Monday, July 27, 2009

Virus or Spyware problem?

Im in a jam my computer has caught a bug. When I run spybot to search for problems it finds "virtumonde" and "smitfraud-c.toolbar888" it removes "smitfraud-c.toolbar888" but it always comes back and it can't get rid of the virtumonde even after a system restart. i can't restore my computer because I guess the virus took away all previous restore dates. The main thing happening is slow computer performance and my norton internet security software (currentley way outdated) keeps asking me to block these things trying to connect to the internet the things connecting are random number sequences such as 589156.exe and after a while there will be a ton of random number .exe's run in the background. Please help me if you can you don't even know how much it will be appreciated. Thanks a lot!

Virus or Spyware problem?
first off u should download SUPERantispyware and get the pro trial version. now start your computer in safe mode and scan with that. another program is ad aware and again u should scan in safe mode. after u get rid of the viruses i suggest u get comodo firewall pro and best of all it's rated as one of the best firewalls and it's also free.
Reply:My suggestion to you is to run what is known as "online scanner from Kaspersky Russia. Rated # 1 in the world for virus detections. Allow the complete scan to run, may take upto two hours or more depending on how many running processes %26amp; how many programs you have installed. Kaspersky scanner will destroy all your viruses in real times. After the scan is complete, reboot.





http://www.kaspersky.com/virusscanner





Minddoctor, France
Reply:roll your computer back to the previous restore point. works better than any spyware removal program out there.





I set my comp to create a restore point every single night.
Reply:Try running AVG virus scan, which is free and rated highly, followed by Ad Aware by Lavasoft.





Works for me all the time
Reply:I cleaned a client's computer (infectected with a smitfraud variant) this way:





Update (or get and update) anti-virus and spyware protection. (Free for personal use: AVG, Ad-Aware, and Spybot; you can get all three and many more at download.com.)





Turn off system restore (in XP: right-click on My Computer, Properties, Restore tab, click to turn off system restore). This will require restarting--restart in Safe mode. (F8 while restarting; else start, run, msconfig, and on the BOOT.INI tab, safeboot.)





Run full-system antivirus and spyware scans.





Restart your computer. If your problem is gone, then turn system restore back on (same sequence as above to turn it off, now check system restore on). If you have some remnant, as I did, run spyware scans again before turning on system restore.





Good luck.
Reply:Virus - is a program written to alter the way a computer operates, without the permission or knowledge of the user, it hides in other program files. It replicates itself and executes.To know more about how viruses attaches itself to computers and to learn how to combat them. Check out http://sumiram2006.googlepages.com/comba...
Reply:You can try to locate the virus and delete it, but try to do it right when you restart your computer that so your computer might catch it before the program starts running. Try to go into uninstall/change programs and try to find any programs that look suspicious and uninstall them if you can.


But if all else fails I would recommend wiping the slate clean and reinstall the OS. If you can, it would be best to backup important files on a storage device before doing so.
Reply:Virtumunde is torjon horse with a torjon horse downloader......and system spyer....





Note:: Torjan Horse dont replicate as virus do. But they may hide somewhere...





genraly make registry key entry and keep coming back cos key entry hadnt been deleted.








Solution::





get yourself





spyware remover





spy sweeper


http://www.download.com/Webroot-Spy-Swee...





or


adware Se from lavasoft.








spy sweeper is effective against that virtumunde..cos i removed mine with that.





hope this will help!





Cheers:)
Reply:Malware Removal: Virtumundo


http://wiki.castlecops.com/Malware_Remov...


This procedure is to remove Adware-Virtumundo (Vundo).Winfixer /WinAntiSpyware / WinAntiVirus and Adware-Virtumundo are not one and the same. Persistent WinAntiSpyware or WinAntiVirus popups which pester the user to purchase the program, are indicative of Adware-Virtumundo or a Vundo infection, for short, but it is also possible to have the program Winfixer program and its successors installed without Vundo accompanying it.





How to Remove WinFixer / Virtumonde / Msevents / Trojan.vundo.


http://www.bleepingcomputer.com/forums/t...


Tools needed for this fix:


* Vundo Fix


* VirtumundoBegone (if VundoFix does not work)





======================


Toolbar 888 Removal Guide


http://www.toolbar-888-removal.com.remov...


http://www.spywareremove.com/removeToolb...


============================


SmitFraudFix


http://www.geekstogo.com/forum/How_to_us...


==================


Also run Malware Removal: SpyAxe Removal per


http://wiki.castlecops.com/Malware_Remov...


SpyAxe belongs to the Smitfraud group of rogue antispyware programs. The following programs are also members of this group, and this same removal procedure will eliminate any of these Smitfraud infections:


-Security Toolbar


=============================


Smitfraud Variants including PestCapture, WinAntivirus Pro 2007,


and other similar Malware Removal Instructions and Help


http://www.pchell.com/support/smitfraud....


================================


================================


All programs listed are free.





Securing a Personal Machine


http://safecomputing.umn.edu/studentchec...





When should I re-format? How should I reinstall? (#10063)


http://www.dslreports.com/faq/10063








OS Reinstallation vs. Virus Removal


http://safecomputing.umn.edu/guides/rebu...





--------------------------------------...


Update your antivirus and run a full scan in safe mode





If you do not have full time (active) virus protection install (only one) all are excellent:





AVG Antivirus 7.5 Free Edition


http://free.grisoft.com/freeweb.php/doc/...


http://www.download.com/AVG-Anti-Virus-F...


or


Free antivirus - avast! 4 Home Edition


http://www.avast.com/eng/avast_4_home.ht...


or


AOL Active Virus Shield


http://www.activevirusshield.com/antivir...


--------------------------------------...


Install Windows Defender (full time spyware protection)


Perform a full scan.


http://www.microsoft.com/athome/security...


--------------------------------------...


Install the following five programs and run weekly or at least monthly. You need all five. They will greatly increase your protection. They are not a substitute for full time spyware and virus protection.





Ad-Aware SE Personal (update + full scan)


http://www.lavasoftusa.com/products/ad-a...





Spybot Search %26amp; Destroy (update + immunize + scan)


Do not enable Tea Timer and SDHelper


After installation: update + scan + immunize


http://www.safer-networking.org/en/mirro...





SpywareBlaster: Update then open and click “enable all protection”.


http://www.javacoolsoftware.com/spywareb...





SUPERAntiSpyware free version: (update + scan)


http://www.superantispyware.com/





CCleaner: Do not install toolbar option


Removes tracking cookies, unneeded files, history


In options.


Set to run when computer starts.


Place cookies you want to keep in save list


http://www.ccleaner.com/


--------------------------------------...


Note if a scan detects a problem but is unable to remove, start the computer in safe mode with the internet line disconnected and run a full scan.





In severe cases your system restore files will also be infected. In these cases you will need to turn off system restore to prevent malware hiding in the system restore files and reinfecting the computer during removal or during a future system restore. Turning off system restore deletes the system restore files.





Right click on "my computer"%26gt; Properties %26gt; System Restore Tab %26gt; Check box turn off system restore





After the malware is removed turn on system restore.


--------------------------------------...


McAfee Site Advisor: Internet Explorer and Firefox


http://www.siteadvisor.com/


Indicates if a site is unsafe and can link to a page to explain why it is unsafe.


--------------------------------------...


Run this time only.





CWShredder: run


http://www.trendmicro.com/cwshredder/





Roguefix.bat


http://www.internetinspiration.co.uk/rog...





Shoot The Messenger


http://www.grc.com/stm/shootthemessenger...





SmitFraudFix


http://www.geekstogo.com/forum/How_to_us...





Vundo Fix and


VirtumundoBegone (if VundoFix does not work)


http://www.bleepingcomputer.com/forums/t...





VX2 tool for Ad-Aware and run tool (Install and run)


http://www.lavasoftusa.com/support/secur...





--------------------------------------...


Additional run this time and monthly.





Microsoft Update "Custom Mode" install everything


http://update.microsoft.com/microsoftupd...





Microsoft OneCare Live, run “full service scan”


Updates windows, virus and spyware scan, disk cleanup, disk fragmentation (if needed), backs up registry and then cleans registry, and checks for open firewall ports


http://onecare.live.com/site/en-us/defau...





Malicious Software Removal Tool (run “full scan”)


http://www.microsoft.com/security/malwar...


--------------------------------------...


RootkitRevealer v1.71


http://www.microsoft.com/technet/sysinte...





Rootkit Removal Guide


http://safecomputing.umn.edu/guides/scan...





Rootkits Removers


Pick any 2 install and run one each month





AVG Anti-Rootkit


http://www.grisoft.com/doc/products-avg-...





F-Secure BlackLight


http://www.f-secure.com/blacklight/





Trend Micro Rootkit Buster


http://www.trendmicro.com/download/rbust...





Sophos Anti-Rootkit


http://www.sophos.com/products/free-tool...


--------------------------------------...


--------------------------------------...


Online Free Scanners:


Run Trend Micro, Kaspersky, and Panda Scan now.


Run a different one each month.





Trend Micro: HouseCall Free Scan (removes what it finds)


http://housecall.trendmicro.com/


BitDefender Online Scanner http://www.bitdefender.com/scan8/ie.html


Kaspersky Labs Online Scanner http://www.kaspersky.com/virusscanner


McAfee http://us.mcafee.com/root/mfs/default.as...


Panda ActiveScan Free Online Scanner http://www.pandasoftware.com/products/ac...


Symantic Online Scanner http://security.symantec.com/sscv6/ssc_e...


--------------------------------------...


Additional Information read:


http://wiki.castlecops.com/Malware_Remov...


http://wiki.castlecops.com/Malware_Preve...


http://www.castlecops.com/f67-Hijackthis...


http://aumha.org/a/quickfix.htm


http://aumha.org/secure.htm


http://aumha.org/a/parasite.php


http://www.castlecops.com/t102301-Hijack...


http://www.techsupportforum.com/security...


http://forum.aumha.org/viewtopic.php?t=4...
Reply:For your PC to be OK, you have to protect it from viruses and hackers!


The virus is a small program that attach itself to other files from your computer and can harm your computer, by restarting it, freezing it or even by deleting your files or stealing your personal information.


To keep your computer safe from viruses you have to use an anti-virus program, like Norton, AVG, Kaspersky, Avast, Antivir, McAfee, Bit Defender. Some are free and others have trial versions.


Here you have some links to download the free versions of some of the best anti-virus programs, as well as other security tools:


http://kiete.com/download/security/

flower girl

No comments:

Post a Comment