Tom's Guide | Tom's Hardware | Tom's Games
![]() |
![]() |
![]() |
Hey Everybody,
I'm just about to my whits end over this virus I have. I'll try to explain what it's doing.
Popups: I get popups stating that my computer is infected with viruses and it wants me to click
on it. One is a Spyware Alert and it wants me to click on it to remove the virus from my computer
immediately. There is another one that says it is a Windows Security Alert that states Windows
has detected an Internet attack attempt. Then IE keeps loading and trying to connect to some site
but never succeeds (www.safewebnavigate---2008.com).
Then my display controls are disabled along with Task Manager and Regedit and probably other
things.
I've ran virus scan and Spybot S&D several times and they always find things but I still get all
this crap. Spybot S&D keeps finding Smithfraud but it can't remove it. It says it's in the memory
and it wants to scan on the next system startup and it does but it still don't remove the
offending viurs. I NEED HELP, HELP, HELP!!!!!!!!!!!!!!!!!!
Thanks,
Larry

Hey,
You should restart your PC in safe mode first. Scan it with AVG, Avira, Avast and Spybot too. It will be removed. I faced this problem once and it got removed.
Manoj Shinde
http://www.craveworldwide.com

Post such things in the 'Security and Virus' forum that is shown under Specialty Forums. Better help there.
Most Virus and Spyware scans are likely to work better in Windows Safe-Mode.

Disable System Restore (all restore points will be lost), boot into safe mode, run your spyware removers(s) & anti-virus. When the system is clean, reboot into normal mode & re-enble System Restore.
You should also be using CCleaner, both the cleaner & registry scan.
"If my answers frighten you then you should cease asking scary questions" - Jules Winnfield (Samuel L. Jackson) in Pulp Fiction

Hey mbshinde78,
I'm going to do that as soon as I get the other AV scanners downloaded and updated. I'm ready to try anything, almost. My computer is running so slow. And Chuck2, thanks for your comment, I was going to post it there and a lot of other people there hadn't received replies so I posted it here instead. I would post it in the virus forum but it's some kind of rule that you can't post the same message in different places. But anyway I'm going to try something else and I'll see what happens.
Thanks to both of you,
Larry

Also to say ---
Never click any part of a Popup to close it. That may cause Malware to get installed.
Use ALT + F4 to close Popup.http://www.mvps.org/winhelp2002/hos...
Blocking Unwanted Parasites with a Hosts File

Go here http://www.malwarebytes.org/mbam.php
download the program and install it. ITS VERY GOOD!
The only difference between the free one and the paid version is scheduled scanning and realtime scanning.Install it, run it and smile when its finished :-)
regards
scott
p.s used spybot and it missed what this found.....result!
Unknown has caused an error in unknown and unknown needs to restart.

scottyuk30 is correct.
You don't have a virus. You have the FAKED symptoms put there by what is called a rogue anti-malware program. Their intention is to pester you into downloading their software, scanning your system, and then you having to buy the program in order to get rid of what it finds. If you do buy their program, of course, the FAKED symptoms disappear, because it was them who placed them there it the first place! The anti-malware program is legitimate, it's quality varying from OK to poor, but their agressive deceptive methods of trying to get you to buy their software are frowned upon.
Most anti-malware programs don't get rid of it or the symptoms of it.
You need to run something that does - Malwarebytes in this case (I got rid of the same thing as you have on a friend's system by using it), and you will probably also need to run SmitFraudFix.
For more info, see response 6 in this:
http://www.computing.net/answers/wi...
starting at:
"If that results in Windows at least loading, you can then run Malwarebytes and SmitFraudFix"
......You are frequently told by various programs and instructions to turn off System Restore when you are trying to get rid of malware.
I have come across information that says there are many Microsoft experts and other experts now recommend you DO NOT do that until AFTER you have removed whatever malware you have, their reasoning being:
- you cannot be infected or re-infected by any malware that is in your System Restore restore points unless you deliberatly load an infected restore point - it's essentially inert if that's where it is.
- anti-malware programs sometimes have bugs in them, e.g. Spybot and AdAware certainly have had in the past many times - and they remove something they should not have removed.
In some cases you can't fix the problems the buggy anti-malware program caused without re-loading Windows unless you have System Restore turned on and a previous restore point to load. Even when there are some infected restore points, there are often others that are not infected you can load.If you want to turn off System Restore after having got rid of the malware and you're sure your system is back to normal, because some of the restore points are infected, that's fine.

Malwarebytes is an excellent choice, but I think you should do as the others have said first and boot in to Safe Mode to run your other scanning options.
These malware attacks are designed to scare the user is not purchasing something that they don't actually need. If the malware disguises itself as a Windows error and tells you that you need to upgrade to this or that, many users will take it as gospel. Don't go clicking on the ads or trying to download anything that a pop-up has recommended as helpful. It'll only make it worse!

![]() |
![]() |
![]() |

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.
| Ads by Google |