Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help Forums Windows Startup Programs Database Virus, Spyware, and Malware Removal Guides Computer Tutorials Uninstall Database File Database Computer Glossary Computer Resources
 

Welcome Guest ( Log In | Click here to Register a free account now! )



Register a free account to unlock additional features at BleepingComputer.com
Welcome to Bleeping Computer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.
MalwareByte's Anti-Malware Download

> 

When posting your problem, do not run and post a ComboFix logs. ComboFix is a tool that should only be run under the supervision of someone who has been trained in its use. Using it on your own can cause problems with your computer. Any posts containing CF Logs will be ignored.

To receive help, you should instead provide a detailed description of your problem, detailed word-for-word error messages that you are receiving, screenshots of strange behaviour, and your operating system. This information is much more useful to our helpers than a ComboFix log.

 
Reply to this topicStart new topic
> Virus Help, downloaded virus
ayhockey88
post May 9 2006, 02:38 PM
Post #1


New Member
*

Group: Members
Posts: 1
Joined: 9-May 06
Member No.: 67,399



Hello administrator, I was wondering if i could receive a little bit of help in eradicating a pesty problem that I have.

several days ago I was at a website(i dont remember which one) and a video was supposed to play in windows media player but there was an error message that said 'click here to download proper codec for this video' so i downloaded and installed the codec......however, it turned out to be a virus.

now, an alternating blink between a green (wheelchair picture found in control panel) and a red (it looks like a stop smoking circle with a line drawn through it) icon. whenever my computer starts up, it is the first item to load into my lower right hand corner taskbar where the clock is. and a message pops up right above the clock area stating exactly:

critical system error!
system detected virus activities. they may cause critical system failure. please, use antimalware software to clean and protect your system from parasite programs. click here to get all available software.

when you click on that popup bubble....it opens up an internet site referring me to download Pesttrap, Spy Falcon, and various other spyware programs

i know that these additional programs are junk and is just more spyware/viruses...so i didnt download them.

to try to solve this problem i ran norton antivirus(albeit the 2004 version), ad-aware SE, windows defender, and AVG free edition........a couple items came up in AVG and i deleted them, but the little icon in my lower right hand taskbar is still showing up.

in addition, i read another post and downloaded noahdfear's smitrem, but that didnt delete it either

so my question to you is, how do i get rid of that icon from showing up and flashing a popup bubble asking me to download more infectious spyware?

i would really appreciate an answer. thank you very much
Go to the top of the page
 
+Quote Post
stidyup
post May 10 2006, 08:17 AM
Post #2


Distinguished Member
*****

Group: Members
Posts: 641
Joined: 25-November 04
Member No.: 5,839



If the information below fails to help you, you may be might want to consider submitting a hijackthis log to the HJT Forum.

How to submit a hijackthis log

Download Hijackthis

Try running the following from safe mode (Getting to safe-mode) Sysclean you'll also need the virus template file from here lpt***.zip remember to extract the contents of the zip file into the same folder as Sysclean.com

or

DrWeb CureIT

or

KASFX which is powered by the Kaspersky AV engine, you will need internet access to update it. If you haven't got net access in safe mode, update it before you use it.

If your good with the command line also try Sophos Command Line scanner this command will scan all of your hdd's SAV32CLI.EXE -F -di -remove -dn -mbr -all -zip -p=avscanlog.txt and give you a log file to review afterwards.

Also try installing and running A2 Free and Ewido (Ewido Updates) again run from safe mode.

I'd also run Spybot(Spybot Tutorial) and Adaware

If your using Win2K/XP run adaware/spybot from "safe mode with command prompt" If your using Win9x just run it from safe mode the command line options aren't needed..

At the C:\ prompt type the following:-

cd\
C:\progra~1\spybot~1\spybotsd.exe /autocheck /autofix
cd\
C:\progra~1\lavasoft\ad-awa~1\ad-aware.exe

Other tools to try from Safe Mode
Trend Micro Spyware Scan you will need to run this with a internet connection first to get the updates.

Xblocker
[quote]


--------------------
Go to the top of the page
 
+Quote Post
quietman7
post May 10 2006, 08:28 AM
Post #3


Bleepin' Janitor
******

Group: Global Moderator
Posts: 16,573
Joined: 9-July 05
From: Virginia, USA
Member No.: 26,513



Hello ayhockey88

Try this:

You should print out these instructions, or copy them to a NotePad file for reading while in Safe Mode, because you will not be able to connect to the Internet to read from this site.

Please download and install Ewido Anti-Malware v3.5. DO NOT perform a scan yet..
Print out the Ewido Install and Scan Instructions.

Go here and follow the instructions for using SmitfraudFix.
After using the tool reboot again in "SAFE MODE" and

Clean out your Temporary Internet files as follows:
  • Quit Internet Explorer and quit any instances of Windows Explorer.
  • Click Start, click Control Panel, and then double-click Internet Options.
  • On the General tab, click Delete Files under Temporary Internet Files.
  • In the Delete Files dialog box, tick the Delete all offline content check box , and then click OK.
  • On the General tab, click Delete Cookies under Temporary Internet Files, and then click OK.
  • Click on the Programs tab then click the Reset Web Settings button. Click Apply then OK.
  • Click OK.
Next Click Start, click Control Panel and then double-click Display. Click on the Desktop tab, then click the Customize Desktop button. Click on the Web tab. Under Web Pages you should see a checked entry called Security info or something similar. If it is there, select that entry and click the Delete button. Click Ok then Apply and Ok.

Empty the Recycle Bin by right-clicking the Recycle Bin icon on your Desktop, and then clicking Empty Recycle Bin.

Then perform a scan with Ewido and reboot back to normal mode.

If this does not resolve your problem, then post a hijackthis log.


--------------------
"THE BAD GUYS DON'T NEED A SEARCH WARRANT. ARE YOU PROTECTED?"

Microsoft MVP - Windows Security 2007-2009
Member of UNITE, Unified Network of Instructors and Trusted Eliminators
Go to the top of the page
 
+Quote Post

Reply to this topicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 



Lo-Fi Version Time is now: 4th July 2009 - 06:52 AM


Advertise   |   About Us   |   Terms of Use   |   Privacy Policy   |   Contact Us   |   Site Map   |   Chat   |   Tutorials   |   Uninstall List   |   Virus Removal Guides
Discussion Forums   |   The Computer Glossary   |   Resources   |   RSS Feeds   |   Startups   |   The File Database   |   Malware Removal Guides Archive

© 2003-2009 All Rights Reserved Bleeping Computer LLC.