Total Security Computer virus

Mantidforum

Help Support Mantidforum:

This site may earn a commission from merchant affiliate links, including eBay, Amazon, and others.
Also, another tip. Disable system restore, and then restart your PC. Often a virus will get backed up in system restore, so when you switch back on your PC, it will regenerate from the restored files.

This is another thing that a lot of people bypass, that actually causes a lot of problems.

Kind of opposite to this, what you could try, is just a system restore, as this often restores your PC back to a state when you didn't have the virus. Try this first, if it doesn't work, then give the disabling system restore a go.

I believe combofix will work in safemode, yes.

 
Last edited by a moderator:
Kind of opposite to this, what you could try, is just a system restore, as this often restores your PC back to a state when you didn't have the virus.
The first thing this type of virus program does is delete all your old restore points.

 
Also, another tip. Disable system restore, and then restart your PC. Often a virus will get backed up in system restore, so when you switch back on your PC, it will regenerate from the restored files.This is another thing that a lot of people bypass, that actually causes a lot of problems.

Kind of opposite to this, what you could try, is just a system restore, as this often restores your PC back to a state when you didn't have the virus. Try this first, if it doesn't work, then give the disabling system restore a go.

I believe combofix will work in safemode, yes.
There are a number of viruses, particularly those used with the popup programs offering to sell you "anti spyware" to clean out the virus that they have just loaded on your computer, that live in "system restore." By using that program, you are just spreading the virus.

 
There are a number of viruses, particularly those used with the popup programs offering to sell you "anti spyware" to clean out the virus that they have just loaded on your computer, that live in "system restore." By using that program, you are just spreading the virus.
Yep, and the majority of a lot of those rogue spywares are actually further enhanced by rebooting/restarting your computer. What happens when you reload a computer as it restarts the whole registry begins to process which is usually where the virus is. Usually if you get a virus, you should never shut the computer off... In other words system restore will not work. The easiest way to get rid of a virus on PC is either A. have some pretty darn good antivirus stuff (ie paid for it...) or reboot windows. Rebooting windows is a heck of a lot easier...just time consuming.

 
have some pretty darn good antivirus stuff (ie paid for it...)
I disagree with this to be honest I don't even use antivirus most I use is programs to get rid of spyware etc. The few times I actually do a scan with antivirus I've never had a problem imo you actually have to TRY to get a virus.

 
Hmm, Tried using combofix last night from the boot disk and it wouldn't work for some reason.

How do I disable system restore? I think it may already be disabled, as my friend tried to restore my comp a couple weeks prior to the virus, and he couldn't get it to work.

I was thinking abou the hijack this log, but I can't access the internet with my infected PC. Maybe I can store the log on a flash drive and put it onto my mac?

 
Okay guys - I'm now here happy and back on my PC. My Friend came over, and we booted from safe mode and decided to try deleting the virus files from the registry again. Turns out every other time we had done this, we were leaving out one file. (decided to look at a new website listing the registry files)

Sure enough, fixed =)

for anyone else that becomes infected with this virus, you have my greatest sympathy - here is the list we used to get rid of it.

http://www.symantec.com/norton/security_re...-99&tabid=3

Thanks everyone for all your input! This was a nightmare for me, and I'm just glad to have my PC back. Next paycheck I'm going to buy an external harddrive and back up my stuff just incase i ever run across a situation like this again.

 
Nice to here. Those pesky registry files suck. Definitely get an external harddrive, it's always great to have a backup :)

Oh, and don't look at anymore porn :) :p :D

 
Last edited by a moderator:
Hmm, Tried using combofix last night from the boot disk and it wouldn't work for some reason.How do I disable system restore? I think it may already be disabled, as my friend tried to restore my comp a couple weeks prior to the virus, and he couldn't get it to work.
Congratulations on your victory! Just in case you ever have to mess around with System Restore again, you can switch it off by going to Accessories, Security, System Restore, and click on "open system protection." This will give you System Properties. Click on any box with a check mark(tick) on it until they are all blank and the computer is getting very excited about your losing all your "protection".

As you suggested, some anti malware programs will disable System Restore to prevent nasties from invading it.

 
Top