any solution for this virus/spyware
45 pts.
0
Q:
any solution for this virus/spyware
I got a weird symptom in my computer.
- can not access microsoft download website
- can not get updated spyware data (Zone Alarm), but it works with anti virus data
- all of those symptom cause of connection failure.
- sometimes if i click in browser, it will open another browser.

I use Zone Alarm as firewall, antivirus, anti spyware. I have scanned for antivirus and anti spyware to my harddisks, but can't detect it. Later, I tried with Ad-Aware, still can't detect it.

any solution?

Thanks,
Hendi
ASKED: Jan 14 2009  2:58 PM GMT
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _
0
26290 pts.
0
A:
 RATE THIS ANSWER
+1
Click to Vote:
  •   1
  •  0
  • AddThis Social Bookmark Button
I agree with Jenny.

I would download and install Spybot Search & Destroy, and some other anti-malware software, such as Malwarebytes.

Update both of them, reboot in safe mode (without networking), and run a scan with both tools.
********************

Another program to try is AVG's Anti-Root Kit program. It has helped me on a few occasions for some real difficult malware removals.
Good Luck!
-Flame

===============
Try GMER also for rootkit detection. Remember to turn off the System Restore option in XP as it may try to restore infected files the next restart. See this McAfee document for information about disabling System Restore on XP

*********************

Many thanks to Jenny, Flame, Carlosdl, Labnuke99., finally my computer gets well.

Here what I have done:
- ZoneAlarm doesn't provide offline updating virus definition data
- i tried to install Spybot S&D, but the spyware/virus/worm/malware block me to install it. Installation need to access internet, that's the virus block.
- I tried to install Malwarebytes and it worked, as well as updating the definition data.
- I restarted with safe mode and scanned all hard disks. It found 17 files infected, some cause by Trojan something, others I don't remember.
- restart, then my computer works well.

Lucky, the virus doesn't block Malwarebytes.

-Hendi

++++++++++++++
Try using one of the online scanners from Trend Micro or McAfee. You can also submit a copy of the file for scanning to Jotti.org
Last Answered: Jan 15 2009  12:42 AM GMT by Labnuke99   26290 pts.
Latest Contributors: Hendi   45 pts., Flame   14495 pts., Carlosdl   29845 pts.
0
0
Discuss This Answer:
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _



_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _

JennyMack   3330 pts.  |   Jan 14 2009  3:18PM GMT

Hi Heidi,

When I worked in a college helpdesk setting, we usually had a protocol for getting to the nasty viruses that dug themselves into student computers. I would try a few things:

- If you cannot get updated anti-spyware definitions due to the virus, you can likely grab the newest definitions file off of their website and put it on a flash drive. Then you can just overwrite your existing definitions file with the newest version by replacing it in the folder.

- Is your AdAware up to date?

- How are you running your scans? Update all of your scanning software to the latest version and then boot your computer in safe mode without networking (tapping F8 on startup). I would run McAfee (as you would run Zone Alarm), AdAware, and Spybot Search & Destroy concurrently in safe mode, and that usually caught more than when I ran them on a normal boot.

- As mentioned, Spybot Search & Destroy is a good tool, and the best part — it’s free. S&D and AdAware tend to catch different things, with some overlap.

Hope this helps!

Jenny
Community Manager

 

KevinBeaver   7610 pts.  |   Jan 15 2009  10:20PM GMT

In situations like this it can also be of benefit to try a different browser such as Firefox. This is for 2 reasons: 1) to see if you have the same behavior in the other browser and 2) to see if you can download the tools you desperately need to fix the problem!

Glad you got it fixed…

 
0