Antivirus XP 2008 (computer virus HELP!)

GEC: Discuss gaming, computers and electronics and venture into the bizarre world of STGODs.

Moderator: Thanas

User avatar
Shroom Man 777
FUCKING DICK-STABBER!
Posts: 21222
Joined: 2003-05-11 08:39am
Location: Bleeding breasts and stabbing dicks since 2003
Contact:

Post by Shroom Man 777 »

Glocksman, if you're infected, then just do this:
Xeriar wrote:Boot into safemode with networking

Download the batch script from here

http://www.internetinspiration.co.uk/roguefix.htm

Kill the explorer.exe process and run the batch script. Reboot from the task manager. It will probably be gone. If not, repeat but don't reboot, run spybot in safe mode while explorer.exe is shut down, and post a hijackthis log (easier to read a shorter log).

If you don't have at least xp with sp2 installed, it may be significantly tougher, the easiest solution then is just to do a repair install with an sp2 or sp3 windows install disc.
Worked for me, mang.
Image "DO YOU WORSHIP HOMOSEXUALS?" - Curtis Saxton (source)
shroom is a lovely boy and i wont hear a bad word against him - LUSY-CHAN!
Shit! Man, I didn't think of that! It took Shroom to properly interpret the screams of dying people :D - PeZook
Shroom, I read out the stuff you write about us. You are an endless supply of morale down here. :p - an OWS street medic
Pink Sugar Heart Attack!
User avatar
Glocksman
Emperor's Hand
Posts: 7233
Joined: 2002-09-03 06:43pm
Location: Mr. Five by Five

Post by Glocksman »

Nah, I'm fine.
The popups came from the website I visited, and since I wasn't dumb enough to turn off UAC in Vista and I use AV software, I didn't get infected.

What's funny to me is that when I first looked into this bastard, the screencaps of the popups mimicked Vista dialog boxes, but the machine they were displayed on was running XP with the default bright blue color scheme. :lol:
"You say that it is your custom to burn widows. Very well. We also have a custom: when men burn a woman alive, we tie a rope around their necks and we hang them. Build your funeral pyre; beside it, my carpenters will build a gallows. You may follow your custom. And then we will follow ours."- General Sir Charles Napier

Oderint dum metuant
User avatar
Azazal
Jedi Council Member
Posts: 1534
Joined: 2005-12-19 02:02pm
Location: Hunting xeno scum

Post by Azazal »

well son of a bitch, just came across one here at work, modified version of the same bug. Went to install superantispyware remover and can't, the infection keeps stopping the windows install service. Trying out malwarebytes right now, and.......

Blew the fucker away :)
Image
User avatar
Edi
Dragonlord
Dragonlord
Posts: 12461
Joined: 2002-07-11 12:27am
Location: Helsinki, Finland

Post by Edi »

Here's a good breakdown of just what that shit is, what it does and how it works: Link
Warwolf Urban Combat Specialist

Why is it so goddamned hard to get little assholes like you to admit it when you fuck up? Is it pride? What gives you the right to have any pride?
–Darth Wong to vivftp

GOP message? Why don't they just come out of the closet: FASCISTS R' US –Patrick Degan

The GOP has a problem with anyone coming out of the closet. –18-till-I-die
User avatar
Shroom Man 777
FUCKING DICK-STABBER!
Posts: 21222
Joined: 2003-05-11 08:39am
Location: Bleeding breasts and stabbing dicks since 2003
Contact:

Post by Shroom Man 777 »

Goddamn (motherfucking) Ukrainians! I should've known it was them!

Seriously, those evil dicks. :evil:


How come I was infected without having to go through with that bullshit fake "installation process"?

EDIT:

Goddamn, that's one elaborate trap. Makes me want to post an Ackbar pic.
Image "DO YOU WORSHIP HOMOSEXUALS?" - Curtis Saxton (source)
shroom is a lovely boy and i wont hear a bad word against him - LUSY-CHAN!
Shit! Man, I didn't think of that! It took Shroom to properly interpret the screams of dying people :D - PeZook
Shroom, I read out the stuff you write about us. You are an endless supply of morale down here. :p - an OWS street medic
Pink Sugar Heart Attack!
Post Reply