Warning

 

Close
Confirm Action

Are you sure you wish to do this?

Cancel Confirm
AR15.COM
5/11/2011 1:09:16 PM EDT
How do I get rid of this damn virus?

I've run avast, avg, malwarebytes.

All to no avail.
5/11/2011 1:11:36 PM EDT
[#1]
The non-free version of Spybot Search & Destroy killed it for me.  Tagged it as "rogue security software" or something like that... sent it to quarantine and no more problems.
5/11/2011 1:14:55 PM EDT
[#2]
Quoted:
How do I get rid of this damn virus?

I've run avast, avg, malwarebytes.

All to no avail.


Did you run malwarebytes in safe mode?
5/11/2011 1:21:52 PM EDT
[#3]
did you UPDATE malware bytes?  twice?
5/11/2011 1:35:03 PM EDT
[#4]
It can be very difficult to get rid of some of the infections out there. Sometimes Malwarebytes (even in safe mode) may not catch them all. It helps to follow the steps from people who help others clean their systems, this will include posting logs from various scanning programs. Usually you will have to run several programs and it could take hours, especially when running an online scanner to ensure your local AV hasn't been compromised; in order to ensure all of the malware is really gone.

Start by seeing this thread for the steps to begin cleaning your system...
DSLReports Help - I'm Infected!
Mandatory Steps Before Requesting Assistance

Then start a thread as indicated in the link above and post the logs as indicated. There are active posters there who can help ensure you clean everything off your infected computer.
http://www.dslreports.com/forum/cleanup

Further assistance on removing rootkits and other malware can be found at these two DSLReports links.
DSLReports - Security Cleanup FAQ
Rootkit Detection Applications

If things still cannot be removed you may have to run ComboFix from Bleeping Computers. Its sort of a last resort before reformatting a hard drive and reinstalling either from backups (which could still be infected) or from original software media.
A guide and tutorial on using ComboFix

I had one computer so badly infected with malware, rootkits and the like it took combofix over four hours to clean all the crap off it. Comptuer runs like a champ now.

Also after cleaning check your Malwarebytes, AV, Firewall and other security software to ensure it hasn't been reconfigured by the malware to ignore the malware during the security software scanning, or allow internet access through the firewall. I've seen this happen even after cleaning off the malware. So if you get reinfected you don't realise it.
5/11/2011 1:44:46 PM EDT
[#5]



Quoted:






I had one computer so badly infected with malware, rootkits and the like it took combofix over four hours to clean all the crap off it. Comptuer runs like a champ now.







LOL



Reminds me of an old 486 DOS/Windows 3.1 office computer that was given to me years ago.  There was a very impressive list of bookmarks, for a business computer.  When I scanned it with the current version of Norton, or whatever, back then the scanner found close to 800 malware files on it.
 
5/11/2011 2:06:04 PM EDT
[#6]
Just backed up and re-installed my computer after my youngest son picked up that fuckin' security essentials shit.  It actually disabled my dvd burner,  I had to unplug my sata drives and pull the bios backup battery and "hot plug" the drives back in to get the windows disc to work.  That shit was in the ram until I powered down the computer and unplugged it and held the power button.  

I'd like to meet the bastard that wasted their time writing that useless program/malware.
5/11/2011 3:52:37 PM EDT
[#7]
Yeah, you have to run the progs. in SAFE MODE......you know who is making these viri's?  The SAME MF's that write and program the Aniviri and malicious software......
5/11/2011 4:56:15 PM EDT
[#8]
restart in safe mode with networking. Update malwarebytes. If it won't update, then reinstall it. If you can't get on line, then you have a proxy in your browser and you have to use no proxy and you should be able to get on line
5/11/2011 4:57:41 PM EDT
[#9]
safe mode + Combofix (bleepingcomputer.com)





It just flat out works. The other methods are hit or miss (personally cleaned two computers in the last month this way for the virus you mentioned)

 
5/11/2011 4:57:47 PM EDT
[#10]
This sounds like the "vista total security 2011" i just fought with

Go in safemode and install malware bytes, or spybot s&d (I used malware bytes).
If you can't just click the install .exe and have it run, you might have to do it via command line, which is what i had to do

it sucks, but you gotta scan andscan again to get rid of it all
5/11/2011 5:05:47 PM EDT
[#11]
Dealing with this now for the 4th time in 3 months.  My chick is going on some dirty sites or something to keep getting this on her laptop.  I found a decent way to get rid of it.  Try safe boot and run malware bytes or similiar.  If you cant run .exe files try downloading these files http://www.bleepingcomputer.com/download/anti-virus/rkill .  They seem to kill a part of the virus so you can run .exe files.  Then I run malware bytes and get rid of it.