December 7, 201213 yr Hey guys, Following a sketchy pdf I was forced into downloading, I now have a virus, or actually a very intense adware situation. It got to the point where ads were running all the way down the sides of any website, as well as the margins. And these aren't static ads, these are along the lines of .gifs. They move, they change, and they aren't very clean and appropiate (normally wouldn't be an issue, but due to moving furniture, my rig is temporarily based in the living room corner, fully visable to anyone who comes through the kitchen). I have run all the AV programs, Malwarebytes, Ccleaner, even McAfee. This has cleared all ads on websites, however, I am still getting popups for "full director access" and "free trial for penny-cutting knife" and the sorts. Also, anything clickable on a page is subject to "sticking" where if I click the object, a)nothing will happen or B) force a reload of the page, and then the object can be clicked. That means the AVSIM tab, any checkboxes on here, the reputation system, on Facebook I can't click the friend/message/notifications buttons, minimize chat bars, anything. I'm not sure if anyone on here is a visitor of the site Reddit, but I can't read posts/upvote or downvote posts/save or delete or hide posts. It is bareable, but a complete pain, and causes IE to load extremely slowly. We have some pretty savvy people here on avsim, does anyone have any clue on what to do?
December 7, 201213 yr This found and cleaned a virus that 3 others didn't. Free online scan. http://www.eset.com/us/online-scanner/'>http://www.eset.com/us/online-scanner/ http://www.eset.com Hook Larry Hookins Oh! I have slipped the surly bonds of EarthAnd danced the skies on laughter-silvered wings;
December 7, 201213 yr Good morning, I had to clean a system a few waaeks back from a nasty ransomware virus. It took me a while but in the end I downloaded the rescuedisk from Dr. Web. Most important advantage is that you can start your computer from this disk (so no files in your OS are active or blocked). For me this one did the trick. Luc Brusselmans Belgium
December 7, 201213 yr I also got ransomware recently. After fighting with Kaspersky Rescue, Spyhunter, MS Defender for couple of hours, I suddenly got revelation and did a System Restore to a day before. Hope it can help you too.
December 7, 201213 yr Combofix from safe mode is your best bet. I agree it is a very effective tool ,but you must know what you are doing with it,otherwise it can completely screw up your computer. Regards. DIMITRI
December 7, 201213 yr Author Hey guys, I left my computer running last night whilst doing three full scans, and fully disconnected from the net. I just logged on this morning, and nothing has happened yet, but, if something has come up after I get home, I will eagerly try any of the suggestions you guys have given me. Thanks,
December 7, 201213 yr You might want to try this tool also. It is free and does a good job. Kaspersky virus Removal Tool. Even if nothing is showing up on your computer now I think I would go ahead and run this program anyway. It is good. http://www.kaspersky.com/antivirus-removal-tool-register
December 7, 201213 yr I have had good luck with Malwarebytes http://www.malwarebytes.org/products/malwarebytes_free/
December 7, 201213 yr I fix computers for a living. virus removal is something I do every day. My advice is your quickest, most likely route to a clean computer (run Combofix). Also you could create a Hiren's boot disk (Google it) and load a partition editing tool such as Acronis Disk Director to view all the partitions on your HD and see if there are any hidden partitions that don't show up in Windows. Something small and usually FAT16 would be your culprit. Delete it and your computer will be clean again.
December 7, 201213 yr I fix computers for a living. virus removal is something I do every day. My advice is your quickest, most likely route to a clean computer (run Combofix). Also you could create a Hiren's boot disk (Google it) and load a partition editing tool such as Acronis Disk Director to view all the partitions on your HD and see if there are any hidden partitions that don't show up in Windows. Something small and usually FAT16 would be your culprit. Delete it and your computer will be clean again. If you use a name-brand computer like HP, Compaq and the like, be careful with this advice. Many name-brand computer makers use hidden partitions on the hard drive for their product recovery systems. This is what is booted to completely format and reinstall Windows to restore the computer to its out-of-the-box condition. Delete this hidden partition, and you completely and permanently lose your ability to restore your computer to its original out-of-the-box state. Declared weather: FSX: ASN / FS9: ASE
December 7, 201213 yr If you use a name-brand computer like HP, Compaq and the like, be careful with this advice. Many name-brand computer makers use hidden partitions on the hard drive for their product recovery systems. This is what is booted to completely format and reinstall Windows to restore the computer to its out-of-the-box condition. Delete this hidden partition, and you completely and permanently lose your ability to restore your computer to its original out-of-the-box state. You'll note after re-reading my post that I've described the hidden partition as being both "small" and of the FAT16 file system. Factory recovery partitions do not fit into either category.
December 7, 201213 yr Another user of the prehistoric IE. Change it and get a "proper" browser!!!!!! Super VC10 into LOWI with PF3 at a cinema near you https://www.youtube.com/watch?v=298UDyNmgUA
December 7, 201213 yr Author Another user of the prehistoric IE. Change it and get a "proper" browser!!!!!! Yes yes, I'm sorry. IE 9 is my thing only because I can tab website to the taskbar. Chrome always looks good though... That being said, it appears its back. I'm seriously not sure why I have McAfee anyways, what a piece of overbloated software. I will run (albeit very cautiously) ComboFix ASAP
Create an account or sign in to comment