View previous topic :: View next topic |
Author |
Message |
faceless admin
Joined: 25 Apr 2006
|
Posted: Sun May 02, 2010 5:27 pm Post subject: Bloody infection! |
|
|
|
|
I'm typing this on my spare computer as my main one has become infected with some bastard virus that's blocking me from doing just about anything.
I can't install anything, or go into safe mode, so I'm going to have to plug the hard drive from it into this computer and try to clean it that way.
What a bastard though! It's the first time in maybe 3years that I've been affected, but it's still bloody annoying. |
|
Back to top |
|
|
modern
Joined: 04 Jan 2009
|
Posted: Sun May 02, 2010 7:19 pm Post subject: |
|
|
|
|
Is it something going about or are the gremlins just after you???
Pain in the arse though, right?! |
|
Back to top |
|
|
faceless admin
Joined: 25 Apr 2006
|
Posted: Sun May 02, 2010 7:33 pm Post subject: |
|
|
|
|
it's a multi-faceted spyware/virus thing which I think I got after using a keygen from a non-safe site last night.
It's basically affected the windows security advsor and is blocking me from running anything (such as regedit) and also won't let me get into safe mode.
There's not much you can do when it's like that, but I've got the drive plugged into this computer now and am scanning it - hopefully I'll be able to get rid of at least part of it this way and then be able to sort the rest later.
If not, I'll have to delete windows and reinstall - harrumph! |
|
Back to top |
|
|
Ash
Joined: 22 May 2007 Location: Al-Ard
|
Posted: Sun May 02, 2010 7:58 pm Post subject: |
|
|
|
|
Sorry to hear about that, face. ... (in case you don't know,) Hiren's bootCD probably* has something to address this sort of problem.
[*] My problem was entirely different - screwed up hd partition whilst trying things in Acronis. Now I use cobian for my backup - free and very easy to use. |
|
Back to top |
|
|
faceless admin
Joined: 25 Apr 2006
|
Posted: Sun May 02, 2010 11:30 pm Post subject: |
|
|
|
|
well that's me back online with this computer now - I had to reinstall windows completely as the virus ended up deleting the contents of the windows/system folder and that stopped it from even booting.
Just a malicious bastard thing with no real intent. It had posted links to sites like youporn on the desktop while forcing explorer to open at a page called av-force.net.
this page gives some info on what that site is.. CLICK
But that was only one part of it - in those intstructions it says to edit the registry, but some other part of the virus pack had blocked any access to msconfig, regedit etc. On starting in safe-mode it gave a 'this product is not activated' screen, so it was impossible to get past that too.
Quite a substantial computer-fecker all-in-all. Just as well I keep everything of value on other computers... |
|
Back to top |
|
|
SquareEyes
Joined: 10 May 2009 Location: Vienna, Austria
|
Posted: Mon May 03, 2010 3:04 pm Post subject: |
|
|
|
|
I'd recommend always running keygens etc. from within a sandbox (download Sandboxie - it's free & safe). |
|
Back to top |
|
|
faceless admin
Joined: 25 Apr 2006
|
Posted: Mon May 03, 2010 3:09 pm Post subject: |
|
|
|
|
I've not heard of that, but I'll give it a go - my first thought yesterday was that the only way to be sure of safety was to do it within a virtual machine...
just gave it a shot and it doesn't work on XP64. Bah. |
|
Back to top |
|
|
major.tom Macho Business Donkey Wrestler
Joined: 21 Jan 2007 Location: BC, Canada
|
Posted: Mon May 03, 2010 11:55 pm Post subject: |
|
|
|
|
Sorry to hear about your bad luck, faceless.
While less frequent, it still seems that occasional re-format-and-install's are still necessary. For this reason, I decided years ago to make it a little easier for myself to accomplish this with minimal loss of data. I use a small (20-30 GB) partition for my C: drive and map my "Documents" folder to another partition. For the most part, this means that a re-format only requires re-installing programs.
There are a couple other small things (Firefox profile) but that's not difficult to work around. (Firefox -P allows you to create your profile -- bookmarks, etc -- somewhere outside of the c: partition.) |
|
Back to top |
|
|
SquareEyes
Joined: 10 May 2009 Location: Vienna, Austria
|
Posted: Tue May 04, 2010 2:49 pm Post subject: |
|
|
|
|
faceless wrote: | I've not heard of that, but I'll give it a go - my first thought yesterday was that the only way to be sure of safety was to do it within a virtual machine...
just gave it a shot and it doesn't work on XP64. Bah. |
I'll PM you another solution... |
|
Back to top |
|
|
|
|