do you have the full version of emsisoft emergency kit?
wasn't this a-squared?
do you have the full version of emsisoft emergency kit?
wasn't this a-squared?
I work on helpdesk and we get this all the time. Luckily we have the C drive shared so i can generally remove it remotely. It usually sits in documents and settings/all users. It wont let you delete the file as its in use but if you restart the machine there is a window in which you can remove the file.
We actually had a customer who called the police before they called the helpdesk.
when the pc's or laptops are riddled with this type of shit i always just reformat, you dont know what crap has been installed and it could be spying on the owner. once something like this gets hold its time for a reformat.
ive managed to get rid of it for a mate of mine by using a usb stick 16gb which was made into a bootable msdos disk
A wise man once said " "
Over Carl (21st October 2012)
did another yesterday, used malwarebytes. latest version updated now finds it, simple.
I agree with Det. If it's infected you have no idea what damage has actually been caused. Yes you may be able to remove the virus, but god knows when future problems will arise from problems with windows.
My personal philosphy is for these kind of cases is to back data up and check with at least two reputable virus scanners (my preference is MS Security Essentials and Kaspersky), then wipe the HD, reinstall windows and restore data.
Detector (21st October 2012)
what i do over=carl is i re-install windows, update it so that everything is installed and updated then i make a backup using acronis. in future if anything does happen i can put the computer back to a fresh install in 3 minutes. saves a lot of these type of problems.
and yeah your right the trouble is that as these type of things are evolving they might be changed slightly so that they copy some payload somewhere ready to be run at a certain date or time, and then bang your infected again. definately better off reformatting.
A wise man once said " "
Over Carl (21st October 2012)
Just had one with a similar page, they had 2 user accounts and only 1 was affected. Went into the unaffected account and as usual ran rkill followed by a full mbam scan and that solved it.
I had one last week with this. Also had Trojan Delf and one other trojan on it. Removed the malware was a piece of cake but it had fucked up the user profiles and security settings. MSE wouldn't update and it wouldn't install Service pack 1.
Ended up re-foramtting it.
mml
Social Networking Bookmarks