HELP...Virus!!
 

MegaSack DRAW - This year's winner is user - rgwb
We will be in touch

[Closed] HELP...Virus!!

31 Posts
11 Users
0 Reactions
105 Views
Posts: 0
Free Member
Topic starter
 

Can anyone please help?!

My Gf switched on her lap top yesterday and has received a unwanted virus, the virus being something called Disc Anti-Virus professional

We are wanting to remove this with out paying any of the so called Quick fixes on the Internet which i am pretty sure are all part of the same scam/virus to get your cash!

Anyone out there had similar problems and if so can you please help with sorting this issue?!


 
Posted : 20/03/2013 7:52 am
Posts: 17
Free Member
 

Microsoft Security Essentials?
What AV do you have?


 
Posted : 20/03/2013 7:53 am
Posts: 293
Free Member
 

Cougar is your man, apparently he was found guilty of crimes he didnt commit but escaped to the L.A. underground, not sure he is still wanted by the government but if no one else can help and you can find him ..............


 
Posted : 20/03/2013 7:56 am
Posts: 25877
Full Member
 

a few of the AV makers offer online scanners - try googling "panda online scan" or eset online scan

(you might need to run the pc in safe mode with networking but I don't know much about it - what you need is a grown-up computer person to help. If only we had any at all on here 🙁 )


 
Posted : 20/03/2013 8:07 am
Posts: 91098
Free Member
 

Don't do online scans!

Have you googled for how to remove this thing? What are the symptoms? Is it one of those ones where every webpage gets redirected to the same page?


 
Posted : 20/03/2013 8:45 am
Posts: 25877
Full Member
 

molgrips - Member
Don't do online scans!


 
Posted : 20/03/2013 8:59 am
Posts: 0
Free Member
Topic starter
 

She has googled how to remove yes and it comes up with lots of solutions but they all want to charge for there services! though we have now found a couple that say they are free so are waiting to here back from people on here before we go ahead and try one of the so called free removals!

The symptoms are that it says her AV is out of date and the system is at risk of being attacked and they are trying to get us to pay to prevent that happening and no matter what she try's it just keeps popping up with the same messages all the time! she says her AV is up to date and when we google it seems the virus is quite well known!

Am thinking just go buy a new lap top as she has had this one for a number of years now!


 
Posted : 20/03/2013 9:03 am
Posts: 91098
Free Member
 

Buy a new laptop?

Do you replace your car if it gets a flat tyre?!

Laptops don't get slow over time - Windows does. Just restore it from the recovery partition if it's playing up.

it says her AV is out of date

Where doe sit say this? Is it an internet explorer pop-up window? Or is it some other message?


 
Posted : 20/03/2013 9:07 am
Posts: 251
Full Member
 

[i]Am thinking just go buy a new lap top[/i]

😯

Cougar will confirm but I'd go on one of the reputable AV sites on another pc (Avast/MSE/etc) and use their tools to create a boot cd/usb stick with an AV on it.

Boot from the cd/usb stick and clean the laptop from there.

Alternatively go along to your local computer shop and they'll probably do the same for £25.

You really don't need a pc and I suspect from what's been said there may stuff on there she hasn't backed up so you'll need to get that off without infectign wherever it's going to.


 
Posted : 20/03/2013 9:12 am
Posts: 28550
Free Member
 

System restore to a restore point a few days ago might help, although it's not guaranteed.

EDIT: Searching 'Disc Anti-virus Professional Malware' seemed to throw up a few reasonable-sounding ways to get rid.


 
Posted : 20/03/2013 9:13 am
Posts: 0
Free Member
 

If you feel out of your depth then it may be worth buying some decent AV and Firewall security?

I use and rate Comodo's suite of products. Its about $20 for a year's subscription and they have online remote assistance with a thing called Geek Buddy and they can help fix you up. Often when you try to install AV systems or removal tools when you are infected the virus works to prevent you from doing so and unless you are really savy it can be a bit boggling.


 
Posted : 20/03/2013 9:23 am
Posts: 4
Free Member
 

Download and burn this to a dvd or put on a usb stick: [url= https://support.kaspersky.com/viruses/rescuedisk ]https://support.kaspersky.com/rescuedisk[/url] boot from it (usually f9 to choose boot options) enable networking, let it download latest definitions and then run it (takes a while) should remove all that cr*p. All Free.


 
Posted : 20/03/2013 9:37 am
Posts: 77696
Free Member
 

[url= http://downloads.malwarebytes.org/mbam-download.php ]Malwarebytes[/url] is your first port of call, if it will install. Download it on a clean machine and copy it to a USB stick.


 
Posted : 20/03/2013 10:02 am
Posts: 0
Free Member
Topic starter
 

Cougar can i download this from my mac onto USB then insert USB to PC and download onto infected PC/Lap top? Will it matter that i a have used a Mac?

Fingerbike thanks for your input will try that next should this not work and thanks to everyone else for there input!


 
Posted : 20/03/2013 10:06 am
Posts: 17
Free Member
 

right forget what this lot say go see somebody and pay them to fix it 🙂


 
Posted : 20/03/2013 10:08 am
Posts: 0
Free Member
Topic starter
 

OK Cougar in turns out she has already installed Malwarebytes but they are asking for a fee and we are trying to avoid paying to remove, what next please? if i need to pay i will but would prefer not too!


 
Posted : 20/03/2013 10:09 am
Posts: 91098
Free Member
 

Download and burn this to a dvd or put on a usb stick: https://support.kaspersky.com/rescuedisk boot from it

That sounds like a good idea, as if you are booting from the USB stick then it doesn't matter how buggered your system is, it'll still work.

OK Cougar in turns out she has already installed Malwarebytes but they are asking for a fee

Malwarebytes is free.


 
Posted : 20/03/2013 10:09 am
Posts: 0
Free Member
Topic starter
 

Thanks for that mikewsmith that would be my last resort but going to try and see if i can remove myself with a little help from these guys on here


 
Posted : 20/03/2013 10:10 am
Posts: 0
Free Member
Topic starter
 

molgrips not sure what you are saying there, is it a good idea to try what fingerbike suggests or not? with regards the USB?


 
Posted : 20/03/2013 10:13 am
Posts: 0
Free Member
Topic starter
 

OK molgrips thanks for tip with regards Malware, we now have it running so will be interesting to see what happens! any idea how long it takes and what i should expect at the end of it? Hopefully a virus free lap top!


 
Posted : 20/03/2013 10:15 am
Posts: 251
Full Member
 

if it's asking you for money it's still the original virus.

As above, get Malwarebytes on a usb stick on a sifferent pc and boot from that rather than the laptops hard drive.


 
Posted : 20/03/2013 10:17 am
Posts: 17
Free Member
 

yeah I was thinking the last resort is coming close 🙂

not sure how Kapersky rates these days but getting some fresh AV in there is the key. Read the info on their site first and print off any instructions.

I have rescued stuff with avg free and others, better to use a CD if you can as it can't get infected back if it goes wrong.


 
Posted : 20/03/2013 10:17 am
Posts: 77696
Free Member
 

Yup.

When it completes, it'll save a log (opens in Notepad). A copy of that text would be helpful.


 
Posted : 20/03/2013 10:18 am
Posts: 91098
Free Member
 

is it a good idea to try what fingerbike suggests or not?

Yes. However if you've managed to download and install malwarebytes the usual way, then it should be ok.


 
Posted : 20/03/2013 10:20 am
Posts: 0
Free Member
Topic starter
 

Once again guys thank you for your help so far.

Having to pop out for a couple of hours so will leave the Malware to do its thing and see what happens when i return.

Cougar will get you a copy once it has gone into notepad..thanks


 
Posted : 20/03/2013 10:32 am
Posts: 0
Free Member
 

The very first result on google for the name of the virus is a detailed step by step removal guide.

http://malwaretips.com/blogs/remove-disk-antivirus-professional-virus/

And yes, all free.


 
Posted : 20/03/2013 11:19 am
Posts: 0
Free Member
Topic starter
 

OK guys it looks like the Malware has sorted the problem but says we only have 13 days left of its use?!

What do you guys reckon we should have as security for this Lap top in the future? once again not really wanting to pay if possible!

Cougar i hope i have sent you a Email with what you requested! lol


 
Posted : 20/03/2013 12:51 pm
Posts: 77696
Free Member
 

MBAM is free, but there is a paid-for 'pro' option which you don't need.

I'm going to write a blog post or something about Windows security as this is a common question. The short version is: safe computing practices, software updates, AV (in that order).

I've got your email ta, will review it shortly.


 
Posted : 20/03/2013 12:53 pm
Posts: 77696
Free Member
 

Right.

You have - or have had - a Virtumondo infection and the 0Access rootkit (and a bunch of other stuff).

As a minimum, I'd run [url= http://vundofix.atribune.org/ ]Vundo Fix[/url] and TDDSKiller (see the excellent post by "MrCharlie" [url= http://forums.malwarebytes.org/index.php?showtopic=115373 ]here[/url]).

However, given the severity of the infection and the nastiness of the payload, I would give serious consideration to backing up anything you want to keep and then wiping the lot and rebuilding. Note that 0Access can compromise personal details; I'd suggest changing passwords for any websites you've logged into recently, particularly bank and email accounts. [b]Do this on a clean machine![/b] If you've used internet banking or bought anything online I would also, seriously, review your bank balance and recent transactions for malicious activity.


 
Posted : 20/03/2013 1:07 pm
Posts: 0
Free Member
Topic starter
 

Thanks for that cougar we have now changed all passwords on a clean computer and so far so good with no unauthorised transactions! And we will take your advice and do a complete clean up of the Lap top.

Thanks so much for your help on this matter and fingers crossed that is the end of it!


 
Posted : 20/03/2013 3:04 pm
Posts: 77696
Free Member
 

Cool. No worries.

Most modern laptops come with some sort of 'restore factory defaults' option; the last one I did you'd to press F3 on bootup, but this will vary between manufacturers.


 
Posted : 20/03/2013 3:09 pm
Posts: 91098
Free Member
 

Wow, you were done pretty good!

the last one I did you'd to press F3 on bootup

Northerner!


 
Posted : 20/03/2013 3:16 pm