Fake Windows 7 anti-virus

Erased

New member
Local time
4:13 PM
Messages
12
First off, i'm sorry if this is not in the right place.

Ok, 2nd off I am very good about not getting viruses, I haven't had one in years & yes I am running a legit virus scanning program. I woke up this morning and logged onto my PC & all of a sudden it started going absolutely crazy, now I can't do anything on it. I have not installed or downloaded anything in a couple of days and yesterday it was running 110% fine. I was wondering if anyone could help me with the solution on this because I don't know what to do, I do not want to format. I just rebooted my pc & now i'm running it in safe mode to see if I can get my virus scan running because it wouldn't let me do anything when I just started it up. If that doesn't work then i'm up for other suggestions because I honestly don't know what to do.:mad:
 

My Computer My Computer

At a glance

windows 7 Ultimate 32-bitPentium(R) Dual-Core CPU E5200 @ 2.50GHz2GBName Intel(R) G41 Express Chipset(i think tha...
Computer Manufacturer/Model Number
Dell Inspiron 537
OS
windows 7 Ultimate 32-bit
CPU
Pentium(R) Dual-Core CPU E5200 @ 2.50GHz
Motherboard
n/a
Memory
2GB
Graphics Card(s)
Name Intel(R) G41 Express Chipset(i think thats right)
Sound Card
n/a(don't know)
Monitor(s) Displays
Dell E228WFP
Screen Resolution
1680x1050
Hard Drives
320GB(I think Western Digital-what came in the computer)
320GB Western Digital External
1TB Western Digital External
PSU
N/A(Don't know)
Case
N/A(Don't know)
Cooling
N/A
Keyboard
N/A
Mouse
N/A
Internet Speed
N/A
Hi, Erased.

Windows 7 has a much more robust System Restore than XP and Vista so you may want to try that first. If that isn't successful, I suggest MBAM. Instructions:

Please download Malwarebytes' Anti-Malware to your desktop.


  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, be sure Quick scan is selected, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, EXCEPT items in System Restore as shown in this sample:
    MBAM_SR.png
  • Click Remove Selected.
 

My Computer My Computer

At a glance

Windows 7 & Windows Vista Ultimate
OS
Windows 7 & Windows Vista Ultimate
Try inserting your Windows 7 DVD and making a system restore. If you've turned system restore off, try a system repair. Also, try going to the start menu, typing "msconfig" (without the brackets) and telling me what is in your startup tab. There might be an evil hidden program somewhere underneath your processes that's causing all this...

Edit: I thought I'd be the first replier to the thread, but Corrine beat me! :geek:
 

My Computer My Computer

At a glance

Windows 7 Home Premium [64-Bit]Intel Core 2 Quad CPU Q8200 @ 2.33 GHz4094 MB DDR2SAPPHIRE Radeon HD 6970 (2 GB VRAM)
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Multirama PC Expert [Bulgaria]
OS
Windows 7 Home Premium [64-Bit]
CPU
Intel Core 2 Quad CPU Q8200 @ 2.33 GHz
Motherboard
GIGABYTE GA-G31M-S2C
Memory
4094 MB DDR2
Graphics Card(s)
SAPPHIRE Radeon HD 6970 (2 GB VRAM)
Sound Card
Realtek ALC883 @ Intel 82801GB ICH7 - High Definition Audio
Monitor(s) Displays
Samsung SyncMaster BX2235 [21.5" LCD with LED Backlight]
Screen Resolution
1920x1080
Hard Drives
Hitachi HDT721075SLA360 - 750 GB
PSU
Cooler Master GX750 - 750W
Case
Multirama (Black / 2010 Revision)
Cooling
Stock + Cooler Master
Keyboard
Logitech G510 (Gaming Keyboard)
Mouse
Razer Lachesis (4000 DPI, Blue Version)
Internet Speed
Vivacom Optical [100 Mbps]
Browser
Chrome [Windows]

My Computer My Computer

At a glance

Windows® 8 Pro (64-bit)Intel® Core™ i5 Processor 2467M (1.60GHz, 3MB...6GB DDR3 System Memory at 1,333MHz (on BD 4GB...AMD Radeon™ HD7550M 1GB DDR3 (Ext. Graphic)
Computer Manufacturer/Model Number
Samsung NP530U4B-S02IN
OS
Windows® 8 Pro (64-bit)
CPU
Intel® Core™ i5 Processor 2467M (1.60GHz, 3MB L3 Cache)
Motherboard
Samsung Electronics
Memory
6GB DDR3 System Memory at 1,333MHz (on BD 4GB + 2GB x 1)
Graphics Card(s)
AMD Radeon™ HD7550M 1GB DDR3 (Ext. Graphic)
Sound Card
Realtek High Definition Audio
Monitor(s) Displays
35.56cm (14.0) SuperBright 300nit HD LED Display
Screen Resolution
1366x768
Hard Drives
1TB S-ATA II Hard Drive (5400RPM) with ExpressCache 16GB SSD
Internet Speed
sucks
Antivirus
Microsoft Security Essentials
Browser
Google Chrome (Sync enabled)
Hi, Erased.

Windows 7 has a much more robust System Restore than XP and Vista so you may want to try that first. If that isn't successful, I suggest MBAM. Instructions:

Please download Malwarebytes' Anti-Malware to your desktop.


  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, be sure Quick scan is selected, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, EXCEPT items in System Restore as shown in this sample:
    MBAM_SR.png
  • Click Remove Selected.

Corrine, I'm always learning here myself. May I ask: what is the reason for unticking those particular items? Why is MBAM marking them as unsafe if they are not to be deleted? Thanks kindly C.
 

My Computer My Computer

At a glance

Windows XP - Now Windows 7 Home Premium (64-b...
OS
Windows XP - Now Windows 7 Home Premium (64-bit).
I second the manhunter's question...
 

My Computer My Computer

At a glance

7Home64AMD Phenom II x4 965 - 3,4GHzDDR3 1333Mhz, 8Gb (Corsair xms3 : 9, 9, 9, 24)GeForce GTX550Ti 1024mb GDDR5 (Gainward)
Computer Manufacturer/Model Number
Home Made 00x
OS
7Home64
CPU
AMD Phenom II x4 965 - 3,4GHz
Motherboard
Gigabyte GA-880GMA-UD2H
Memory
DDR3 1333Mhz, 8Gb (Corsair xms3 : 9, 9, 9, 24)
Graphics Card(s)
GeForce GTX550Ti 1024mb GDDR5 (Gainward)
Sound Card
Creative X-Fi ExtremeGamer
Monitor(s) Displays
Acer 27", led, full hd
Screen Resolution
1920x1080
Hard Drives
G-Skill SSD 80Gb + Kingston SSD 64Gb + WD sata 500Mb + Hitachi sata 1Tb
PSU
CombatPower 750W, 12cm fan
Case
Antec "Three Hundred", 12 + 14 cm fans
Cooling
Noctua NH-U12P (CPU) + 2xNF-B9 (HDD's) + NF-P12 (case side)
Keyboard
Logitech + Saitek "Cyborg Command Unit"
Mouse
Logitech LS1 laser
Internet Speed
4Mb/s
Other Info
6-fan-&-temp controller Scythe Kase Master Pro 5.25
You can use some popular anti-malware programs to kill the malware..

For instance, my recommendations are
- Malwarebytes' Anti-Malware
- Spybot Search & Destroy

They are freely available to download @
- Malwarebytes' Anti-Malware : www.malwarebytes.org
- Spybot Search & Destroy : The home of Spybot-S&D!

============
To disable the virus during startup, when you almost boot into Desktop, immediately press Ctrl+Alt+Delete and click Task Manager. From the task Manager, kill the virus process that you suspect are...

I happened to get infected by that pest SecurityTool and I removed it by using Malwarebytes' Anti-Malware + the instructions above and it works!
 

My Computer My Computer

At a glance

Windows 7 Ultimate RTM x86 build 7600Intel Core 2 Duo T6400 2.00 GHz3 GB DDR2 RAMIntel Graphics Media Accelerator 4500MHD
Computer Manufacturer/Model Number
Acer Aspire 4935
OS
Windows 7 Ultimate RTM x86 build 7600
CPU
Intel Core 2 Duo T6400 2.00 GHz
Motherboard
Acer Empowering Technology
Memory
3 GB DDR2 RAM
Graphics Card(s)
Intel Graphics Media Accelerator 4500MHD
Sound Card
Realtek High Definition Audio
Monitor(s) Displays
Acer CineCrystal HD 14.0" 1366x768
Hard Drives
Hitachi HTS543225L9A300 ATA 250GB
Transcend External HDD 160GB
I'm curious about the answer to manhunter's question as well...

Does the fact those need unchecked indicate a false positive?
If so, doesn't that defeat the purpose of the program in the first place?
 

My Computer My Computer

At a glance

7-Pro-64Intel Dual Core E5400 2.72gig DDR2 800XFX Radeon HD 4770 512MB
Computer Manufacturer/Model Number
Home Built
OS
7-Pro-64
CPU
Intel Dual Core E5400 2.7
Motherboard
Asus P5Q Pro Turbo
Memory
2gig DDR2 800
Graphics Card(s)
XFX Radeon HD 4770 512MB
Sound Card
Onboard
Monitor(s) Displays
19" Wide screen
Screen Resolution
1440x900
Hard Drives
Seagate 320 Sata2 (2)
Seagate 750 Sata2 (1)
PSU
Corsair HX520W
First off, i'm sorry if this is not in the right place.

Ok, 2nd off I am very good about not getting viruses, I haven't had one in years & yes I am running a legit virus scanning program. I woke up this morning and logged onto my PC & all of a sudden it started going absolutely crazy, now I can't do anything on it. I have not installed or downloaded anything in a couple of days and yesterday it was running 110% fine. I was wondering if anyone could help me with the solution on this because I don't know what to do, I do not want to format. I just rebooted my pc & now i'm running it in safe mode to see if I can get my virus scan running because it wouldn't let me do anything when I just started it up. If that doesn't work then i'm up for other suggestions because I honestly don't know what to do.:mad:


You have been back on-line here today.
What did you find out? Did solve your problem?
We'd like to hear.
Thanks
 

My Computer My Computer

At a glance

Windows 10 ProIntel i5I'm old and lost a few chipsYup
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self Built
OS
Windows 10 Pro
CPU
Intel i5
Motherboard
I have a fatherboard
Memory
I'm old and lost a few chips
Graphics Card(s)
Yup
Sound Card
Yup
Monitor(s) Displays
Samsung 32" UHD
Screen Resolution
3840 x 2160
Hard Drives
Samsung 860 EVO drives
PSU
450 Watt and some fans that blow
Case
Small tower
Cooling
Yes I am cool. lol
Keyboard
Who needs a keyboard?
Mouse
Logitech Laser G7 wireless
Internet Speed
Zippy fast UP and DOWN
Antivirus
I got a shot
Browser
The new Improved EDGE 2020
Corrine, I'm always learning here myself. May I ask: what is the reason for unticking those particular items? Why is MBAM marking them as unsafe if they are not to be deleted? Thanks kindly C.

Apologies for the delay in responding. I've been rather involved in a beta program elsewhere that is taking a fair amount of time.

From MS KB831829 How antivirus software and System Restore work together:

During a restoration, an active antivirus program scans for infected files. If the antivirus program detects any infected files, the antivirus program tries to modify, move, or delete the infected files. If the antivirus program successfully cleans the infected files, System Restore restores the cleaned files. However, if the antivirus software cannot clean a file, the antivirus software deletes or quarantines the file. As a result, the restoration does not work because these actions to the file cause an inconsistent restoration state. As a result, System Restore reverts to the state immediately before the restoration.{bold added}
Although the above KB article refers to XP, it would apply to Windows Vista and Windows 7 as well.

In a full scan, MBAM scans SR. If the file is not completely clean, the user may not have a good restore point. Thus, if something goes wrong in the cleaning process, there is not a good restore point to return to. It would be better to have an infected restore point and begin again than none at all -- particularly since most people are not good about backups and may no longer have the installation media.

MBAM developers recommend a quick scan. The above is a good reason to do the same. Just one example is what Marcin Kleczynski/RubbeR DuckY wrote in Posts 41 & 43 at Malwarebytes' Anti-Malware Program Suggestions - Malwarebytes Forum :

The quick scan is meant to catch all malware that we know exists in the wild.
Quick scan scans,

1. Memory of the current user.
2. Registry for all users.
3. File system for all users (using a list of locations).
For best scan results, it is also recommended to clean out temporary folders prior to scanning with MBAM.
In another example, located at Malwarebytes scan too long ! - Malwarebytes Forum, Bruce Harrison/nosirrah said:

The MBAM quick scan option will catch every bit of live malware that the full scan will detect and 99% of the traces . I develop the definitions for MBAM and have never needed to use the full scan to test them out .


After
cleanup, create a new Restore point and then run Disk Cleanup:

  • Click start, type Disk Cleanup in the search box
  • Right-Click Disk Cleanup and select "Run as Administrator" and accept the UAC elevation prompt.
  • Select the drive where Windows is installed (if you have more than one drive) and click "OK".
  • When the scan completes, check/uncheck desired boxes.
  • Next, please click the More Options tab at the top.
  • Click the "Clean up..." button under the "System Restore and Shadow Copies" section at the bottom.
  • Click Delete in response to the question "Are you sure you want to delete all but the most recent restore point?", click OK and answer Yes again.
  • The disk clean up utility will remove the selected items. When it completes, please restart the computer to properly record the changes made to the hard disk.
 

My Computer My Computer

At a glance

Windows 7 & Windows Vista Ultimate
OS
Windows 7 & Windows Vista Ultimate
Thanks for clearing up the ' why? mystery' Corrine ;)
 

My Computer My Computer

At a glance

Windows 7 Ultimate 32bit SP1Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz4 GBATI Radeon HD 2600 Pro
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
You're welcome, Jacee.
 

My Computer My Computer

At a glance

Windows 7 & Windows Vista Ultimate
OS
Windows 7 & Windows Vista Ultimate
Yes indeed, thanks so much for the detailed response Corrine -- will subscribe to this thread for future reference.
 

My Computer My Computer

At a glance

Windows XP - Now Windows 7 Home Premium (64-b...
OS
Windows XP - Now Windows 7 Home Premium (64-bit).
You're welcome, manhuhnter2826. (Glad you saw the post since I wasn't able to PM you a link to the overdue reply, due to your settings.)
 

My Computer My Computer

At a glance

Windows 7 & Windows Vista Ultimate
OS
Windows 7 & Windows Vista Ultimate
^Ah sorry about that Corrine: have added u to my contacts/friend list. Much thanks for all your useful advice.
 

My Computer My Computer

At a glance

Windows XP - Now Windows 7 Home Premium (64-b...
OS
Windows XP - Now Windows 7 Home Premium (64-bit).
Many thanks for the details! ;)
 

My Computer My Computer

At a glance

7Home64AMD Phenom II x4 965 - 3,4GHzDDR3 1333Mhz, 8Gb (Corsair xms3 : 9, 9, 9, 24)GeForce GTX550Ti 1024mb GDDR5 (Gainward)
Computer Manufacturer/Model Number
Home Made 00x
OS
7Home64
CPU
AMD Phenom II x4 965 - 3,4GHz
Motherboard
Gigabyte GA-880GMA-UD2H
Memory
DDR3 1333Mhz, 8Gb (Corsair xms3 : 9, 9, 9, 24)
Graphics Card(s)
GeForce GTX550Ti 1024mb GDDR5 (Gainward)
Sound Card
Creative X-Fi ExtremeGamer
Monitor(s) Displays
Acer 27", led, full hd
Screen Resolution
1920x1080
Hard Drives
G-Skill SSD 80Gb + Kingston SSD 64Gb + WD sata 500Mb + Hitachi sata 1Tb
PSU
CombatPower 750W, 12cm fan
Case
Antec "Three Hundred", 12 + 14 cm fans
Cooling
Noctua NH-U12P (CPU) + 2xNF-B9 (HDD's) + NF-P12 (case side)
Keyboard
Logitech + Saitek "Cyborg Command Unit"
Mouse
Logitech LS1 laser
Internet Speed
4Mb/s
Other Info
6-fan-&-temp controller Scythe Kase Master Pro 5.25
I recently was badly infected with the Win 7 virus. I tried many of the common antivirus progams, e.g., Malware, Avira, ARO, Webroot, Hijack This, Windows Security -- none of them worked.

Then I found Combofix -- it was magic!

For me, only Combofix can identify and cure the Win 7 virus.
 

My Computer My Computer

At a glance

Windows 7
OS
Windows 7
Back
Top