Vista Security 2011

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by richeys_manic, May 3, 2011.

  1. richeys_manic

    richeys_manic Private E-2

    Hi, firstly thank you for the great information already posted on these sites!

    I seem to pick up Vista Security after visiting a torrent site and opening a link with a hope to download it, Vista Security just opened a scan, so I clicked stop, then it asked me to register which I just closed. It was obvious to me this was not "proper" software, but I thought clicking close would be the end of it, but as I've read elsewhere it just installs itself whether you like it or not!

    I have followed post 3 in this thread http://forums.majorgeeks.com/showthread.php?t=235664 here are a few issues and questions I have had:

    I had to find this forum and download all the programs on my other half's laptop, burn them to disc then copy them to my desktop as I could not get online.

    rkill - could not run ANY as administrator even though I am on Vista (64 Ultimate Home edition) I could run one of the versions just by double clicking

    left it on "please be patient" for a good 15 mins, but I checked http://www.technibble.com/rkill-repair-tool-of-the-week/ and saw post 45 to "just close the program if it had been open for 15 minutes, it won't do any harm" so did that

    ran exeHelper - created log, but log to me looks a little empty?

    was able to install, update and run Malwarebytes - whilst running this scan there was still an icon in the systray for the fake security, this disappeared about 5 minutes after the scan started but I also lost internet connection at this point which came back later on in the scan (but was on constantly on my other half's laptop which is not infected). Had to restart to remove all infected files properly, and looked good, when I booted back up no sign of the malware, except some logs in my avg saying malware detected in temp files, but in case this was due to getting rkill I ignored them for now - created log

    Installed SuperAntiSpyware and its a good thing I followed the install options to the letter as when the box for protect or don't protect my homepage, I saw that the site was NOT my usual homepage but some weird link I'd never seen before. Anywho completed the scan, rebooted as it asked and took log.

    Installed and ran MGtools as per instructions and took logs.

    Open Firefox and all working as normal.

    Sorry for being paranoid, I was wondering if you could look over my logs for me, as the original post I was working from asked for this, and tell me if I have done anything wrong/is my computer all ok now? Sorry if that's a pain but I am just trying to make 100% sure I have got rid of this.

    Also is there a sure way to get around this if the pop up is to appear again? I have read elsewhere that if you accidentally stumble upon it on a different webpage, that you do not click anything but instead ctrl alt del to open task manager and end the process there and you will not be infected. Is this true? Or is there another way to not get it? Or is it just a case of if unlucky enough to stumble on it again I'll have to go through the whole process all over again?

    I usually use AVG but would it be better to use SAS on a permanent basis as it seems to be more affective against these really nasty buggers?

    Thank you so much for any help :)
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member


MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds