Posted 10 January 2010 - 02:10 AM
I am currently running Windows XP Media Center Edition Version 2002 SP 3. I experienced the following problem today shortly after downloading a torrent file (it had a lot of leachers and seeders so I assumed it was legit and at the time AVG was running in the taskbar). Some popups appeared warning me that my computer was not safe and to download a program named Malware Defense. It then continued to automatically download files onto my computer without any button to press to cancel the operation. At this point the popups crashed my computer and I was forced to restart.
Upon starting my computer, a red circle with a white X over it appears stating “Danger! There are some serious security threats detected on this computer: Viruses, Trojans, keyloggers, exploits, etc.” A windows security center popup will also appear warning that no virus protection was found on the computer. Approximately 2 minutes after starting up my computer, the following pop ups will also appear:
-Malware Defense advertisement warning me that your computer is at risk and to download the software.
-A 'security center alart' dialog box stating:
Do you want to block this supicious software?
Risk High Risk
Description This network work infects computers running Windows. The worm itself is a Windows PE EXE file, written in Visual C++. The file may be packed with one or a range of packers, and the size of the infected file may therefore vary. The packed file is approximately 47KB or greater in size, and the unpacked file is approximately 150KB to 260KB in size.
Through trial and error I found that ending the process “wscvc32.exe” within the task manager will remove all the popups, however, within just a few minutes it will reappear again. I then found that ending the process “settdebugx.exe” will prevent it from reappear every few minutes but the computer is still running unstable.
Whatever I caught is now preventing me from running antivirus programs:
SuperAntiSpyware Free Edition, Malwarebytes Anti-Malware, AVG Free 9.0, and Spybot Search & Destory all would not run under normal mode, and only AVG would run in safemode and ended up locking up in the middle of the scan. Also I have had no luck trying a system restore, at the very last step before the restore when clicking NEXT nothing happens and the computer doesn’t restart.
Any ideas what I could try to do to get this nasty infection off?
Thanks for your time in hearing my concern.