess up your computer if you don't know what you're doing. I want to buy the software to remove it as it is cheaper, but I am afraid of typing any private information like a credit card number on the keyboard because the bot has a keylogger to record personal information I believe (you download the software). What do I do? Quote Share this post Link to post Share on other sites More sharing options...
ben Report post Posted September 17, 2009 First thing you do is tell us the name of the Virus, silly. Quote Share this post Link to post Share on other sites More sharing options...
WheelsRCool Report post Posted September 17, 2009 I will try, but the bot watches and when you mention its name, it tries to ban you from the site (serious!). I tried Googling it and it banned me from every site I Googled at first. It is called "Personal Antivirus." EDIT: Okay, it worked there. It also tries to block you from downloading the software that can remove it. Quote Share this post Link to post Share on other sites More sharing options...
JBrown Report post Posted September 17, 2009 What spyware protection software do you have (what did you think it was)? Ive had some strange looking "update" request for my antivirus popping up on my screen once a day now asking me to download an update. This has been happening for a few weeks now and I havent downloaded it. The popup looks real sketchy and the dates on it are wrong. IIRC one of the lines says "It looks like your software is going to be expiring soon on X/X/2008, do you want to download the update?" "2008"?? Wtf? Next time it pops up, I'll get a screenshot Quote Share this post Link to post Share on other sites More sharing options...
WheelsRCool Report post Posted September 17, 2009 Well what happened was Windows Security kicked in and started blocking spyware or a virus or something, then I think the Personal Antivirus thing popped in asking if I wanted to download that. I don't remember exactly, I wasn't thinking and acted stupid, for whatever reason I thought it was part of the Windows Updates or whatnot. The software I want to download is called Spyware Doctor. It is supposed to be known for being able to remove Personal Antivirus. Quote Share this post Link to post Share on other sites More sharing options...
Malebomb Report post Posted September 17, 2009 So my computer got infected with this very bad virus, it won't let me access certain websites, or delete it from my computer, or even do a System Restore. It disguises itself as a spyware removal software, and popped up at me and I accidentally downloaded it, not quite realizing what I was doing (I thought it was part of a piece of spyware prevention software I had). Apparently this is a very tough bot to remove. I have read thus far the three ways to remove it are either have a professional do it (there's an online business that does this), or purchase software to remove it (this software is supposed to be good at removing it), or one can try manually removing it themselves, but you can mess up your computer if you don't know what you're doing. I want to buy the software to remove it as it is cheaper, but I am afraid of typing any private information like a credit card number on the keyboard because the bot has a keylogger to record personal information I believe (you download the software). What do I do? I had the same thing about a year ago. Try to download microsoft windows defender, I think it was free for a limeted time then you had to pay. It worked for me and that virus was driving me FCUKING CRAZY!!! Oh yeah and stay off them PORN sites!!!! Quote Share this post Link to post Share on other sites More sharing options...
JBrown Report post Posted September 17, 2009 Oh yeah and stay off them PORN sites!!!! There you have it: we're all fucked Quote Share this post Link to post Share on other sites More sharing options...
West Palm Report post Posted September 17, 2009 What's your OS? Quote Share this post Link to post Share on other sites More sharing options...
topcabron Report post Posted September 17, 2009 sounds nasty. my computer is a porn free zone Quote Share this post Link to post Share on other sites More sharing options...
pockmark Report post Posted September 17, 2009 Yea right J. Are there little blue bugs that come on every now and then that look like they are eating your desktop? If so I had the same virus a while back. I did a google search found a computer virus forum, and a moderator helped me through the process. I was VERY close to throwing my computer through a window. There is also some free software you can download to get rid of it. I was stupid and went out and bought Norton after this happened. Quote Share this post Link to post Share on other sites More sharing options...
bigmurcie Report post Posted September 17, 2009 Seems like any site you go to could carry some virus these days. I've been hit quite a few times lately, some more serious than others. But I've been able to eliminate all the virus with the following programs, they are all free. Give them a try: Malwarebytes' Anti-Malware SmitfraudFix roguefix_2.253 ComboFix Imo, it's worth the money to have professionals take care of it if you are not having any luck trying to fix it yourself. Quote Share this post Link to post Share on other sites More sharing options...
phxdiablo Report post Posted September 17, 2009 Have u tried to reboot in Safemode? Then go into the registry and delete the entry that auto-starts it. Then find that file in C:/system and delete it. If the software download can't remove it, I'd save my precious files to an external drive and reinstall the operating system. Quote Share this post Link to post Share on other sites More sharing options...
williet Report post Posted September 17, 2009 I had the same virus on my computer about 6 months ago, had to re-format. By far the worst virus that every hit me. Quote Share this post Link to post Share on other sites More sharing options...
blackmagic Report post Posted September 17, 2009 try this. 1) restart computer in safe - mode with network support (hold F8 after restart and you will see the menu) 2) download free avg anti-virus from http://free.avg.com/ and run a scan 3) after avg completes download free spyware cleaner/shield (does not expire) http://www.spywareterminator.com Run a complete scan and see what it finds. then clean up. Your IE/browser is highjacked and this should do a clean up. If not, repost here again and I will tell you your last option. Quote Share this post Link to post Share on other sites More sharing options...
blackmagic Report post Posted September 17, 2009 Let me just tell you the last part. reboot your computer after step2 and go to safe mode with network support again. 3) download this and run it. http://download.cnet.com/Trend-Micro-Hijac...4-10227353.html Your computer should be just fine after this. Call it Magic. Quote Share this post Link to post Share on other sites More sharing options...
pockmark Report post Posted September 17, 2009 Seems like any site you go to could carry some virus these days. I've been hit quite a few times lately, some more serious than others. But I've been able to eliminate all the virus with the following programs, they are all free. Give them a try: Malwarebytes' Anti-Malware SmitfraudFix roguefix_2.253 ComboFix Imo, it's worth the money to have professionals take care of it if you are not having any luck trying to fix it yourself. That is the free software I used. Give it a shot. It fixed my computer! Quote Share this post Link to post Share on other sites More sharing options...
Turbo50Mike Report post Posted September 17, 2009 I have two laptops that I use - One is STRICTLY for pron, DL movies, shows, music, torrents, etc. It has NEVER gotten infected, never skipped a beat for the past ~18 months. The other laptop I use I NEVER log onto pron or any other 'questionable' sites. It has crashed/been infected 3 times in the past 18 months. So the way I see it. Porn is actually GOOD for your computer! I just reformat and install XP again. I only have a small handful of programs that I use, and I do a backup about once a month on any new photos/docs that are important. Just reformat and start fresh. It helps clear up your registry, too. Quote Share this post Link to post Share on other sites More sharing options...
GBGallardo Report post Posted September 17, 2009 Simple solution Quote Share this post Link to post Share on other sites More sharing options...
Teufel657 Report post Posted September 17, 2009 Simple solution Proper solution? Quote Share this post Link to post Share on other sites More sharing options...
WheelsRCool Report post Posted September 17, 2009 It wasn't a porn site, I was looking to watch a TV show. You guys are getting a little ahead of me on the computer terminology here though: What is Safe mode? And Network Support? When you say "reformat," you mean a System Recovery (not a System Restore), like reset the system back to how it was at the time it was bought? The big problem with this virus is that it puts about three other viruses into your computer so that if you delete it, it can recreate itself. Quote Share this post Link to post Share on other sites More sharing options...
topcabron Report post Posted September 17, 2009 have you tried to go into the bios and restoring from a previous date? As your computer boots up, press esc until you get a prompt. My computer locked me out and I had to get in before it went into asking for the password. Quote Share this post Link to post Share on other sites More sharing options...
Swil Report post Posted September 17, 2009 That wont work either. That thing is tricky Ive seen it, I had to remove it twice this summer from my mother's computer. It just pops up outta nowhere, some basic general sites just have it embedded. Wheels...It recognizes almost EVERY virus scanner by name so keep that in mind when you try to open the program it will deactivate it so it never opens. Im telling you, this bitch is a bad-one. Norton, McAfee suck they dont detect it and it kills those and they never operate again so just de-install them you don't need them anymore...Here's how I did it... 1) go to safe mode but WITH networking (reboot, hold down F7 till it asks if you want safe mode, should give you two options with or without networking). 2) from safemode internet goggle: "hijack this" download it. goggle: spybot search and destroy. download it. 3) once downloaded, change the name of those programs immediately on the desktop (it wont recognize them when you go back to regular windows and will allow you to open, to scan and remove it). Dotn use anything like scan or virus, use a name like "Wheels-kill" or whatever... 4) FIRST scan in safe mode. Clean and remove 5) Reboot and go to regular windows, open the "spybot" program (err the iteration you named it now) and kill that motherfcuker. It might already be removed from the safe mode scan but you'll get it for sure then... Then reboot and it should be gone. If that doesnt work, you wil need to incorporate the HiJack-This program for further scrubbing, BUT.....Do NOT open "Hijack-This" unless you know what you're doing, you will need assistance to do so, or you WILL cause irreparable damage to your computer. Alot of on-line assistance to walk you through what to look for. Think of it like using Acid or bleach to remove a blemish on a painted surface. The perfect mixture of solvent with water would do the job, but the worng mix and you might as well buy a whole new bodypanel...So be extremly careful if you open up "Hijack this"... Lemme know how it works out. Quote Share this post Link to post Share on other sites More sharing options...
blackmagic Report post Posted September 17, 2009 That would be a F8, not F7. Thanks. 1) go to safe mode but WITH networking (reboot, hold down F7 till it asks if you want safe mode, should give you two options with or without networking). Quote Share this post Link to post Share on other sites More sharing options...
Elec Report post Posted September 17, 2009 Simple question - were you using internet explorer? Quote Share this post Link to post Share on other sites More sharing options...
Swil Report post Posted September 17, 2009 That would be a F8, not F7. Thanks. 1) go to safe mode but WITH networking (reboot, hold down F7 till it asks if you want safe mode, should give you two options with or without networking). YEP thats right sorry. It's F8... Simple question - were you using internet explorer? forgot that...internet explorer is more susectable to get this virus. download FireFox and use that browser from now on too. Quote Share this post Link to post Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.