1. threadbare

    threadbare Private E-2

    Hi I have picked up a virut virus. I was going through your virus and malware removal process, but it has corrupted combofix, mg tools and will not allow access to most AV and spyware sites to download software. Having read the threads, it appears anyway that the only way to get rid of this effectively is to re format and reinstall windows. OK thats fine i have backed up personal files etc but no executable files, and can now proceed with the reinstall.
    However what is troubling me is that despite following your advice with antivirus, anti spyware . malware etc software (AVG full, SAS, Malwarebytes, Adaware, Spybot, Sophos, CCleaner, ASC, IOBIT360), keeping it all updated and running at least weekly,and using windows firewall, i have still managed to pick up virut which seems to have been around for a while and yet still has no cure! So how come there is so little publicity about this potentially serious virus, even the avtivirus sites don t flag it up as being especially harmful, and is there anything i can do to prevent re infection after i have reformatted my system?
    All advice gratefully received!
    Thanks for your continuing assistance to us enthusiastic amateurs!
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Yes this is correct.

    First let me just state what the How to protect yourself from malware sticky said
    In addition there is no protection from the things that user's of PCs choose to do to themselves. No protection software will find everything and if you ( not saying you did ) do foolish things then the end result will still be an infected PC. The new infections that are around can bypass and even break protection programs. Most antivirus programs don't even detect the new forms of Virut. And if it they do, they cannot fix it because the Virut code itself is broken and the information it injects into files cannot be reliably removed. The only solution would be to delete the files and if your system files are deleted, Windows would no longer run.

    Your were instructed in How to protect yourself from malware sticky that the Windows Firewall is not adequate.

    Free versions of SAS and MBAM do not protect you. They are after the fact scanners.

    Free Ad-Aware does not protect you either and it is basically not even that useful anymore which was why it was removed from the stickies years ago.

    Spybot only provides some active protection if you use Teatimer which has never been high on our list of things to run.

    CCleaner is not a malware scanner or removal tool.

    Don't know what you mean by Sophos but if you are running their antivirus while having AVG installed you basically reduced the effectiveness of both of them.

    ASC and IObit 360 are not in are sticky. ASC does not protect you from malware and would never be in the sticky. IObit Security 360 is not something we currently recommend ( may never be ) especially consider the recent complaints agains them for possiblye stealing Malwarebytes signature database.And I don't recommend either of them anyway.

    All the above being said, Virut is a virus and only your antivirus program would be of any use against it and no antivirus programs appear to be able to properly protect against the new forms.

    There are many many posts on many forums about this. It is extremely well known. Do you really think an antivirus company is going to publish info on their inabilities to detect and remove it and many other infections?

    Don't take this the wrong way, but the people who use the PC are the ones who accessed some questionable website, downloaded a file, opened and email, used a torrent or P2P downloader, downloaded a codec to view some video, allowed some one to insert a thumb/flash drive into the USB port without worrying about the fact that it could automatically run something, ......etc. You have to step back and ask yourself what was being done before this happen and you may find your answer as to how the infection got onto the PC.


    And as far as your reinstall goes, if any single file that you copy back to this PC contains the infection, it will soon spread to take over the whole PC again. Also remember that executable files are not just EXE files. It can include the following too: .com, .doc, .jpg, .htm, .html, .msi, .pdf, .pif, .rar, .scr, .zip and even other files like this that cause processes to run.


    One key point in the How to protect yourself from malware sticky is that security begins and ends with the user of the PC and no security software can protect you from yourself especially if you are intent on bypassing the security in any form. A couple of simple examples of bypassing security are:
    • Installing browser addons that are not secure. They now run like they are your browser which obviously has full permission to run.
    • Installing and running any kind of torrent or p2p application since you now give it permission to download things from questionable places and when you are running these applications you open the door to your PC and allow anyone in the world to connect to you. Does everyone really trust that these applications have no security holes in them? Do you think they even care?
     
    Last edited: Nov 24, 2009
  3. threadbare

    threadbare Private E-2

    Hi Chaslang Many thanks really appreciate your time to put me straight on this one. Looks like my fault as its mainly me who uses the laptop. Lack of good firewall probably the culprit, and i think virut arrived through a rogue music / player download. Have now reinstalled, back to the OEM vista (i had "downgraded" to XP pro) and all seems to be well. First call was to install PC Tools firewall and AVG, then the rest of your suggestions.
    Thanks again for your helpful comments.
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome. Surf safely!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds