Jump to content
Posted 27 December 2011 - 01:38 PM
Posted 27 December 2011 - 01:44 PM
Posted 27 December 2011 - 01:57 PM
Posted 27 December 2011 - 10:35 PM
Before doing anything further, if you have not already done so, you should back up all your important documents, personal data files and photos to a CD or DVD drive as some infections may render your computer unbootable during or before the disinfection process. If that occurs there may be no option but to reformat and reinstall the OS or perform a full system recovery. The safest practice is not to backup any files with the following file extensions: exe, .scr, .ini, .htm, .html, .php, .asp, .xml, .zip, .rar, .cab as they may be infected.
Posted 28 December 2011 - 11:06 AM
Posted 28 December 2011 - 11:35 AM
Posted 28 December 2011 - 11:42 AM
The date, time (GMT) and IP addresses identified in our investigation
are as follows:
Date IP Additional Info
=================== =============== =======================================================
2011-12-27 01:20:32 220.127.116.11 infection => 'dns-changer', rogue_ns_ip => '18.104.22.168'
Posted 28 December 2011 - 11:50 AM
Is this true? Despite running all these tools and programs, I'm still in need of disk reformatting?
Currently, there is no tool that is known to be effective in detecting and eradicating this infection from affected computers. As a precaution to protect your privacy and data , the Department of Justice, with the assistance of the FBI, is recommending that you update your master boot record and reformat your hard drive or take it to a local repair shop to have this done. If there are removal/fix tools that become available in the future to remove the infection without reformatting your hard drive, you will need to check the FBI website or other security resources for information.
CenturyLink modems are not affected by the DNSChanger only the individual PC's and small office/residential routers.
Edited by Lindhills, 28 December 2011 - 12:25 PM.
Posted 28 December 2011 - 01:53 PM
Not necessarily. The severity of infection will vary from system to system, some causing more damage than other sespecially when dealing with rootkits. The longer malware remains on a computer, the more opportunity it has to download additional malicious files which can worsen the infection so each case should be treated on an individual basis. Severity of system infection will also determine how the disinfection process goes.
Despite running all these tools and programs, I'm still in need of disk reformatting?
Posted 28 December 2011 - 03:51 PM
Posted 28 December 2011 - 03:59 PM
That is what I supected.
ran TDSSKiller which found a rootkit.win32.zaccess.
0 members, 0 guests, 0 anonymous users