Question:
Help! Virus attack...?
anonymoustjl
2007-07-03 03:43:03 UTC
My computer recently got hit by a virus, not sure what it was, but by far, this is the most powerful virus i've ever encountered.

This virus prevents an antivirus program from running, when i tried to start the application of an antivirus, it will close by itself. Same goes when i am trying to view a webpage to download an antivirus program, but the browser just close by itself. what should i do?

By the way, on every title bar of the application, there's this word in the end which sounds suspicious. it sounds like this, Yahoo! Answers - - Microsoft Internet Explorer -] Restrict by Bro Act
And also, the windows task manager is said to be "disabled by the administrator", which i think is caused by a virus.
I'm at a lost of what to do. Someone please help me....thx...
Eight answers:
The Phlebob
2007-07-06 10:38:52 UTC
I suggest you download and run (no updating needed) McAfee's Stinger program. It's an anti-virus' anti-virus. Its sole purpose is to hunt down viruses that attack anti-virus programs. It's so good at it that the publishers have had to change its running name several times so viruses can't block it from running.



Note that, depending on what the virus did to your anti-virus program or other software, you may be looking at other repairs, some suggested by others on this page.
Lucifer Sam
2007-07-03 03:50:09 UTC
Ah-ha! My friend's Dell was struck by something very similar to this. Just take it in to get it repaired or reformat the system yourself. NOTE: ONLY do this if you know what you're doing.



After you get rid of the virus by wiping your HD clean, try using a different browser like Safari or Firefox to surf the internet. Yes, Safari runs on Windows. I recommend these two since they're faster and more secure than IE. IE's been notorious for being a hackable piece of crap. Also, try to get a good product from Norton, McAffee, PC Tools, or Trend Micro to prevent this in the future. I hope that helps.



Good luck!
anonymous
2007-07-03 06:40:28 UTC
Malware has been known to modify your Windows HOSTS file to prevent you from getting help at an anti-virus vendors site. Perhaps this will help.



First check your HOSTS file located at



Windows XP = C:\WINDOWS\SYSTEM32\DRIVERS\ETC

Windows 2K = C:\WINNT\SYSTEM32\DRIVERS\ETC

Win 98/ME = C:\WINDOWS

Be sure and check-mark "Show Hidden Files and Folders" and uncheck-mark "Hide Protected Operating System Files" in your Folder Options first.



Open HOSTS with notepad. A 'standard" MS HOSTS file will look like this:



# Copyright © 1993-1999 Microsoft Corp.

#

# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.

#

# This file contains the mappings of IP addresses to host names. Each

# entry should be kept on an individual line. The IP address should

# be placed in the first column followed by the corresponding host name.

# The IP address and the host name should be separated by at least one

# space.

#

# Additionally, comments (such as these) may be inserted on individual

# lines or following the machine name denoted by a "#" symbol.

#

# For example:

#

# 102.54.94.97 rhino.acme.com # source server

# 38.25.63.10 x.acme.com # x client host

#

127.0.0.1 localhost



______________________________...



There should be no entries or IP addresses on the lines below "127.0.0.1 localhost". If there are other entries, delete them, close notepad, and answer 'Yes" if prompted.



You should no longer get be stopped from A-V sites now.



But you are not done just quite yet. Now to fix the root cause of your problem. Do a complete scan with both your anti-virus and your anti-spyware. If you don't have them or if they are not current and updated you can use the procedure here:





Do both of these free online scans and remove what they find:



1. Scan for virus and remove (free online scan, no download) with BitDefender.

http://www.bitdefender.com/site/home/



2. Scan for trojans and spyware and remove (free online scan, no download) with Ewido.

http://www.ewido.net/en/



Hope this works for you.
rothman
2016-12-09 04:15:23 UTC
you could run antivirus and antispyware classes, however the unhappy actuality is that in case you have discovered one virus on your pc, you probable have countless. cleansing the pc now calls which you would be able to persist with those steps, because of the fact cutting-edge viruses and spyware entrench themselves in data that your pc desires as a manner to run: a million. Virus-verify your documents data (no longer application data-- you have installer CDs for those). 2. returned up the documents data, getting them off your complicatedchronic. 3. Get your unique working equipment CDs that got here alongside with your pc. 4. Boot your pc from the working equipment CD. 5. decide on the alternative that erases your complicatedchronic and then reinstall your equipment application. 6. turn on your application firewall that got here alongside with your working equipment. 7. Reconnect to the internet, and get carry of *all* abode windows updates, no rely how long it takes. 8. Reinstall your application application, and replace the needs as much as you could. 9. Reinstall your documents data. 10. Create a constrained person account on your equipment that does *no longer* have administrator get entry to, and documents superhighway surf basically from this account. particular, it is a discomfort interior the butt. No, there is not any different way. No, antivirus and antispyware classes won't be able to restoration this concern via itself. So, what do you do interior the destiny? a million. by no skill click on hyperlinks you hit upon in an digital mail. 2. by no skill open an digital mail attachment, ever. 3. basically get carry of data from a great internet site which you recognize is on the up-and-up. 4. by no skill use bit-torrent and different document-sharing classes. 5. by no skill use an unsolicitedchronic-checking internet site. 6. turn off all java and java scripting via default, and easily enable java and java scripting for web content which you recognize you could believe. 7. by no skill study an unsolicited digital mail, and delete unsolicited mail in the present day. it is possible to be hacked via examining an digital mail on my own. Please adhere to the 'dont's' I provided above, in view which you will would desire to repeat the cleansing steps that I listed first *each and every time you get contaminated.* Anti-spyware and anti-virus classes are sturdy to have, yet they're a 2nd line of protection. the ultimate thank you to guard your equipment is you, and changing your habit. sturdy success!
anonymous
2007-07-03 04:05:04 UTC
I don't know what I can say to help you unless you have a password in administrator. I wonder who is "Bro Act" and would they be disambiguous. I wonder how dangerous this virus is.

I wonder if the person who put the virus in if you find out would be an evil or just playing on someones nerves.......;) or friendly with not much to do but be a "LITTLE BUGGER" ;P.
Hariharan
2007-07-03 03:53:40 UTC
Just do this to enable task manager Click on start run copy and paste this and press enter



REG add HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System /v DisableTaskMgr /t REG_DWORD /d 0 /f
anonymous
2007-07-03 04:03:26 UTC
1. try to load system in "safe mode" (press F8 on startup) and manually check registry keys in HKLM and HKCU ..microsoft\windows\currentversion\run

or use msconfig.exe in XP to start system in "diagnostic mode"

2. try to start antivirus in safe/diagnostic mode

3. connect your HDD to another computer and check it by antivirus.
anonymous
2007-07-07 02:09:36 UTC
okay you got to look at this like you have an emergency removal necessary to regain your computer.



This is not your imagination:

READ: EXAMPLE:

Security software disabler Trojan

http://www.webopedia.com/TERM/S/security_software_disabler_Trojan.html



Security Recommendations

http://www.bluecollarpc.net

It is now strongly recommended to have a firewall, antivirus, and antispyware paid subscription security software installed, updated, and running continually for personal and computer security. It is also recommended to join at least one avenue of information and/or help such as groups or forums or RSS news feeds or simply checking any Internet News publication on security at least on a weekly basis.



DOWNLOAD AND RUN EMERGENCY REMOVAL TOOL FROM MICROSOFT:



Microsoft Free Malicious Software Removal Tool http://www.microsoft.com/security/malwareremove/default.mspx

Emergency Download Link (USA English): http://www.microsoft.com/downloads/details.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&displaylang=en



McAfee AVERT Stinger (Same Thing):

http://vil.nai.com/vil/stinger/



RUN THESE IN SAFE MODE:

How to go into Safe Mode

http://www.bluecollarpc.net/downloads/SafeMode_WindowsXP.rtf



a-squared HiJackFree [working-freeware]

http://www.hijackfree.com/en/

Home: http://www.emsisoft.com/en/

a-squared HiJackFree is a detailed system analysis tool which helps advanced users to detect and remove all types of HiJackers, Spyware, Adware, Trojans and Worms. (Note this is the superior alternative to HiJackThis for advanced users with instant analysis online).





AVG Anti-Virus Free Edition [working-freeware]

http://www.grisoft.com/

AVG Free Edition is the well-known antivirus protection tool. AVG Free is available free of charge to home users for the life of the product. Rapid virus database updates are available for the lifetime of the product, thereby providing the high level of detection capability that millions of users around the world trust to protect their computers. AVG Free is easy to use and will not slow your system down (low system resource requirements). Highlights include automatic update functionality, the AVG Resident Shield, which provides real-time protection as files are opened and programs are run, free Virus Database Updates for the lifetime of the product, and AVG Virus Vault for safe handling of infected files.



RUN THIS AFTERWARDS - IN NORMAL MODE:

ClamWin Free Antivirus [Open Source - working freeware]

http://www.clamwin.com/

ClamWin is a Free Antivirus for Microsoft Windows 98/Me/2000/XP and 2003. ClamWin Free Antivirus comes with an easy installer (and open source code). You may download and use it absolutely free of charge. It features: High detection rates for viruses and spyware; Scanning Scheduler; Automatic downloads of regularly updated Virus Database. Standalone virus scanner and right-click menu integration to Microsoft Windows Explorer; Addin to Microsoft Outlook to remove virus-infected attachments automatically. The latest version of Clamwin Free Antivirus is 0.88.2.3 . Please note that ClamWin Free Antivirus does not include an on-access real-time scanner. You need to manually scan a file in order to detect a virus or spyware.


This content was originally posted on Y! Answers, a Q&A website that shut down in 2021.
Loading...