Jump to content

My Mom got a virus... RIP

ohJey

So she downloaded a ZIP file from a email and installed it.  She said she was expecting a shipping label for something she sold, but why would they send a label as a .zip?  

 

So yeah.. I tried scanning it in safe mode and it kept spreading as a deleted it over and over.  Eventually it ended up deleting some boot files and her computer would no longer boot.

 

I put the drive in my computer and started backing up her data onto our network storage.  But then... BOOM!  Windows defender detects a virus :D D:

 

I hopped on the internet real quick and figured out the virus really likes infecting temporary files first.  So I deleted all temp files and downloaded avast and malwarebytes and scanned as fast as I could.

 

I'm glad to say my computer has lived and I checked the registry and other common locations and it is 100% gone.

 

 

 

TL;DR:

SOOOOooo moral of the story is teach your parents how to use email properly and how to tell scams from real emails.

 

Also.. I'm installing Linux Mint on her laptop because I convinced her that it would be better for what she does, YAY!

Linux "nerd".  If I helped you please like my post and maybe add me as a friend :)  ^_^!

Link to comment
Share on other sites

Link to post
Share on other sites

Well done, removing viruses is pretty much always a massive pain.  I agree with what you said at the end of your post, I think educating people on this subject is really important as it enables them to prevent all sorts of things such as phishing scams and malware in the future.

Link to comment
Share on other sites

Link to post
Share on other sites

How did you manage to get it on your computer too?

Pilates

Link to comment
Share on other sites

Link to post
Share on other sites

I said thank god that my mother doesnt even know how to turn on a pc

CPU: Intel core i7-4770 --- CPU Cooler: Corsair H105 --- GPU: Asus Geforce GTX 970 Strix --- MB: Asus Maximus VI Hero --- RAM: Corsair Vengeance Pro 16GB

Case: Corsair Obsidian 750D --- PSU: Corsair AX860i --- SSD: Seagate 120GB --- HDD: Seagate 2TB + Toshiba 1TB --- ODD: Asus External DVD-R

Keyboard: Razer Blackwidow 2013 Ultimate --- Mouse: Logitech G602 --- Mousepad: Corsair Vengeance MM600 --- Monitor: LG 29UM65

Link to comment
Share on other sites

Link to post
Share on other sites

And why exactly did you quote the OP and not post anything in your reply?

Can we use -snip please, it too much effort to scroll after a long post. #FirstWorldProblems.

CPU: Intel 3570 GPUs: Nvidia GTX 660Ti Case: Fractal design Define R4  Storage: 1TB WD Caviar Black & 240GB Hyper X 3k SSD Sound: Custom One Pros Keyboard: Ducky Shine 4 Mouse: Logitech G500

 

Link to comment
Share on other sites

Link to post
Share on other sites

I said thank god that my mother doesnt even know how to turn on a pc

lol :P

Linux "nerd".  If I helped you please like my post and maybe add me as a friend :)  ^_^!

Link to comment
Share on other sites

Link to post
Share on other sites

How did you manage to get it on your computer too?

I was transferring her files to the NAS using my computer

Linux "nerd".  If I helped you please like my post and maybe add me as a friend :)  ^_^!

Link to comment
Share on other sites

Link to post
Share on other sites

Woah! you scared me there! when you said your mom got a virus! :lol: :D

Details separate people.

Link to comment
Share on other sites

Link to post
Share on other sites

Woah! you scared me there! when you said your mom got a virus! :lol: :D

:o

Linux "nerd".  If I helped you please like my post and maybe add me as a friend :)  ^_^!

Link to comment
Share on other sites

Link to post
Share on other sites

Nice bait title you got there... :lol:

Link to comment
Share on other sites

Link to post
Share on other sites

I was transferring her files to the NAS using my computer

How does that give you a virus?

Pilates

Link to comment
Share on other sites

Link to post
Share on other sites

:o

Sorry bro , couldn't resist! :P

I'd reccommend you cleaning your mbr as well to remove final trace as well .

Details separate people.

Link to comment
Share on other sites

Link to post
Share on other sites

How does that give you a virus?

I have no idea. I only dragged the files from her drive to the NAS. Now that I think about it, maybe it was just detecting the virus on the drive? I dunno

Sorry bro , couldn't resist! :P

I'd reccommend you cleaning your mbr as well to remove final trace as well .

Yeah that's what I heard I should do, I make sure to do it

Linux "nerd".  If I helped you please like my post and maybe add me as a friend :)  ^_^!

Link to comment
Share on other sites

Link to post
Share on other sites

I have no idea.  I only dragged the files from her drive to the NAS.  Now that I think about it, maybe it was just detecting the virus on the drive?  I dunno

Yeah I guess it could have been that.

Pilates

Link to comment
Share on other sites

Link to post
Share on other sites

I'd give her an antivirus because if she's that "non tech savvy" you could run into even more future issues... https://help.ubuntu.com/community/Antivirus just gonna leave that there (yes I know it's a different distro but those points still apply)

5820k4Ghz/16GB(4x4)DDR4/MSI X99 SLI+/Corsair H105/R9 Fury X/Corsair RM1000i/128GB SM951/512GB 850Evo/1+2TB Seagate Barracudas

Link to comment
Share on other sites

Link to post
Share on other sites

So she downloaded a ZIP file from a email and installed it.  She said she was expecting a shipping label for something she sold, but why would they send a label as a .zip?  

 

So yeah.. I tried scanning it in safe mode and it kept spreading as a deleted it over and over.  Eventually it ended up deleting some boot files and her computer would no longer boot.

 

I put the drive in my computer and started backing up her data onto our network storage.  But then... BOOM!  Windows defender detects a virus :D D:

 

I hopped on the internet real quick and figured out the virus really likes infecting temporary files first.  So I deleted all temp files and downloaded avast and malwarebytes and scanned as fast as I could.

 

I'm glad to say my computer has lived and I checked the registry and other common locations and it is 100% gone.

 

 

 

TL;DR:

SOOOOooo moral of the story is teach your parents how to use email properly and how to tell scams from real emails.

 

Also.. I'm installing Linux Mint on her laptop because I convinced her that it would be better for what she does, YAY!

First question is why is she Admin? You don't run Linux as root the same way you don't run Windows, a user that isn't deeply knowledgeable in computers, as admin either.

Link to comment
Share on other sites

Link to post
Share on other sites

First question is why is she Admin? You don't run Linux as root the same way you don't run Windows, a user that isn't deeply knowledgeable in computers, as admin either.

Very true, but I didn't take the time to think about that before hand.

Linux "nerd".  If I helped you please like my post and maybe add me as a friend :)  ^_^!

Link to comment
Share on other sites

Link to post
Share on other sites

Very true, but I didn't take the time to think about that before hand.

Anyway.

You can bring back the system back in time. Simply boot from Windows 7 disk, click on Repair on the screen where you are greeted with the Install button.

Then click on System Restore option, and a couple of seconds the wizard will show, and start doing a startup repair check. Cancel that, and then you'll be given the option to bring back the system back in time. Pick a restore point before the virus infection, and voila. In a few minutes, the system will no longer have the virus, and restore back the way it was. Once done, make sure the zip file is not on the system (as it doesn't affect personal files).

If that fails:

Re-installing Windows 7 via a USB key should take about 7min (depends on the system speed and USB key).

Download SP1 before hand, and install it when Windows 7 is installed and the drivers are installed, that will save you a bunch of updates to do.

Do the remaining ones. And install the software she uses at the same time, and off you go you are done.

Link to comment
Share on other sites

Link to post
Share on other sites

Anyway.

You can bring back the system back in time. Simply boot from Windows 7 disk, click on Repair on the screen where you are greeted with the Install button.

Then click on System Restore option, and a couple of seconds the wizard will show, and start doing a startup repair check. Cancel that, and then you'll be given the option to bring back the system back in time. Pick a restore point before the virus infection, and voila. In a few minutes, the system will no longer have the virus, and restore back the way it was. Once done, make sure the zip file is not on the system (as it doesn't affect personal files).

If that fails:

Re-installing Windows 7 via a USB key should take about 7min (depends on the system speed and USB key).

Download SP1 before hand, and install it when Windows 7 is installed and the drivers, and installed, that will save you a bunch of updates to do.

Do the remaining ones. And install the software she uses at the same time, and off you go you are done.

okay thanks for the tips

Linux "nerd".  If I helped you please like my post and maybe add me as a friend :)  ^_^!

Link to comment
Share on other sites

Link to post
Share on other sites

Brad_Pitt_Nude.EXE FTW!

Link to comment
Share on other sites

Link to post
Share on other sites

Happy I have a 4TB set aside for selected client's "System image" backups.

If anything goes wrong, image is restored and pre restored documents are backed up.

 

Saves me so much time hunting down nasties....

Maximums - Asus Z97-K /w i5 4690 Bclk @106.9Mhz * x39 = 4.17Ghz, 8GB of 2600Mhz DDR3,.. Gigabyte GTX970 G1-Gaming @ 1550Mhz

 

Link to comment
Share on other sites

Link to post
Share on other sites

I never got a virus, so I never had to worry about that stuff :P

And my parents use mac, so don't have to worry about that either...

Song Of The Day: Nujabes - Battlecry

Link to comment
Share on other sites

Link to post
Share on other sites

Woah! you scared me there! when you said your mom got a virus! :lol: :D

 

Ah hah haaahhh...

Owner of a top of the line 13" MacBook Pro with Retina Display (Dual Boot OS X El Capitan & Win 10):
Core i7-4558U @ 3.2GHz II Intel Iris @ 1200MHz II 1TB Apple/Samsung SSD II 16 GB RAM @ 1600MHz

Link to comment
Share on other sites

Link to post
Share on other sites

after reading this I just felt the need to do a overnight boot-time scan, didn't find anything besides some corrupted files

MoBo: 970A-D3P CPU: FX-8350 GPU: HD 7950 PSU: 1000watt RAM:8Gb of G,skill 1600

Link to comment
Share on other sites

Link to post
Share on other sites

Nice bait title you got there... :lol:

:lol: Yeah i was thinking something else too  :lol:

A water-cooled mid-tier gaming PC.

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×