Author Topic: Heeelp please!  (Read 1373 times)

Offline lulu

  • Silver Member
  • ****
  • Posts: 1068
Re: Heeelp please!
« Reply #15 on: July 28, 2012, 11:58:27 AM »
During this 3 days, i upgrade skype and after disable skype update services.
Now this service is no more on xp list of services.

Be carefull.

I'm looking for something with manual scan.
I don't like that services run in background because my netbook has poor resources.
Malawarebytes seems good for that. Tx

 :salute
mobilis in mobile

Offline Bizman

  • Plutonium Member
  • *******
  • Posts: 9687
Re: Heeelp please!
« Reply #16 on: July 28, 2012, 01:03:10 PM »
If you suspect you're having viruses on your computer but don't want to install programs that will have a process running thereafter, online scanners are quite good. I already mentioned Eset Online Scanner.
Others I have used: There are/has been others, but these are still available and working.

For other malware than viruses, the AntiMalware is my #1 these days, but the SuperAntiSpyware is also good. It has a portable version, which can be run from a memory stick. It also has some special "Repairs" button, which includes many tools to restore settings after some malware has altered them. Also the good old Spybot-Search and Destroy seems to have caught up again. When installing it, be cautious with the all-time tools it offers. TeaTimer can be a nuisance. And don't forget the very special ComboFix, which has saved my bacon numerous times when nothing else is allowed to run.

And then, there's the plethora of live CD's, another listing here, from Avira, AVG, BitDefender, F-Secure, Kaspersky Labs, Norton, Panda, Trinity (several brands), you name it. Since they're mostly Linux based, each version can't necessarily use your network card for updating. In that case, there might be an alternative updating method or, you can use another brand.

Happy hunting!


Offline guncrasher

  • Plutonium Member
  • *******
  • Posts: 17417
Re: Heeelp please!
« Reply #17 on: July 28, 2012, 01:38:24 PM »
dont use comodo again, it's really bad at removing viruses that are already in your computer.  and the firewall that it has for what i read is very good, however you need to now how to install it or you basically have nothing.  in other words use windows security essentials, simpler and easier to use.


semp
you dont want me to ho, dont point your plane at me.

Offline lulu

  • Silver Member
  • ****
  • Posts: 1068
Re: Heeelp please!
« Reply #18 on: July 28, 2012, 03:36:10 PM »
TY ALL VERY MUCH AGAIN    :airplane:

 :salute
mobilis in mobile

Offline Bizman

  • Plutonium Member
  • *******
  • Posts: 9687
Re: Heeelp please!
« Reply #19 on: July 29, 2012, 03:39:02 AM »
Don't try to end this thread, not everyone has yet shared his wisdom  :bolt:

Offline guncrasher

  • Plutonium Member
  • *******
  • Posts: 17417
Re: Heeelp please!
« Reply #20 on: July 29, 2012, 04:56:06 AM »
lulu one word of advise.  you still have viruses.

semp
you dont want me to ho, dont point your plane at me.

Offline Bino

  • Platinum Member
  • ******
  • Posts: 5938
Re: Heeelp please!
« Reply #21 on: July 29, 2012, 07:56:21 AM »
I tried to connect and download yours suggested anti-malware programs but ... opera browser says that it's impossible to connect to their server.   :huh   aaaAAAARRRRGH !

Suggests?

 :salute

I have seen malware that changes a system's "web proxy" setting, which can then redirect browser(s) to the malware site.  Check the Windows setting from within Internet Explorer, and also the web proxy setting within any other browsers you have installed.


"The plural of 'anecdote' is not 'data'." - Randy Pausch

PC Specs

Offline Bizman

  • Plutonium Member
  • *******
  • Posts: 9687
Re: Heeelp please!
« Reply #22 on: July 29, 2012, 09:33:25 AM »
I have seen malware that changes a system's "web proxy" setting, which can then redirect browser(s) to the malware site.  Check the Windows setting from within Internet Explorer, and also the web proxy setting within any other browsers you have installed.

Yup, good point. Plus I have seen malware that does the redirecting in a more sophisticated way, hidden in the registry values or other group policy settings. Here's one link to a policy restoring tool, downloadable here.

Offline Bino

  • Platinum Member
  • ******
  • Posts: 5938
Re: Heeelp please!
« Reply #23 on: July 29, 2012, 09:37:34 AM »

Yup, good point. Plus I have seen malware that does the redirecting in a more sophisticated way, hidden in the registry values or other group policy settings. Here's one link to a policy restoring tool, downloadable here.

Yuk!  That's just *nasty*, hiding junk like that in the registry. 


"The plural of 'anecdote' is not 'data'." - Randy Pausch

PC Specs

Offline lulu

  • Silver Member
  • ****
  • Posts: 1068
Re: Heeelp please!
« Reply #24 on: July 29, 2012, 07:43:04 PM »
4 pendrive were sources of infection.

This was very helpful to delete infection on my netbook:

http://www.symantec.com/security_response/writeup.jsp?docid=2009-011316-0247-99

(Before runnning D.exe, i also stopped dnscache from xp command prompt (Start->run->cmd->net stop dnscache))

And i used this patch too:

http://technet.microsoft.com/en-us/security/bulletin/ms08-067

After i installed Avast to try it, and Malawarebytes on a sd card.

I noted that when the infection is on your hd icons change in folder icon and xp firewall allows a process named as i posted before.

Until now this virus is pretty dead.


 :salute

mobilis in mobile