...can assist me in my current endeavor.
I've spent two days trying to save my parents computer from the clutches on what is by far the worst bit of, I don't even know what to call it...I suppose its malware.
Backstory:
My mother decided it was cheaper not to renew her anti-virus/firewall subscription and went a year on guarded, I ran several spyware removal programs, malwarebytes, put on a firewall and several other things they needed. Only to discover something call "Internet Security Essentials" was on the computer. Nothing seems able to touch it. I killed the process tree, I went in and found several of its files, an invisible folder, unregistered is .dll, and killed a ton of its registries. Still it persists. Its not running as far as I can tell and every file that seems to be know to be associated with it has been deleted.
I'd like to run AVG but it seem that ISE is blocking it or any antivirus from installing because it lists itself as an antivirus and firewall. I've researched the bastard at length and applied several method of killing it and it won't die.
If any one can assist me I shall reward you.
Google link does not get you shit cause I've gone about 20 pages into several google searches seeking an answer.
Results 1 to 9 of 9
Thread: Wealth & Glory To Whoever
- 27 Feb. 2011 09:35pm #1
Global Moderator Literally Hitler
Morbidly Obese
Bird Jesus
- Age
- 35
- Join Date
- Nov. 2009
- Location
- The Land Of Ooo
- Posts
- 8,569
- Reputation
- 711
- LCash
- 62.38
Wealth & Glory To Whoever
- 27 Feb. 2011 10:05pm #2
windowsbbs.com.
Post your problem there, they will remove it.
You have a rootkit/rogue antivirus (Rogue being malware posing as antivirus.)
Post in forum Security > Malware and Virus Removal
http://www.windowsbbs.com/malware-virus-removal/LG's resident grammar nazi.
Need warez? I can probably find it for you. Throw me a PM.
For all of my sales, if you refer a buyer to me and they make a purchase, you can recieve 5%
- 27 Feb. 2011 10:12pm #3
Format and reinstall.
- 27 Feb. 2011 10:13pm #4
I had the same problem about a year ago, same virus name.
My computer had it much worse, I was unable to connect to the internet, even after I killed the process tree, deleted registries etc. The only thing that removed it was a complete system restore, and I got the virus while running kaspersky 2010.
Contact a proffesional, or Chad or gamechief if you can contact him.
- 27 Feb. 2011 10:14pm #5
Administrator Best Avatar Award
- Age
- 32
- Join Date
- Nov. 2009
- Location
- Buenos Aires, Argentina
- Posts
- 6,251
- Reputation
- 790
- LCash
- 10.39
Now it's the moment to delete system32.
- 27 Feb. 2011 10:31pm #6
- Age
- 97
- Join Date
- Nov. 2009
- Location
- In the computer
- Posts
- 11,186
- Reputation
- 1029
- LCash
- 10.13
- Awards
Contact Defy.
- 27 Feb. 2011 11:21pm #7
- Join Date
- Feb. 2010
- Location
- Right Behind You! BOO!! :D
- Posts
- 878
- Reputation
- 20
- LCash
- 16.37
That used to happen a lot when I was at work, since we were all connected in the state computer network people would get that same crap on their computers and eventually I'd end up with it. Our IT people used Super Anti Spyware (go to |MG| SUPERAntiSpyware 4.49.0.1000 Download ) and run that on safe mode after installing it. It will install even if the malware claims to be an antivirus, and this picks up a lot of stuff other programs wont. Run a complete scan and then run malwarebytes after it. If all else fails though do a system restore and run the programs again in safe mode.
I'm a Girl! Please stop referring to me as a guy!
- 28 Feb. 2011 01:42pm #8
Global Moderator Literally Hitler
Morbidly Obese
Bird Jesus
- Age
- 35
- Join Date
- Nov. 2009
- Location
- The Land Of Ooo
- Posts
- 8,569
- Reputation
- 711
- LCash
- 15.13
That's for failures.
After that I should pull the hard drive out and rub it with an industrial strength magnet right?
Ultimate solution, was to run rkill, run Malware bytes twice, then install and fun Avg, then Avg Tune up, CCleaner, regedit, cmd to unregister dll, and finally install Spybot and run its ass too. Multiple restarts were involved as well.
The internet connection problem is due to ISE configuring your connection for a proxy and running your connection through a lan. That's the easy part to fix.
- 01 Mar. 2011 12:17am #9
Wealth and Glory = to me.
Huzzah!
Disco is neat.