![]() |
|
![]() |
#1 | |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Malware Defender 2009
Nasty. Nasty. Nasty.
Took me all day to get my PC working to some semblance of its former self. Two main problems I have now which I can't seem to resolve:
Any assistance would be greatly appreciated before I wipe the hard drive and start again. You need to be THIS HOT... ![]() To ride the KYR Train Step aside, if you don't wanna ride! Quote:
|
|
![]() |
![]() |
#2 |
Unnecessarily awesome
Posts: 8,323
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
http://www.bleepingcomputer.com/viru...-defender-2009
I've used this process to remove other viruses (Virtumonde) |
![]() |
![]() |
#3 |
Posts: 19,298
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
^Yep. 'Vundo' is horrible. Have fixed at least 3 computers with it or a variant in the past, and it is probably one of the biggest PITA's to get rid of manually (without formatting).
|
![]() |
![]() |
#4 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Thanks guys.
I'll download Malwarebytes when I get home and see if it picks up anything SDr missed. |
![]() |
![]() |
#5 |
dirty irani
Posts: 11,956
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Wow, was just talking to Mike about this last night.
I have the same thing on my laptop, won't let me upgrade AVG, it doesn't even stay on long enough for me to get rid of the thing. The laptop stays on for about 2 mins and then freezes so I need help to. Anyone |
![]() |
![]() |
#6 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Same thing I experienced at first.
Took me a lot of re-booting to gradually edit out and delete all the crap out of the registry and start-up to get to the point where it didn't freeze up for about 30 mins each time. I think if you can download malwarebytes onto a DVD so you can load it quickly onto your laptop will help. Other suggestions I've found on-line is to re-boot in Safe Mode with network access to see if you can download m-bytes directly. The link VC provided has a fairly comprehensive guide on things to try. I'll be home in a couple of hours and will try it. |
![]() |
![]() |
#7 |
dirty irani
Posts: 11,956
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
How did you delete the crap out of registry and start up?
|
![]() |
![]() |
#8 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
I had my laptop with me and I found a site with some step-by-step tips.
I booted my PC and went straight into the registry and found the infections and deleted them. Could only delete one or two at a time before it 'froze' on me again and had to re-boot. To edit the registry, click 'Run' and type 'regedit'. This opens up the registry. |
![]() |
![]() |
#9 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
These are the registry entries that you need to delete...
HKEY_CLASSES_ROOT\CLSID\{3F0691F1-70E6-44A9-938A-1DC356674878} |
![]() |
![]() |
#10 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
These are the files that you need to delete...
c:\Program Files\Malware Defender 2009 |
![]() |
![]() |
#11 |
A Property of Matter
Posts: 25,543
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
I got a terrible virus last night as well. I formatted though because I am a big stupid head.
|
![]() |
![]() |
#12 |
Mad
Posts: 26,228
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
All fixed?
Also, download spybot search and destroy, and lavasoft adaware, install them, boot windows into safe mode, use msconfig to configure your startup to not run the virus shit, reboot back into safe mode, run spybot and adaware, clean shit up, reboot back into safe mode, run them again, make sure you use the spybot immunize function to help prevent virus' in the future. Instead of AVG free, use avira antivirus, it's a shitload better, and free as well, or spend the cash and get nod32. |
![]() |
![]() |
#13 |
Mad
Posts: 26,228
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
And that's the bottom line.
|
![]() |
![]() |
#14 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
I've used spybot in the past but it seemed to be resource hungry (was a few years ago).
Does the 'immunize function' slow everything down if it's on all the time or can you set it to 'scan' periodically? Or is the alternative to be better safe than sorry and up my RAM? |
![]() |
![]() |
#15 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
I'm also paranoid at the moment about 'buying' things on-line atm. Just in case that malware shit is still lurking around in some form.
Think I'll buy it over the counter. |
![]() |
![]() |
#16 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
And thanks.
![]() |
![]() |
![]() |
#17 |
Mad
Posts: 26,228
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Spybot is awesome, just dont install that teatimer and system protection shit, just use it as a tool to scan for spyware when you want it.
Immunization won't use any extra resources, all it does is, when your pc tries to visit known spyware/virus/adware sites and addresses, it tricks it into visiting a safe site (your own pc). Also, www.eset.com is the maker of nod32, get the full smartsecurity program with the firewall if you want, its pretty good. I run it. |
![]() |
![]() |
#18 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Update:
Downloaded malwarebytes - could not even get it to install. Downloaded Spybot - installed but would not open. Downloaded Adaware - installed and opened. It found a couple of minor infections but none related to Malware Defender. Screen is still freezing and I still can't install AVG. I have two internal hard drives. 'C' drive is 50GB and 'D' drive is 150GB. Should I load Windows onto the 'D' drive and make it the 'Master' and then wipe the 'C' drive and start again? Or just wipe the 'C' drive and reload Windows? |
![]() |
![]() |
#19 |
Unnecessarily awesome
Posts: 8,323
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Is it the same problem if you try to install/run the programs in safe mode?
|
![]() |
![]() |
#20 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Yep. Tried doing everything in both Safe Mode and Normal Mode as per BC's instructions.
|
![]() |
![]() |
#21 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
<<< I did THAT a lot last night.
![]() |
![]() |
![]() |
#22 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
OK. I'm now thinking of buying a new hard drive and starting from scratch.
I can get one for ~$60 (Seagate 500GB, 160MB/s, 16MB cache). I can then keep my old hard drive (as is - just in case my back-ups didn't work). Question. What's the difference between IDE and SATA? Can I use either or would my motherboard be specific for just one or the other? |
![]() |
![]() |
#23 |
Unnecessarily awesome
Posts: 8,323
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
SATA is faster than IDE.
Newer motherboards (like 4 or 5 years old) should have both SATA and IDE connectors. And you should be using SATA whenever possible (if your motherboard has the connectors, of course). |
![]() |
![]() |
#24 |
Posts: 19,298
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Yeah, all the sites that explain how to get rid of it act like it is an easy process. But they forget the fact that these viruses fuck with a shit ton of stuff and block access to internet, downloading, installing... ugh.. Huge pain in the ass. Hate these 'whatever 2009' fucking things. Don't know how they even get on people's computers in the first place.
HMMM KYR? |
![]() |
![]() |
#25 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
I don't know either.
I mean apart from TPDUB the only other site I visit is a Bible Scriptures site. ![]() |
![]() |
![]() |
#26 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Update.
Got the new hard drive and installed it. Loaded Windows and the rest of the programs. Had a bit of trouble with my sound card - kept getting a 'Code 10' error message. Apparently this is a pretty common problem judging by the various forums I looked at trying to solve the problem. Took me about a day to find a driver that actually worked but all good now. I must say, it's nice to start with a 'clean slate' so to speak without a couple of years' worth of stored crap. |
![]() |
![]() |
#27 |
Mad
Posts: 26,228
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Yup, bet it's going a shitload faster. How much memory have you got? Might be the next wee upgrade.
|
![]() |
![]() |
#28 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
It is going much faster.
I've currently got 2GB's of RAM...gonna double it this weekend. ![]() |
![]() |
![]() |
#29 |
He's Here
Posts: 60,735
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Pfft, my ram's bigger.
![]() ![]() |
![]() |
![]() |
#30 |
Mad
Posts: 26,228
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
12gb here
![]() |
![]() |
![]() |
#31 |
He's Here
Posts: 60,735
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
|
![]() |
![]() |
#32 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
I feel so...inadequate
![]() |
![]() |
![]() |
#33 |
Unnecessarily awesome
Posts: 8,323
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Screw BC and his DDR3 :foc:
|
![]() |
![]() |
#34 |
ELF ANGEL
Posts: 39,476
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
KYR, if you can locate the file itself and can right click on it, download Unlocker. I did that and got rid of a few rather annoying undeleteable files.
|
![]() |
![]() |
#35 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
|
![]() |
![]() |
#36 |
ELF ANGEL
Posts: 39,476
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Ok, there should be a file containing all the Malware Defender stuff in it, If you try to delete it and it wont let you try the program I mentioned. If I am totally of the mark, sorry.
|
![]() |
![]() |
#37 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Nah. Hard drive's been wiped. Got a new one as well.
All good. |
![]() |
![]() |
#38 |
ELF ANGEL
Posts: 39,476
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Thats pretty shitty bud. Oh well, nice to start off with a clean slate.
|
![]() |
![]() |
#39 |
Bringin' Back The Sexy
Posts: 8,470
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Actually I look at it as a good thing now.
It was always bugging me that there were annoying little things wrong and wanted to format my hard drive and start again. The thing that always stopped me was the fact that I'd have to go through all the crap of re-loading all my programs etc. etc. This just provided the impetus for me to finally do it. |
![]() |
![]() |
#40 |
He's Here
Posts: 60,735
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
I reinstall every few months. >.>
|
![]() |