Unconfigured Ad Widget

Collapse

FBI virus

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • shooterbill
    Senior Member
    • Feb 2012
    • 1096

    FBI virus

    My pc is being held hostage. My Verizon technical support says they can't do anything. I have read the online fixes and nothing has worked. The virus still shows up in safe mode. I'm not very computer friendly. Is there anything you tech guys can recommend? Thanks.
  • #2
    Arkive
    Senior Member
    • Jul 2010
    • 544

    If you have a spare computer download Linux onto a thumb drive and install it on the bad computer, then forget about windows.
    "RESIST WE MUCH" - Al Sharpton

    Comment

    • #3
      pluke the 2
      Senior Member
      • May 2012
      • 1926

      Chances are, if it's that bad of a virus, your not going to be able to recover. Only choice is to format.

      Comment

      • #4
        pluke the 2
        Senior Member
        • May 2012
        • 1926

        You're

        Comment

        • #5
          bg
          Calguns Addict
          • Aug 2002
          • 5207

          Do this. Start in safe mode by tapping F8 while booting. You'll get a choice
          to go into SAFE MODE as well as other options. Choose SAFE MODE and
          click enter. Once you get to desktop, the icons will be large. Click menu
          and look for the RUN icon. Click it and type in MSCONFIG. It may take
          a few seconds for a small page to appear. If you're still using
          USER CONTENT, click ok to get this small page.

          If you don't have a RUN tab, type in MSCONFIG in the search bar at
          the bottom of the start menu.

          Once it appears, look for the STARTUP tab and click it. You'll get a list
          of what starts up when you boot. Start at the top and go from top to
          bottom, UNCHECKING those boxes of programs you don't recognize.
          I always uncheck ANY box that has PROGRAMS, or UNKNOWN. I
          always leave the boxes CHECKED that have anything with WINDOWS
          in the description unless it looks fishy. When you uncheck the other
          boxes like PROGRAMS, you can always click on the ICON to start
          the program once booted. You don't need all that other crap starting
          up at boot.

          When you come across a box that's checked that has like russian letters
          or a weird looking letters and or numbers and you look over and the
          title or path of it is UNKNOWN, MAKE SURE YOU UNCHECK THIS AND
          ANY OTHER BOX THAT LOOKS FISHY LIKE THIS.

          Once you feel that you have just the min you need to boot the PC, go
          ahead and click APPLY, then OK, then RESTART the PC. If you've done
          it right, it will boot to desktop and you then need to run MALWAREBYTES
          and SUPER ANTI SPYWARE, to get rid of the virus. You should also run
          KASPERSKY TDSS KILLER to help stop bootkit and rootkit viruses.

          After that, run your anti-virus program with a full scan.

          Hopefully, you'll be FBI free.

          SUPER ANTI SPYWARE


          MALWAREBYTES


          KASPERSKY TDSS KILLER
          Downloading TDSSKiller. TDSSKiller is a utility created by Kaspersky Labs that is designed to remove the TDSS rootkit. This rootkit is know under other names such as Rootkit.Win32.TDSS, Tidserv, TDSServ, and Alureon. TDSSKiller will also attempt to remove other rootkits such as the ZeroAccess or ZeroAccess rootkit if it is detected.
          Last edited by bg; 06-21-2013, 6:39 PM.

          Comment

          • #6
            stilly
            I need a LIFE!!
            • Jul 2009
            • 10685

            Originally posted by bg
            Do this. Start in safe mode by tapping F8 while booting. You'll get a choice
            to go into SAFE MODE as well as other options. Choose SAFE MODE and
            click enter. Once you get to desktop, the icons will be large. Click menu
            and look for the RUN icon. Click it and type in MSCONFIG. It may take
            a few seconds for a small page to appear. If you're still using
            USER CONTENT, click ok to get this small page.

            If you don't have a RUN tab, type in MSCONFIG in the search bar at
            the bottom of the start menu.

            Once it appears, look for the STARTUP tab and click it. You'll get a list
            of what starts up when you boot. Start at the top and go from top to
            bottom, UNCHECKING those boxes of programs you don't recognize.
            I always uncheck ANY box that has PROGRAMS, or UNKNOWN. I
            always leave the boxes CHECKED that have anything with WINDOWS
            in the description unless it looks fishy. When you uncheck the other
            boxes like PROGRAMS, you can always click on the ICON to start
            the program once booted. You don't need all that other crap starting
            up at boot.

            When you come across a box that's checked that has like russian letters
            or a weird looking letters and or numbers and you look over and the
            title or path of it is UNKNOWN, MAKE SURE YOU UNCHECK THIS AND
            ANY OTHER BOX THAT LOOKS FISHY LIKE THIS.

            Once you feel that you have just the min you need to boot the PC, go
            ahead and click APPLY, then OK, then RESTART the PC. If you've done
            it right, it will boot to desktop and you then need to run MALWAREBYTES
            and SUPER ANTI SPYWARE, to get rid of the virus. You should also run
            KASPERSKY TDSS KILLER to help stop bootkit and rootkit viruses.

            After that, run your anti-virus program with a full scan.

            Hopefully, you'll be FBI free.

            SUPER ANTI SPYWARE


            MALWAREBYTES


            KASPERSKY TDSS KILLER
            http://www.bleepingcomputer.com/down...sskiller/dl/4/
            +1

            Follow these instructions. Here is what I can offer you:

            You must learn how this virus behaves and you must break its cycle. A good virus will check on startup and shutdown that it is set to run, on shutdown it will check for entries and post them in the registry or start menu That is why that in order to break the cycle, you must make the changes and then hit the reset button and start again in safe move, the change that I will do is to disable anything from starting up on bootup, once I make those changes, I hit reset (yes, HARD reset, not shutdown reboot) and when the OS comes back up you are free to hunt down the rest, then you run ALL virus scan programs you got, for me I will run Malware Bytes and Spybot. Between them I can clean out about 98% of the crap out there. Then after that reset and you are home free. The programs that I will look for will usually be starting out of a TEMP folder from IE and they will also usually be having random letters and numbers. If you do not recognize it, KEEP it from running, then clean up the mess. It also helps to be disconnected from the internets while you are doing all of this.
            Last edited by stilly; 06-21-2013, 7:02 PM.
            7 Billion people on the planet. They aint ALL gonna astronauts. Some will get hit by trains...

            Need GOOD SS pins to clean your brass? Try the new and improved model...



            And remember- 99.9% of the lawyers ruin it for the other .1%...

            Comment

            • #7
              superbarnie
              Member
              • Dec 2012
              • 394

              Originally posted by Arkive
              If you have a spare computer download Linux onto a thumb drive and install it on the bad computer, then forget about windows.
              I don't even understand you people who suggest this. Are you trolling or just stupid?
              God, Guns, Guts, and Sea lions.

              Comment

              • #8
                HotRails
                Senior Member
                • May 2008
                • 1491

                I did what bg posted and it worked. By the way, I initially chose Safe Mode without networking.

                Comment

                • #9
                  bohoki
                  I need a LIFE!!
                  • Jan 2006
                  • 20815

                  system restore to a previous date?

                  Comment

                  • #10
                    deebix
                    Senior Member
                    • Apr 2008
                    • 737

                    This virus is a bad one. Locks the whole thing up, sometimes even safe mode. What I did is get HIRENS BOOT CD and boot into a portable edition of Windows 7, download malware bytes, and scan that entire drive. Tends to work 100% of the time. -IT Pro

                    Comment

                    • #11
                      Reelemup
                      Senior Member
                      • Feb 2013
                      • 1392

                      Quit looking at porn sites....all that time you can just walk on the street and pick up real women. .....they also could have virus though.
                      Fish molester also pick shrooms

                      Comment

                      • #12
                        bg
                        Calguns Addict
                        • Aug 2002
                        • 5207

                        When doing a cleaning, one should disable SYSTEM RESTORE before the wipe
                        as one doesn't want to have the bug's path's and trigger in registry hanging
                        around because it can lay dormant until a new bug shows, then spring open.

                        There are 3 programs I have stashed on a flash drive as well as the programs
                        I linked to for repairs. I'll list one of them and not the others. Reason
                        is if anyone is familiuar with the one I'm going to list, that person knows
                        that this is BLEACH to a system and if any have important docs or pics
                        then they should be backed up before running it. It is below. CAUTION
                        You best know what you're doing when using it. The other two were
                        given to me by friends in Germany and Bulgaria and are extreme cleaners.
                        Those won't get posted,but this one will.

                        It is called COMBOFIX.EXE. Save to desktop, disable any realtime
                        protection viA MS or whatever AV-Firewall. Let it populate, then
                        clean. It will take a while. It's pretty stout. Careful.

                        Downloading ComboFix. ComboFix is a program, created by sUBs, that scans your computer for known malware, and when found, attempts to clean these infections automatically. In addition to being able to remove a large amount of the most common and current malware, ComboFix also displays a report that can be used by trained helpers to remove malware that is not automatically removed by the program.


                        HIRENS can be a disc-OS saver for sure. Great suggestion.

                        You must learn how this virus behaves and you must break its cycle. A good virus will check on startup and shutdown that it is set to run, on shutdown it will check for entries and post them in the registry or start menu That is why that in order to break the cycle, you must make the changes and then hit the reset button and start again in safe move, the change that I will do is to disable anything from starting up on bootup, once I make those changes, I hit reset (yes, HARD reset, not shutdown reboot) and when the OS comes back up you are free to hunt down the rest, then you run ALL virus scan programs you got, for me I will run Malware Bytes and Spybot. Between them I can clean out about 98% of the crap out there. Then after that reset and you are home free. The programs that I will look for will usually be starting out of a TEMP folder from IE and they will also usually be having random letters and numbers. If you do not recognize it, KEEP it from running, then clean up the mess. It also helps to be disconnected from the internets while you are doing all of this.
                        This "step" process is excellent as well. I may load a test virus on one
                        of my test drives that has W7 on it which I use to do infections and
                        removal practices and use this. It should prove interesting.
                        Last edited by bg; 06-21-2013, 11:18 PM.

                        Comment

                        • #13
                          cid`
                          Member
                          • Apr 2013
                          • 180

                          just fyi.. a lot of the viruses and trojans are "caught" but the loader is not. so it gets re downloaded eventually.

                          Comment

                          • #14
                            MontClaire
                            Veteran Member
                            • Feb 2009
                            • 4859

                            unplug, throw away, buy new computer, never deal with Verizon....didn't you read the news?

                            Comment

                            • #15
                              Wallabing
                              Senior Member
                              • Jan 2009
                              • 1499

                              Try to get Malwarebytes installed, and get into safe mode. Run a Full scan from there.

                              Install Avast free edition or Bitdefender free edition to prevent this from happening agian.

                              Comment

                              Working...
                              UA-8071174-1