Does anyone know how to seize rid of this virus? It spread itself through my MSN Messenger, and I can't achieve rid of it! It keep sending itself to my other online contacts. I'm not sure what it does but, but it hasn't shown up on my virus scan all the same (Norton) and I'm relatively worried it'll catch worse. Urgent, please sustain!
Answers:
This is not a problem at adjectives. Here's what you necessitate to do.
1st, don't throw away your time next to AVG, true sword, spybot, poster aware, CA, spyhunter, superantispyware, avast, panda, kaspersky, spyware blaster, bitdefender, spyware guard, window ally or anything of the sort. Stay away from anything explicitly FREE when it comes to spyware and antivirus. There is a defence why they free. They are NOT correct.
2nd, You involve some of the best software out in that. Norton Systemworks is exceptionally flawless. That's the one and only correct software from Norton. I wouldn't recommend Norton Internet deposit, its not that great. Now the best software you should return with is Spysweeper near Anti-virus, this software is too fitting and get better everyday. This is Elite software. It blocks over 450,000 definition threats, which contain multiple fringerprints near each(you can do the math). No other software can compete next to that or come close for that business. It catch everything and have live shields. I've used them adjectives and it is 2nd to none.
3rd, after you install and update the software, since its in your system you will own to turn past its sell-by date system restore and later walk into out of danger mode and run the scan and do away with the virus. after after removal, reboot and turn system restore fund on.
4th, (Optional) I recommend a Firewall from Zone Alarm, their free edition is so flawless. Or you can buy their Pro publication, but the free altered copy will do more than the errand.
5th, any probs during or after you do adjectives this, transport me an e-mail or IM. I guarenDAMNtee my answers and will backing you within personage from IM if needed.
try uninstalling msn msg'er and reinstall, or you can try another program string AVG or avast to rummage and verbs the virus.
You can try using an alternative virus scanner. No virus scanner can detect adjectives virus. However, it is also not advisable to install multiple virus scanners.
If you are unwilling to install another anti-virus software, later you hold to remove the virus manually. To remove the virus manually:
1. Download HijackThis (
http://www.merijn.org/files/hijackthis_v... HijackThis is a tool used by masses professionals/virus analysts to detect hurtful software running on your computer. It scan the index of programs that run on startup, the currently running programs, as all right as non-Microsoft services.
2. Save the wallet to the Desktop and double-click to unfurl it. Click "I Agree" if a License Agreement fanlight appears.
3. Click on the "Do a System Scan and Save a logfile". HijackThis will immediately scan your computer. Once it is done, Notepad will unscrew next to a bunch of primer surrounded by it. Press Ctrl+A to select adjectives the workbook, consequently post the article within your subsequent reply. This will allow me (or other users) to check the register for suspicious items that you can fix.
Cheers~!
I'm working on it at the moment. At the time of writing, AVG doesn't endorse it. I'll donate more as I amount it out.
i merely know how to use sophos to uninstall it. sorry. but i can bestow you info on it.
first sour, it's not a virus. it's a worm. ... a worm that target window platform, merely i come up with. and approaching you said, it's spread through primarily msn. though it does go by through AOL and multiple other chatting programs, where on earth a connect is sent out that enable the user to download a fastener report. contained by the fastener database is the worm. the worm is identified underneath the pet name W32/ Agent-GCG. it simply copies itself into (onto?) msn (or what what other chatting program it's self go by through? i'm not sure in the order of this...), the actual .exe database.
it's s W32 worm, so it let other ppl own direct access your computer via IRC (internet relay chat). it's with the sole purpose be around since wednesday, i give attention to. it uses your chat identify and pass on the intermingle to adjectives your contacts. the message is recurrently along the lines of "do you know this chick?
http://tinypic.m5t.de/tanyababe.closure,... she tell me she know you." it also creates a registry directory that make msn start automatically everytime you start your computer. i construe ppl just own access to your comp if you're online? not sure in the order of this point... hope this help.
---
bowdlerize: ok, so a friend of mine uninstalled and removed window live messenger, stale her not easy drive. i have an idea that she be discussion to me, newly immediately, through window messenger (the one that comes near your computer..) and she hasn't be ratification bad those annoying messages. we're guessing that she's wipe the worm rotten. not sure though. i'll reply if near's any report. ... (friend have gone to sleep presently. *frowns*)
------
edit2: i read around and here's a page (in some other vocalizations, have to google translate it) where on earth someone's also have one and the same problem. however to use this method you should download hijak this first.
http://translate.google.com/translate?hl...
(non translated text:
http://www.aiutamici.com/aiutaforum/topi...
Try a online antivirus scanner and a online anti-adware/malware/spyware scanner in secure mode near web to verbs up your computer BEFORE you download anything. This because the program you download can find infected.
Disable "System Restore" for Windows Me and XP, next restart your PC to verbs your system restore points for virus, spyware, adware etc.
http://www.microsoft.com/technet/communi...
Now restart surrounded by past the worst mode.
To achieve contained by safe and sound mode Press "F8" upon boot up.
Select "Safe mode next to Network".
Go to Start – Run - type iexplore
http://www.bitdefender.com/scan8/ie.html... Enter(ok).
Do a full scan of adjectives your drivers. If something is found, delete it, reboot and do like peas in a pod again in past the worst mode near exchange cards.
When that scan does not find anything you reboot again in undamaging mode next to framework.
Go to Start – Run – type iexplore
http://www.ewido.net/en/ Enter(ok).
Do a full scan of adjectives your drivers. If something is found, delete it, reboot and do like peas in a pod again in protected mode near exchange cards.
**NOTE**: Do NOT do anything else next to your computer when scan. This because you can start virus/adware/spyware/malware manually.
When not a soul of these scanners are showing anything you can reboot backbone to everyday mode.
Turn on "System Restore".
---------------
Antivirus: BitDefender Online scanner - will scan and remove threats.
Anti adware/spyware: Ewido Online Scanner - will scan and remove threats.
---------------
**NOTE**: Only hold one antivirus program and one firewall installed on your computer.
Anti-adware/malware/spyware are ok to enjoy more past its sell-by date.
You stipulation to seize one antivirus program, one firewall, pop up blocker and some spyware/adware/malware removers if you don't hold it.
....
I use this and more on my Windows XP Home SP2 computer:
BitDefender Antivirus:
http://www.bitdefender.com/no/view/downl...
Comodo Firewall:
http://www.personalfirewall.comodo.com/...
Anti adware/spyware/malware:
Comodo Anti-malware:
http://www.comodo.com/boclean/boclean.ht...
Ad-Aware:
http://www.lavasoft.com/products/ad_awar...
Spybot S&D:
http://www.safer-networking.org/en/index...
SuperAntiSpyware:
http://superantispyware.com/
AVG Anti-Rootkit
http://www.grisoft.com/doc/download-free...
CCleaner is a freeware system optimization and privacy tool. It removes unused files from your system - allowing Windows to run faster and freeing up sensible firm disk space. It also cleans traces of your online happenings such as your Internet history.
http://www.ccleaner.com/
All are free.
**NOTE**: Only hold one antivirus program and one firewall installed on your computer.
Anti-adware/malware/spyware are ok to enjoy more of.
Good Luck.
I hold get this virus too. I meditate this is a brand trial breed of msn virus, no thought how to attain rid of it even so. Would someone please updated any report here and integer out to opening to capture rid of it? Many appreciation.
download this software hijackthis
from
http://www.merijn.org/index.php...
consequently goto this website
http://www.bleepingcomputer.com/forums/f...
we'll support you get hold of rid of it
I first picked this worm up on another computer on another grating later when logging support surrounded by to MSN on my home computer that have never even see the directory appear beforehand I be sending out the message again.
How can this ensue?
Could the worm pelt contained by your depiction details stored on the MSN sever so when you log within at any computer on any gridiron using MSN you will still be sending out the worm from anywhere?
what you get on your msn isnt recognised as a virus by your anti-virus program, so its no use to scan your computer beside anti-viruses' programs. i have indistinguishable point my self, and i figure that even though i have delete the fastener record which contained the "virus", it kept on sending itself to my contacts through my msn, and thats because it copied itself in another folder, which should be WINDOWS, C:\WINDOWS, and the wallet is call any funny.closure, img481(and some other numbers i dont remember).closure or IMG54(and other numbers i dont remember either).closure. Now that u found these files, you inevitability to delete them. But thats not adjectives, because near is also a program that keep creating these files, and that program's nickname is any winfp.exe or dumprep.exe.
Anyway dont delete the dumprep.exe in the system32 folder mete out thats not the one, u own to delete it single if u enjoy a copy of that contained by another folder (which certainly shouldnt be there) Just budge on the start slab and get to turn out, and type the name i told you to find the files u have need of to delete. Once you've done these things it should stop sending itself to you contacts, at lowest it worked for me..!
A virus that reinfects your system every time you boot is a ROOTKIT.
Please refer to my previous summary.
- CarlD
http://answers.yahoo.com/question/index?...