My PC is being attacked...can anyone help?

Status
Not open for further replies.

geeker

Ultra Member
ECF Veteran
Verified Member
May 12, 2009
1,418
55
Neither here nor there
AdAware has identified a maware program on my PC called Win32.Backdoor.VB :ohmy:

I have used the AdAware removal utility, which them tells me the malware has been removed and I need to restart.

It is not working...it keeps coming back (or maybe never being removed in the first place)

Also, when I search for this malware's name, I get plenty of hits on security sites on how to remove it, but when I click the links I get redirected to something completely different.

I'm almost sure this happened when I attempted to download TrueBlood last night. :facepalm:

So, is there something some of the ECF geniuses can offer for advice? Thanks!
 

voltaire

Super Member
ECF Veteran
Dec 4, 2009
762
7
Florida
AdAware has identified a maware program on my PC called Win32.Backdoor.VB :ohmy:

I have used the AdAware removal utility, which them tells me the malware has been removed and I need to restart.

It is not working...it keeps coming back (or maybe never being removed in the first place)

Also, when I search for this malware's name, I get plenty of hits on security sites on how to remove it, but when I click the links I get redirected to something completely different.

I'm almost sure this happened when I attempted to download TrueBlood last night. :facepalm:

So, is there something some of the ECF geniuses can offer for advice? Thanks!

First of all, you need to turn off System Restore. Then you should boot into Safe Mode by holding F8 before Windows starts, then run your scans from there. Also, right click C: in My Computer, go to Properties, and do a disk cleanup, and delete all temp files, etc.

ETA: Depending on your version of Windows, System Restore is found in Control Panel - System - System Restore. Don't forget to turn it back on when you're all done and clean.
 
Last edited:

CaptJay

Vaping Master
ECF Veteran
Jan 3, 2010
4,192
115
A Brit, abroad, (USA)
malwarebytes antimalware is a VERY good program to have and its free!
Avast! is also decent (and free) and I also use ZOnealarm as a firewall (guess what? thats free too!)
If you get a chance (when you've cleaned up your PC) pop along to Home of Gibson Research Corporation and you can get a free (really no ads or unwated downloads, its a safe site) scan of your PC ports to see how secure they are.
 

geeker

Ultra Member
ECF Veteran
Verified Member
May 12, 2009
1,418
55
Neither here nor there
Thanks for the advice...
I "removed" the virus once again, but something is still going on.
I am suffering a "man in the browser" attack, where everytime I click a link it sends me somewhere else, usually a site like University of Whatever.
I'm running the Microsoft Malicious Sofware removal tool, but I will have to bolster my defenses further.
What a PITA...
 

MoeJoe39

Senior Member
ECF Veteran
Sep 22, 2009
150
2
Blaine MN
Make sure your browser is not being rerouted through a proxy......
For IE, under tools, options, connections, lan settings.
Uncheck proxy if it's checked.

You could also try resetting your winsock settings.
From command prompt, type "netsh winsock reset"

This will restore winsock setting to default.

Run malware bytes in safe mode with networking, full scan

Good luck...
 
Last edited:

mrjaguar

Moved On
ECF Veteran
Jan 2, 2010
1,039
116
56
simi valley, ca
Thanks for the advice...
I "removed" the virus once again, but something is still going on.
I am suffering a "man in the browser" attack, where everytime I click a link it sends me somewhere else, usually a site like University of Whatever.
I'm running the Microsoft Malicious Sofware removal tool, but I will have to bolster my defenses further.
What a PITA...

this is usually because your DNS settings got changed. set it back to dynamic and the problem should be fixed.
 

geeker

Ultra Member
ECF Veteran
Verified Member
May 12, 2009
1,418
55
Neither here nor there
I think I have the PC cleaned.
I used Malwarebytes on the suggestion of my IT guy at the office and the suggestions here.
I inquired about a firewall, and he told me the *best* thing to do is to used the computer without admin priveleges.
I only have one user on this PC, and of course I am the admin.
So that I don't have to move files, I'm wondering if I can set up a new administrator and then remove admin priveleges from the account I have been using all along.
Seems like a pain to me...but he assures me that this will keep me from downloading something that will infect the computer.

I think I would prefer a firewall...something effective but not cumbersome that won't ask me 5 times when I want to dl a file or program.

Does this exist?
 

THE

Ultra Member
ECF Veteran
Jun 4, 2008
1,247
21
USA
I think I have the PC cleaned.
I used Malwarebytes on the suggestion of my IT guy at the office and the suggestions here.
I inquired about a firewall, and he told me the *best* thing to do is to used the computer without admin priveleges.
I only have one user on this PC, and of course I am the admin.
So that I don't have to move files, I'm wondering if I can set up a new administrator and then remove admin priveleges from the account I have been using all along.
Seems like a pain to me...but he assures me that this will keep me from downloading something that will infect the computer.

I think I would prefer a firewall...something effective but not cumbersome that won't ask me 5 times when I want to dl a file or program.

Does this exist?



Just stay the HELL away from this one program called zone alarm, at any cost.
 

NCC

Vaping Master
ECF Veteran
Verified Member
Jan 14, 2010
3,847
6,865
Fla Panhandle, USA
I think I would prefer a firewall...something effective but not cumbersome that won't ask me 5 times when I want to dl a file or program.
You absolutely must use a firewall of some sort. At LEAST the built in Windows one, at a minimum.
Just stay the HELL away from this one program called zone alarm, at any cost.
Sad thing is, Zone Alarm used to be pretty good. Then, it got bloated and I moved along. Haven't seen it in years, but I can imagine the bloating has continued.
 

2pak2zero

Ultra Member
ECF Veteran
Verified Member
Sep 29, 2013
2,066
16,366
Roanoke, Virginia, United States
I think I have the PC cleaned.
I used Malwarebytes on the suggestion of my IT guy at the office and the suggestions here.
I inquired about a firewall, and he told me the *best* thing to do is to used the computer without admin priveleges.
I only have one user on this PC, and of course I am the admin.
So that I don't have to move files, I'm wondering if I can set up a new administrator and then remove admin priveleges from the account I have been using all along.
Seems like a pain to me...but he assures me that this will keep me from downloading something that will infect the computer.

I think I would prefer a firewall...something effective but not cumbersome that won't ask me 5 times when I want to dl a file or program.

Does this exist?

Ok, I go to reply to lois and this is the quote it brought up.:confused::what:

snet frm ny lttle phond with my stibby fungers!!
 
Status
Not open for further replies.

Users who are viewing this thread