Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 08-03-2010, 10:09 AM   #1
Sly
Let's do some business!
 
Sly's Avatar
 
Industry Role:
Join Date: Sep 2004
Location: Austin, TX
Posts: 31,289
Windows Defender 2010

Man I'm having a bad week. Two different viruses on two different computers.

When I run MalwareBytes on regular boot, it finds and eliminates the files but it does not fix the problem. Upon reboot, everything is back to normal. When I run MalwareBytes in safe mood, it does not find anything at all.

I'm finding tons of different guides and they all have different directions and they also talk about different versions needing different remedies. Anybody conquer this bitch successfully?
__________________
Vacares - Web Hosting, Domains, O365, Security & More - Paxum and BTC Accepted

Wanted: CCBill pay sites for sale
Sly is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 10:10 AM   #2
Amputate Your Head
There can be only one
 
Amputate Your Head's Avatar
 
Industry Role:
Join Date: Aug 2001
Location: Somewhere else
Posts: 39,075
Quote:
Anybody conquer this bitch successfully?
Yep. Back in '07 when I switched to Macs and shitcanned all my PCs.
__________________
SIG TOO BIG
Amputate Your Head is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 10:13 AM   #3
erooup
Confirmed User
 
erooup's Avatar
 
Industry Role:
Join Date: Jul 2010
Posts: 512
You need to reinstall at this point. Copy your data to another drive, format and reinstall again. Stop wasting your time, trying to find a cure for a terminal ill patient.
erooup is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 10:24 AM   #4
Sly
Let's do some business!
 
Sly's Avatar
 
Industry Role:
Join Date: Sep 2004
Location: Austin, TX
Posts: 31,289
Quote:
Originally Posted by erooup View Post
You need to reinstall at this point. Copy your data to another drive, format and reinstall again. Stop wasting your time, trying to find a cure for a terminal ill patient.
What's the best way to copy my data? I do have an external drive.

And what about all of my software? Will companies typically give you your activation code again in situations like this?
__________________
Vacares - Web Hosting, Domains, O365, Security & More - Paxum and BTC Accepted

Wanted: CCBill pay sites for sale
Sly is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 10:34 AM   #5
Amputate Your Head
There can be only one
 
Amputate Your Head's Avatar
 
Industry Role:
Join Date: Aug 2001
Location: Somewhere else
Posts: 39,075
Quote:
Originally Posted by Sly View Post
What's the best way to copy my data? I do have an external drive.

And what about all of my software? Will companies typically give you your activation code again in situations like this?
You don't save your software license information and setup files?

Like this:

__________________
SIG TOO BIG
Amputate Your Head is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 10:36 AM   #6
erooup
Confirmed User
 
erooup's Avatar
 
Industry Role:
Join Date: Jul 2010
Posts: 512
Quote:
Originally Posted by Sly View Post
What's the best way to copy my data? I do have an external drive.
Total Commander is good for that task. There are better tools, but this is failsafe and free.
Or buy a new harddisk, and mount your current in a external disk enclosure. That way you can access your data when you have reinstalled your computer and added a good antivirus software.


Quote:
Originally Posted by Sly View Post

And what about all of my software? Will companies typically give you your activation code again in situations like this?
Show a copy of your licences or proof of purchase, and it should not be a problem.
erooup is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 11:04 AM   #7
acctman
Confirmed User
 
Join Date: Oct 2003
Location: Atlanta
Posts: 2,840
Wait don't reinstall... what problem are you exactly having. you said malabyteware finds and eliminates the virus but does not fix the problem... can you explain the problem you're having?
acctman is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 12:27 PM   #8
Sly
Let's do some business!
 
Sly's Avatar
 
Industry Role:
Join Date: Sep 2004
Location: Austin, TX
Posts: 31,289
Quote:
Originally Posted by acctman View Post
Wait don't reinstall... what problem are you exactly having. you said malabyteware finds and eliminates the virus but does not fix the problem... can you explain the problem you're having?
I just did another update for MalwareBytes and am running it again, will take a few more hours. Once it's done, I will report back with the problems I'm having.
__________________
Vacares - Web Hosting, Domains, O365, Security & More - Paxum and BTC Accepted

Wanted: CCBill pay sites for sale
Sly is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 12:36 PM   #9
SallyRand
So Fucking Banned
 
Industry Role:
Join Date: Jan 2008
Location: In A Galaxie Far, Far Away!
Posts: 3,487
:2cents

Download and install Microsoft Security Essentials, update and run it. Just fixed a lap for a bud using that soft, Malwarebytes, Adaware, AVG and Spybot. His box had over 40 infections but the patient pulled through fine!

If you can't download directly to infected box, just download on another box, burn it or load it to an external drive, then load it to the problematic box and run in safe mode.

Not going to do you a lot of good to copy files to another drive if those files are infected as well.

Sally.

Last edited by SallyRand; 08-03-2010 at 12:38 PM..
SallyRand is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 12:40 PM   #10
Vick!
Confirmed User
 
Industry Role:
Join Date: Nov 2005
Location: 20 00'24.00" N, 75 09'00.00 W
Posts: 6,882
Boot-time scan using Avast Free + Spybot S&D in Windows

Hope it will fix your problem.
__________________
Affordable Quality Web Hosting
Vick! is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 12:44 PM   #11
Grapesoda
So Fucking Banned
 
Industry Role:
Join Date: Jul 2003
Location: Montana
Posts: 46,238
Quote:
Originally Posted by Sly View Post
Man I'm having a bad week. Two different viruses on two different computers.

When I run MalwareBytes on regular boot, it finds and eliminates the files but it does not fix the problem. Upon reboot, everything is back to normal. When I run MalwareBytes in safe mood, it does not find anything at all.

I'm finding tons of different guides and they all have different directions and they also talk about different versions needing different remedies. Anybody conquer this bitch successfully?
http://remove-malware.net/how-to-rem...-anti-spyware/
Grapesoda is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 12:57 PM   #12
fpaul90
Confirmed User
 
fpaul90's Avatar
 
Industry Role:
Join Date: Feb 2010
Posts: 171
If you still have viruses try deleting the files in your registry, or everytime you delete files, they'll jjust keep re appearing because of your registry
__________________
fpaul90 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 01:05 PM   #13
jigg
Confirmed User
 
Join Date: Feb 2002
Posts: 2,527
what OS are you on?
I have windows defender installed and running, Microsoft security essentials is free
Spybot is pretty much tops when it comes to ripping out hard to remove spyware
jigg is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 01:08 PM   #14
GatorB
The Demon & 12clicks
 
Industry Role:
Join Date: Oct 2001
Location: SallyRand is a FAGGOT
Posts: 18,208
Quote:
Originally Posted by Amputate Your Head View Post
Yep. Back in '07 when I switched to Macs and shitcanned all my PCs.
Security through obscurity is no security at all.
GatorB is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 01:56 PM   #15
u-Bob
there's no $$$ in porn
 
u-Bob's Avatar
 
Industry Role:
Join Date: Jul 2005
Location: icq: 195./568.-230 (btw: not getting offline msgs)
Posts: 33,063
re-installing is the only way to be 100% sure it's gone....
u-Bob is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 02:12 PM   #16
acctman
Confirmed User
 
Join Date: Oct 2003
Location: Atlanta
Posts: 2,840
let us know how things are once the scan is done. also if you're having search pages and antivirus pages appearing in your browser more than liking you have a proxy virus. easy to remove. It'll effect all browser, fastest way to manual remove it is load IE go to Tool - Internet Options - Connections tab - select LAN settings - check Proxy Server then click Advanced - remove anything in HTTP (probably will be something like 127.0.0.1 with a port) - ok out of there and uncheck proxy server. Go to General tab select Delete - check Temp. Internet Files and delete.

do that after running malabytewares thats a pretty good spyware removal but it sometimes doesn't wipe the browser changes. you might also want to go to Run and then type in msconfig then select Startup tab uncheck anything that looks suspicious, look at the Manufacturer and Command columns. If anything is "unknown" and in a weird location and file name, its more than likely a spyware. (i.e. sniffer Unknown c:\windows\temp\_ex-08.exe). I'm pretty good at spotting spyware file so feel free to post any the file name of anything that looks weird and you're unsure of, or you can just google the file name.
acctman is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 02:13 PM   #17
erooup
Confirmed User
 
erooup's Avatar
 
Industry Role:
Join Date: Jul 2010
Posts: 512
Quote:
Originally Posted by acctman View Post
Wait don't reinstall... what problem are you exactly having. you said malabyteware finds and eliminates the virus but does not fix the problem... can you explain the problem you're having?
Yes, a full reinstall is the only way to go. The OS have been compromised, and no matter what he does, he can never be sure that is going on with the systemfiles, because polymorphic file infectors like Sality, leave the malware code virtually untraceable if the client OS was succesfully infected.

Last edited by erooup; 08-03-2010 at 02:19 PM..
erooup is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 02:17 PM   #18
alias
aliasx
 
alias's Avatar
 
Join Date: Apr 2001
Posts: 19,010
Sucks getting pwned, good luck Sly!
__________________
https://porncorporation.com
alias is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 02:36 PM   #19
$5 submissions
I help you SUCCEED
 
$5 submissions's Avatar
 
Industry Role:
Join Date: Nov 2003
Location: The Pearl of the Orient Seas
Posts: 32,195
Quote:
Originally Posted by Amputate Your Head View Post
Yep. Back in '07 when I switched to Macs and shitcanned all my PCs.
I might go that route soon myself. Tired of playing Whack A Mole with malware. Yet another thing to worry about -- EXTORTIONWARE: http://www.ixdownload.com/forums/sec...-programs.html Lovely
$5 submissions is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 02:38 PM   #20
Sly
Let's do some business!
 
Sly's Avatar
 
Industry Role:
Join Date: Sep 2004
Location: Austin, TX
Posts: 31,289
Bah. Still the same problems.

I'll start preparing for a reinstall later this week.
__________________
Vacares - Web Hosting, Domains, O365, Security & More - Paxum and BTC Accepted

Wanted: CCBill pay sites for sale
Sly is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 03:08 PM   #21
Amputate Your Head
There can be only one
 
Amputate Your Head's Avatar
 
Industry Role:
Join Date: Aug 2001
Location: Somewhere else
Posts: 39,075
Quote:
Originally Posted by GatorB View Post
Security through obscurity is no security at all.
No, but security through Little Snitch is pretty well armored.
__________________
SIG TOO BIG
Amputate Your Head is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 03:17 PM   #22
acctman
Confirmed User
 
Join Date: Oct 2003
Location: Atlanta
Posts: 2,840
Quote:
Originally Posted by erooup View Post
Yes, a full reinstall is the only way to go. The OS have been compromised, and no matter what he does, he can never be sure that is going on with the systemfiles, because polymorphic file infectors like Sality, leave the malware code virtually untraceable if the client OS was succesfully infected.
he's has a spyware and it just mess with the browser/connection functions in order to get you to visit a pages. formatting and reinstalling is the lazy way of fixing things. its not going to stop the problem from happening again in the future so it good to learn how to manually remove the problem. Malawarebyte does a good job of removing the files. Windows (vista/7) will tell you if a system file has been altered or changed. Formatting and reinstalling definitely my way maybe considered the hard way but you learn whats happening and will pick up on threats long before they take effect after a reboot.
acctman is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-03-2010, 03:43 PM   #23
erooup
Confirmed User
 
erooup's Avatar
 
Industry Role:
Join Date: Jul 2010
Posts: 512
Quote:
Originally Posted by acctman View Post
he's has a spyware and it just mess with the browser/connection functions in order to get you to visit a pages. formatting and reinstalling is the lazy way of fixing things. its not going to stop the problem from happening again in the future so it good to learn how to manually remove the problem. Malawarebyte does a good job of removing the files. Windows (vista/7) will tell you if a system file has been altered or changed. Formatting and reinstalling definitely my way maybe considered the hard way but you learn whats happening and will pick up on threats long before they take effect after a reboot.
What you dont seem to understand is; Windows Defender 2010 is what have been detected so far, because the real malware it installs, is virtually untraceable. It dont matter what OS it is, when it comes to polymorphic file infectors or viruses.

Once a OS have been compromised, it will remain unsafe. That is why I said, his only approach to securing his data again, is reinstalling and using a secure antivirus program.
erooup is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-04-2010, 07:42 AM   #24
acctman
Confirmed User
 
Join Date: Oct 2003
Location: Atlanta
Posts: 2,840
Quote:
Originally Posted by erooup View Post
What you dont seem to understand is; Windows Defender 2010 is what have been detected so far, because the real malware it installs, is virtually untraceable. It dont matter what OS it is, when it comes to polymorphic file infectors or viruses.

Once a OS have been compromised, it will remain unsafe. That is why I said, his only approach to securing his data again, is reinstalling and using a secure antivirus program.
oh boy... windows defender is a common malaware virus there is nothing super special about it. it does not corrupt system files or hide within system files. it works like any low end spyware virus. my way works 100% and would bet money on it. i'm seriously bad ass when it comes to repairing computers... BUT! i'm not going to argue, I've removed windows defender before so I know what it does and what it doesn't. The who point is to learn. Anyone can format (thats the answer everyone gives) a computer and not all virus scanners can prevent new spyware. I put any tech support, repair center, geek squad geek to shame...
acctman is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-04-2010, 07:51 AM   #25
fpaul90
Confirmed User
 
fpaul90's Avatar
 
Industry Role:
Join Date: Feb 2010
Posts: 171
you can always just put linux on your computer, it has the best security you can get ;)
__________________
fpaul90 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 08-04-2010, 08:08 AM   #26
roly
Confirmed User
 
Join Date: Aug 2002
Posts: 1,844
Quote:
Originally Posted by acctman View Post
let us know how things are once the scan is done. also if you're having search pages and antivirus pages appearing in your browser more than liking you have a proxy virus. easy to remove. It'll effect all browser, fastest way to manual remove it is load IE go to Tool - Internet Options - Connections tab - select LAN settings - check Proxy Server then click Advanced - remove anything in HTTP (probably will be something like 127.0.0.1 with a port) - ok out of there and uncheck proxy server. Go to General tab select Delete - check Temp. Internet Files and delete.

do that after running malabytewares thats a pretty good spyware removal but it sometimes doesn't wipe the browser changes. you might also want to go to Run and then type in msconfig then select Startup tab uncheck anything that looks suspicious, look at the Manufacturer and Command columns. If anything is "unknown" and in a weird location and file name, its more than likely a spyware. (i.e. sniffer Unknown c:\windows\temp\_ex-08.exe). I'm pretty good at spotting spyware file so feel free to post any the file name of anything that looks weird and you're unsure of, or you can just google the file name.
that's what i would do too, also run spybot s&d after malwarebytes that seems to find most of the registry entries. and check your hosts file for any changes.

i fixed my cousins pc the other day and it had the fake anti virus program virus amongst others and it had removed registry entries so that you couldn't boot into safemode.
roly is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.