This morning, i have had Warning Messages saying my Computer's Security is under attack from Malware and some Trojan program. It keeps asking me to purchase some protection software, but ive been told not to do that. What shall I do?
This morning, i have had Warning Messages saying my Computer's Security is under attack from Malware and some Trojan program. It keeps asking me to purchase some protection software, but ive been told not to do that. What shall I do?
DukeOfUndersteer wrote: This morning, i have had Warning Messages saying my Computer's Security is under attack from Malware and some Trojan program. It keeps asking me to purchase some protection software, but ive been told not to do that. What shall I do?
That stuff is called 'scareware' and no, you shouldn't pay them any money.
To be on the safe side I'd probably run a virus scan with an up-to-date scanner and then use something like Spybot Search & Destroy to clean out more crap.
Depending on what sort of virus scanner you're using (free or paid for), I'd also install ThreatFire - it works well with most virus scanners and tends to provide a little added security.
Get the spybot software here: http://www.safer-networking.org/en/mirrors/index.html It's a good product and it finds malware like what you have now, as opposed to virus scanners.
This is a pretty popular malware attack these days, they even have one that tries to make you download fake Macintosh malware software.
Recent versions of that fake antivirus are horrible to remove. It changes the association of EXE files (WTF was Microsoft thinking when they allowed the existence of this feature!?!?) and I know a lot of ways to fix that problem, but so far at the office the only solution we've found (for this particular virus) is to delete the user's registry - same thing as re-creating their user account. Luckily Vista and 7 will auto-fix their EXE association on startup so it's easier to remove from those.
If you see that thing again, hit Ctrl-Shift-Esc and kill your browser. Don't touch anything in that fake AV window. If you see the fake AV icon in your notification area, you're already infected - and I've seen this thing do a pure drive-by infection, no user interaction necessary, on a fully up-to-date AV-protected PC.
Protip: Use Firefox with the FlashBlock addon. That will give you a big security and performance improvement. BetterPrivacy is also worth looking into (although the latest Flash is supposed to take care of the privacy issues). If you were more of a techie I'd also recommend the NoScript, Perspectives and CookieMonster1 plugins.
Just finished the Spybot program, everything is gone!
Think how i acquired said malware was when i was looking for wiring diagrams for the GTI, clicked on a bad page...
DukeOfUndersteer wrote: Think how i acquired said malware was when i was looking for wiring diagrams for the GTI, clicked on a bad page...
You could get it while browsing CNN. The malware is delivered through ads these days - the black hats make an ad with a browser exploit in it, the dumb ad delivery networks push the it to many legitimate sites as-is, and then you see the ad and BOOM, virus.
GameboyRMH wrote:DukeOfUndersteer wrote: Think how i acquired said malware was when i was looking for wiring diagrams for the GTI, clicked on a bad page...You could get it while browsing CNN. The malware is delivered through ads these days - the black hats make an ad with a browser exploit in it, the dumb ad delivery networks push the it to many legitimate sites as-is, and then you see the ad and BOOM, virus.
daaaaamn! Guess nowhere is safe now, except for GRM
Ya, scareware, don't click agree/ok/buy, close it out. I clear out the temp directories then use download.com to get Spybot Search and Destroy, Lavasoft Adaware, Malwarebytes and Tweaknow Regcleaner. All freeware, all simple to install, update and run and pretty effective at removing crud. Throw on a free firewall like zonelabs or pctools. I also use an antivirus and reg mechanic, former is also freeware, latter is not. Superantispyware is good and free too.
Wifey got that on hers last night. Restart it in safe mode and run system restore. Restore to a time before it was there and stop downloading porn. OK, its not related to porn, but let me know if that works.
disregard that then.
There is a much worse version that locks down all programs as it is rooted. Nasty nasty thing. Theys getting smarter.
You'll need to log in to post.