Jump to content

quoteso my coworker has a computer that I agreed to take a look at because he said he was pretty sure he had a virus and that he couldn't get on google chrome on it anymore so I figured "Sure, it's probably just conduate or search protect, I'll just remove them and be a hero, so I open it up and it has about 15 windows of browsers, pop up ads on his desktop and error notifications connecting to websites, everything this guy could get is probably on this so I'm looking at it with a glint in my eye and start removing the 8 virus removal programs and optimizers that I don't recognize as actually useful, and then I start on general programs that are useless like zombie news and fountaine and i discovered that one of the programs actually uninstalled chrome over the last hour or so I've gotten it to where it's no longer having all of its resources eaten up (but did have it blue screen on me once) but i still know there is a long way to go so I'm looking at this as a experience, where I have the opportunity to learn how to clean up virus' so I'm looking for advice where do I go to get started learning and can you guys give me suggestions.

Why do you always die right after I fix you?

 

Link to comment
https://linustechtips.com/topic/341129-virus-removal/
Share on other sites

Link to post
Share on other sites

if you have that messed up a pc..truthfully you should be backing up his data and formating

with a pc that infected..you can't be sure you got rid of all the infections and messed up settings unless you format it

If you need remote help fixing something on your computer

I can help over Teamviewer if you wish

just msg me on my profile

Link to comment
https://linustechtips.com/topic/341129-virus-removal/#findComment-4649409
Share on other sites

Link to post
Share on other sites

if a pc is only has like 1 or infections..then yea..just clean them up..but if its really messed up..any good computer tech will backup the data and format and clean install

If you need remote help fixing something on your computer

I can help over Teamviewer if you wish

just msg me on my profile

Link to comment
https://linustechtips.com/topic/341129-virus-removal/#findComment-4649415
Share on other sites

Link to post
Share on other sites

quoteso my coworker has a computer that I agreed to take a look at because he said he was pretty sure he had a virus and that he couldn't get on google chrome on it anymore so I figured "Sure, it's probably just conduate or search protect, I'll just remove them and be a hero, so I open it up and it has about 15 windows of browsers, pop up ads on his desktop and error notifications connecting to websites, everything this guy could get is probably on this so I'm looking at it with a glint in my eye and start removing the 8 virus removal programs and optimizers that I don't recognize as actually useful, and then I start on general programs that are useless like zombie news and fountaine and i discovered that one of the programs actually uninstalled chrome over the last hour or so I've gotten it to where it's no longer having all of its resources eaten up (but did have it blue screen on me once) but i still know there is a long way to go so I'm looking at this as a experience, where I have the opportunity to learn how to clean up virus' so I'm looking for advice where do I go to get started learning and can you guys give me suggestions.

All these on a usb drive including superantispyware 

http://linustechtips.com/main/topic/90213-malware-removal-guide/

Treat people how you want to be treated.


:)

Link to comment
https://linustechtips.com/topic/341129-virus-removal/#findComment-4649419
Share on other sites

Link to post
Share on other sites

I always use a mix of everything, I have a bunch of keys for paid anti-virus but AVG works, then I'll move onto Malwarebytes then moving onto Spybot Search & Destroy and if all else fails ComboFix but you have to be careful with ComboFix because sometimes it can screw it up more than it already is, or.... I had a virus yesterday that kept reinstalling itself after being deleted. So I disconnected the computer from the internet, deleted the program files in Local Disk/Program Files and then quickly uninstalled via the control panel and ran a virus scan of the Local Disk.

 

  • ComboFix
  • AVG/Adware Remover
  • Malwarebytes
  • ComboFix/Full Reinstall or Refresh (Win 8.1)

Work Desktop | CPU: Intel Core i7 4770k | GPU: Quadro K1200 | Motherboard: EVGA Z97 Classified | RAM: Corsair Dominator Platinum 32GB (4x8GB) DDR3-2133Mhz | PSU: Seasonic 750W SS-750KM3 80 PLUS Gold | STORAGE: WD 1TB Se Enterprise Grade Drive & Corsair Neutron NX500 400GB NVMe PCIe  | COOLER: Enermax Liqtech 240 -  5x Noctua NF-F12 iPPC 2000 PWM | CASE: Corsair 600C | OS: Windows 10 Pro | Peripherals: Logitech MX Master 2S -- Logitech K840 -- INTEL X520 10Gb NIC -- 3x Acer H236HL -- Build Log | 

 

Work Server | CPU: Intel Xeon E5-2650 v3 | Model: Cisco UCS C220 M4 (SFF) | RAM: 64GB (4x16GB) Cisco (Samsung) DDR4 2133Mhz | STORAGE: 4x Cisco (Seagate) 900GB 10K 2.5" (RAID 10) - 2x 32GB Cisco FlexFlash Boot Drive (RAID 1) | OS: vSphere 6.7 Enterprise Plus U3 | 

 

Laptop | CPU: Intel Core i7 6700HQ | GPU: Nvidia GTX 960M 2GB GDDR5 | RAM: 32GB (2 x 16GB) DDR4-2400Mhz | STORAGE: 512GB Hynix NVMe | OS: Windows 10 Pro |

 

Gaming Desktop | CPU: Intel Core i7 9700K | GPU: Gigabyte RTX 2080 WINDFORCE 8G  | Motherboard: ASRock Z390 PHANTOM GAMING-ITX | RAM: Ballistix Elite 32GB Kit (16GB x 2) DDR4-3000 | PSU: Silverstone SX700-LPT 700w 80 PLUS Platinum | STORAGE: 2x Samsung 970 PRO 1TB NVMe | COOLER: Noctua NH-L12 | CASE: Louqe Ghost S1 | OS: Windows 10 Pro | Build Log in Progress | 

 

Home Server | CPU: Intel Xeon E5-2690 (Sandy Bridge) | GPU: Quadro P2000 | Motherboard: SUPERMICRO X9SRL-F  | RAM: 64GB (8x8GB) Micron VLP DDR3-1600 ECC | PSU: SUPERMICRO 665W 80 PLUS Bronze | STORAGE: 2x Samsung 860 EVO 500GB (RAID 1) - 4x WD 8TB Ultrastar (RAID 10) - Intel SSD D3-S4510 Series 240GB (BOOT)  | COOLER: Noctua NH-U12DXi4 with 2x Noctua NF-F12 iPPC 3000 PWM | CASE: SUPERMICRO CSE-842TQ-665B 4U | OS: vSphere 6.7 Enterprise Plus U3 | Build Log in Progress |

 

| Pixel 4XL 128GB - Clearly White - Unlocked - Carrier: Visible |

 

| F@H STATS |

Link to comment
https://linustechtips.com/topic/341129-virus-removal/#findComment-4649436
Share on other sites

Link to post
Share on other sites

This are the basic 2 to run:

https://toolslib.net/downloads/viewdownload/1-adwcleaner/

https://www.malwarebytes.org/

 

Then check if it's connecting to ip's when all is closed and do a lockup on them

https://www.wireshark.org/

 

Also check for unsigned services

https://technet.microsoft.com/de-at/sysinternals/bb896653.aspx

 

If it's still acting up push the nuke button. Means reinstall the os as I'd say is the best to do with a system being trashed like you describbed.

Link to comment
https://linustechtips.com/topic/341129-virus-removal/#findComment-4649440
Share on other sites

Link to post
Share on other sites

I always use a mix of everything, I have a bunch of keys for paid anti-virus but AVG works, then I'll move onto Malwarebytes then moving onto Spybot Search & Destroy and if all else fails ComboFix but you have to be careful with ComboFix because sometimes it can screw it up more than it already is, or.... I had a virus yesterday that kept reinstalling itself after being deleted. So I disconnected the computer from the internet, deleted the program files in Local Disk/Program Files and then quickly uninstalled via the control panel and ran a virus scan of the Local Disk.

  • ComboFix
  • AVG/Adware Remover
  • Malwarebytes
  • ComboFix/Full Reinstall or Refresh (Win 8.1)
yes. I agree, combofix is a really cuttthroat antivirus. It will even delete the antivirus on the computer if it isn't disabled first. Its really strict and wjll help get the stuff off.

by the way, it seems like there are alot of broken proxies on the computer, see about deleting them while dealing with the viruses. These proxies were probably placed by the viruses.

CPU: Pentium G3258 @ 3.2GHz || GPU:(first release,used) MSI R9 270 OC || Motherboard:MSI Z97-G45 Gaming Motherboard || RAM: 8 GB G.Skill Sniper 1600 || Monitors: Vizio 22 in Ultra slim 1080p TV || Storage: Seagate barracuda 160 GB 7200RPM,(REFURB) 1TB toshiba 7200RPM || PSU: (stripped from 2013 CAD PC)Corsair CX600 build was under $420

BE SURE TO FOLLOW YOUR THREADS! READ THIS BEFORE POSTING IN TROUBLESHOOTING!! http://linustechtips.com/main/topic/40334-read-before-asking-for-help/
Link to comment
https://linustechtips.com/topic/341129-virus-removal/#findComment-4649594
Share on other sites

Link to post
Share on other sites

if a pc is only has like 1 or infections..then yea..just clean them up..but if its really messed up..any good computer tech will backup the data and format and clean install

No, any good computer tech will try their freaking hardest to fix it.

Re installing windows should ALWAYS be a last resort.

 

OP:

Run 

Adware Removal tool

ADWCleaner

Combofix

HitmanPro

Junk Removal tool

Malwarebytes

MSE

Rkill

RogueKiller

Spybot S&D 1.6.2

and tdsskiller.

 

Normally i would link to a dropbox folder but i sorely need to update it, so simply search for them on an uninfected computer.

Run them all as an admin, do all the updates they ask you to do, and reset all browsers.

Use something like revouninstaller to remove bad programs. At this point, assume anything you have never heard of to be a bad program; their data be damned. 

Make sure to check the "screen resolution" section of the control panel and make sure there are no virtual screens (it's a thing), delete any proxies, re install chrome, and we can go from there.

this will take time, be patient. 

 

Spoiler

I7 4790K @4.5 Ghz 1.294V

VALIDATION, MSI Z97 Gaming 7, 24GB DDR3 1600, Asus Strix 1070 8GB OC@ 2.2Ghz, Corsair graphite series 760T (Black), Cooler master V850, NH-D15 w/LNA ,1TB Samsung 850 Evo,  480GB Sandisk Ultra II SSD, 3TB Seagate Barracuda x 3, 1 TB WD Passport (Backup drive), 2 TB WD Passport (Backup Drive 2),  Windows 10 Pro x64 (uhg), Logitech G900 Chaos (Main), Steelseries Rival (FADE) (Courtesy of Edzel Yago, Thanks Ed), Steelsieres Rival 300 Hyperbeast Special Edition, Coolermaster Quickfire TKL (MX Blue), Razer Blackwidow Tournament edition (Greens).  Audio: Sennheiser HD598 SE, Edifier S1000DB, AudioEngine D1 DAC; Yamaha MG06X Mixer & AudioTechnica AT2020.

 

Phones; Daily drivers: Nexus 6P 64GB/iPhone 6 (Music), Apple Watch, Apple AirPods.

Laptop: 2015 Macbook Pro 13, 8GB of RAM, 2.7Ghz i5, 240GB Apple SSD. 

 

Spoiler

Plex Server: i7 3770, Gigabyte Board, 16GB DDR3 1600, Asus Strix GTX 1050ti 4GB, 120GB SSD Boot Drive, 8 x 3TB Seagate Barracuda, Rosewill RSV-R4000 With 2 Rosewill Hot Swap 4x Backplane Bays, 1050 Watt Corsair HX Series PSU,Hyper T2, Windows 10 Pro 

 

I also do Youtube, check me out!

Link to comment
https://linustechtips.com/topic/341129-virus-removal/#findComment-4649946
Share on other sites

Link to post
Share on other sites

no tdp..a good tech will wipe it if its messed up badly

obviously your not a good tech if you think otherwise

I think it will be fun to dig in and learn how to fix these things, and what a better opportunity than when it can't get worse

Why do you always die right after I fix you?

 

Link to comment
https://linustechtips.com/topic/341129-virus-removal/#findComment-4651280
Share on other sites

Link to post
Share on other sites

..maybe...but often people are on a time frame..and don't have alot of time to screw around with the pc.....backing up and clean installing is often times quicker then trying to find every little infection

atleast it is for me since I do it like 3 times a week and I can do it with my eyes closed probably

If you need remote help fixing something on your computer

I can help over Teamviewer if you wish

just msg me on my profile

Link to comment
https://linustechtips.com/topic/341129-virus-removal/#findComment-4651298
Share on other sites

Link to post
Share on other sites

no tdp..a good tech will wipe it if its messed up badly

obviously your not a good tech if you think otherwise

Excuse me?

A GOOD tech, will never say another tech is bad at their job. **** you man.

I've revived computers from malware that you would run screaming from you little twirp.

 

Spoiler

I7 4790K @4.5 Ghz 1.294V

VALIDATION, MSI Z97 Gaming 7, 24GB DDR3 1600, Asus Strix 1070 8GB OC@ 2.2Ghz, Corsair graphite series 760T (Black), Cooler master V850, NH-D15 w/LNA ,1TB Samsung 850 Evo,  480GB Sandisk Ultra II SSD, 3TB Seagate Barracuda x 3, 1 TB WD Passport (Backup drive), 2 TB WD Passport (Backup Drive 2),  Windows 10 Pro x64 (uhg), Logitech G900 Chaos (Main), Steelseries Rival (FADE) (Courtesy of Edzel Yago, Thanks Ed), Steelsieres Rival 300 Hyperbeast Special Edition, Coolermaster Quickfire TKL (MX Blue), Razer Blackwidow Tournament edition (Greens).  Audio: Sennheiser HD598 SE, Edifier S1000DB, AudioEngine D1 DAC; Yamaha MG06X Mixer & AudioTechnica AT2020.

 

Phones; Daily drivers: Nexus 6P 64GB/iPhone 6 (Music), Apple Watch, Apple AirPods.

Laptop: 2015 Macbook Pro 13, 8GB of RAM, 2.7Ghz i5, 240GB Apple SSD. 

 

Spoiler

Plex Server: i7 3770, Gigabyte Board, 16GB DDR3 1600, Asus Strix GTX 1050ti 4GB, 120GB SSD Boot Drive, 8 x 3TB Seagate Barracuda, Rosewill RSV-R4000 With 2 Rosewill Hot Swap 4x Backplane Bays, 1050 Watt Corsair HX Series PSU,Hyper T2, Windows 10 Pro 

 

I also do Youtube, check me out!

Link to comment
https://linustechtips.com/topic/341129-virus-removal/#findComment-4652160
Share on other sites

Link to post
Share on other sites

..maybe...but often people are on a time frame..and don't have alot of time to screw around with the pc.....backing up and clean installing is often times quicker then trying to find every little infection

atleast it is for me since I do it like 3 times a week and I can do it with my eyes closed probably

Just ignore this guy OP.

 

Spoiler

I7 4790K @4.5 Ghz 1.294V

VALIDATION, MSI Z97 Gaming 7, 24GB DDR3 1600, Asus Strix 1070 8GB OC@ 2.2Ghz, Corsair graphite series 760T (Black), Cooler master V850, NH-D15 w/LNA ,1TB Samsung 850 Evo,  480GB Sandisk Ultra II SSD, 3TB Seagate Barracuda x 3, 1 TB WD Passport (Backup drive), 2 TB WD Passport (Backup Drive 2),  Windows 10 Pro x64 (uhg), Logitech G900 Chaos (Main), Steelseries Rival (FADE) (Courtesy of Edzel Yago, Thanks Ed), Steelsieres Rival 300 Hyperbeast Special Edition, Coolermaster Quickfire TKL (MX Blue), Razer Blackwidow Tournament edition (Greens).  Audio: Sennheiser HD598 SE, Edifier S1000DB, AudioEngine D1 DAC; Yamaha MG06X Mixer & AudioTechnica AT2020.

 

Phones; Daily drivers: Nexus 6P 64GB/iPhone 6 (Music), Apple Watch, Apple AirPods.

Laptop: 2015 Macbook Pro 13, 8GB of RAM, 2.7Ghz i5, 240GB Apple SSD. 

 

Spoiler

Plex Server: i7 3770, Gigabyte Board, 16GB DDR3 1600, Asus Strix GTX 1050ti 4GB, 120GB SSD Boot Drive, 8 x 3TB Seagate Barracuda, Rosewill RSV-R4000 With 2 Rosewill Hot Swap 4x Backplane Bays, 1050 Watt Corsair HX Series PSU,Hyper T2, Windows 10 Pro 

 

I also do Youtube, check me out!

Link to comment
https://linustechtips.com/topic/341129-virus-removal/#findComment-4652191
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×