Democratic Underground Latest Greatest Lobby Journals Search Options Help Login
Google

Shit. My computer may have just been infected with a virus.

Printer-friendly format Printer-friendly format
Printer-friendly format Email this thread to a friend
Printer-friendly format Bookmark this thread
This topic is archived.
Home » Discuss » The DU Lounge Donate to DU
 
tekisui Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:14 PM
Original message
Shit. My computer may have just been infected with a virus.
What do I do now?

I downloaded an attachment from someone claiming to be fedex. The scan found no virus, but the attachment had nothing I could view on it. I deleted it and empty my bin, but things started acting all crazy.

I ran a full scan and the one threat was quarantined. Now what?
Printer Friendly | Permalink |  | Top
PeaceNikki Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:15 PM
Response to Original message
1. What's the threat is shows found on the quarantined file?
Printer Friendly | Permalink |  | Top
 
tekisui Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:16 PM
Response to Reply #1
3. It lists the item I downloaded and says action taken deleted.
Printer Friendly | Permalink |  | Top
 
PeaceNikki Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:18 PM
Response to Reply #3
6. Does it give you any detail on what the virus/trojen/infection might be?
Printer Friendly | Permalink |  | Top
 
tekisui Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:20 PM
Response to Reply #6
7. I don't know. I was warned through my toolbar that I had been infected
with spyware. The infection that was labeled was non-descriptive, at least to me.
Printer Friendly | Permalink |  | Top
 
tekisui Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:59 PM
Response to Reply #6
17. After the full scan, I restarted my PC
and it came up that Trojan had been detected, and I clicked remove.

Is that it?
Printer Friendly | Permalink |  | Top
 
PBS Poll-435 Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:16 PM
Response to Original message
2. Eradicate what is quarantined
Then run another full scan.

Then update your definitions.

Then run another full scan.
Printer Friendly | Permalink |  | Top
 
tekisui Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:17 PM
Response to Reply #2
5. OK. The item quarantined was deleted. I will run the full scan.
What does updating my definitions mean. Thanks.
Printer Friendly | Permalink |  | Top
 
PBS Poll-435 Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:32 PM
Response to Reply #5
15. Your virus scanner only knows what viruses are out there based on the date of the defs...
You should be able to update the virus definitions so that you can catch the most recently-created viruses.
Printer Friendly | Permalink |  | Top
 
tekisui Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:35 PM
Response to Reply #15
16. Ok, thanks.
I updated and it found the one from today, so I think I got it. The second full scan is running now.
Printer Friendly | Permalink |  | Top
 
NJmaverick Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:17 PM
Response to Original message
4. If you are using windows XP use the system restore feature
to restore your computer to a time before you clicked on the attachment. That's usually the easiest thing to do (unless it's one of those real nasty viruses/malware things that disables that as well.
Printer Friendly | Permalink |  | Top
 
tekisui Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:20 PM
Response to Reply #4
8. How do I get to that?
Printer Friendly | Permalink |  | Top
 
NJmaverick Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:23 PM
Response to Reply #8
10. Usually
it's Start>Help and Support>Pick a Task- System restore
Printer Friendly | Permalink |  | Top
 
tekisui Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:26 PM
Response to Reply #10
13. thanks. I am running a Full Scan right now, to see if it's gone.
Printer Friendly | Permalink |  | Top
 
PeaceNikki Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:22 PM
Response to Reply #4
9. I fought one for weeks that did that.
Filled up my hard drive, screwed up my Winlogin...

My dad was like "just format your machine"... and I was all like "it's become personal now". B-)
Printer Friendly | Permalink |  | Top
 
NJmaverick Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:25 PM
Response to Reply #9
11. I had to deal with one like that
nasty little bugger. It succumbed to the free version of this software though


http://majorgeeks.com/Malwarebytes_Anti-Malware_d5756.html
Printer Friendly | Permalink |  | Top
 
Zuiderelle Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 04:20 PM
Response to Reply #4
19. Not always a good idea. System restore can be very unpredictable.
Edited on Mon Aug-18-08 04:26 PM by PelosiFan
It really should only be used in the most dire of circumstances. If the OP's virus software has already found the virus, there's no reason to run the risk of a system restore obliterating something it shouldn't.

Although... it might be a good idea to disable System Restore, and THEN run the antivirus software so that it gets completely removed (if it isn't already).

Found this link which is helpful in understanding why you might want to disable System Restore to clean your system.

http://antivirus.about.com/od/windowsbasics/a/systemrestore.htm
Printer Friendly | Permalink |  | Top
 
NJmaverick Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 04:26 PM
Response to Reply #19
20. As an IT professional with a good number of Microsoft Certifications
I can tell you this post is not correct.
Printer Friendly | Permalink |  | Top
 
Zuiderelle Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 04:28 PM
Response to Reply #20
21. Okee dokee then.
Edited on Mon Aug-18-08 04:50 PM by PelosiFan
But as an IT professional, I stand by saying that he should disable system restore and then remove the virus.

Edited to add... I may have exaggerated the "dire" thing, but system restore really should be used only after other options are exhausted. I suppose the newest version of system restore may be less buggy than it's been in the past, but it's still not the first thing he should do. If his virus software removed the virus and he doesn't have any symptoms, I think disabling system restore, then running the anti-virus software again, then re-enabling system restore is the best option.

Printer Friendly | Permalink |  | Top
 
NJmaverick Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 05:04 PM
Response to Reply #21
22. I have used system restore on dozens of computers and advised others
to use is dozens as times as well. Never had a single problem. See the problem with malware is that it is designed to be difficult to remove completely. That is if the particular antivirus or anti-spyware software even recognizes it. If you know exactly when you were infected the system restore tool often does the best and most sure job of removing it. Still as I said the designers of malware software have caught on to this trick. I am finding some of the newer nasties actually disable the system restore.
Printer Friendly | Permalink |  | Top
 
Zuiderelle Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 05:18 PM
Response to Reply #22
23. It's good to know that system restore works better than it used to.
I still don't think it's necessary to run it if his virus was already removed. From what he said, it did recognize it. I'll agree though that if he knows exactly when he was infected, and doesn't have anything else that would be removed from his registry that he's installed since the restore point (or doesn't care), he could go ahead and run it if the virus isn't actually removed.
Printer Friendly | Permalink |  | Top
 
Hawkeye-X Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:26 PM
Response to Original message
12. Run Malwarebytes Anti-Malware
http://www.malwarebytes.com

then run a complete scan (takes up to 3 hours if you have shitloads of files)

Hawkeye-X
Printer Friendly | Permalink |  | Top
 
tekisui Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 03:29 PM
Response to Reply #12
14. Thanks, will do.
Printer Friendly | Permalink |  | Top
 
whistler162 Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 04:13 PM
Response to Reply #12
18. That's good also
Printer Friendly | Permalink |  | Top
 
Xipe Totec Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 05:20 PM
Response to Original message
24. We've know each other a long time, haven't we?
Until this whole thing blows over, just stay away from me.

:yoiks:
Printer Friendly | Permalink |  | Top
 
tekisui Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 06:00 PM
Response to Reply #24
25. I won't even post a response, just to be safe.





oops!
Printer Friendly | Permalink |  | Top
 
jobycom Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 06:15 PM
Response to Original message
26. Sometimes DU reminds me of a SNL skit
Printer Friendly | Permalink |  | Top
 
GreenPartyVoter Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 06:39 PM
Response to Original message
27. When your computer functions right again, you gotta watch this video
Printer Friendly | Permalink |  | Top
 
tekisui Donating Member (1000+ posts) Send PM | Profile | Ignore Mon Aug-18-08 09:03 PM
Response to Original message
28. THANK YOU ALL!
I think I got it. Thank you all very much!
Printer Friendly | Permalink |  | Top
 
DU AdBot (1000+ posts) Click to send private message to this author Click to view 
this author's profile Click to add 
this author to your buddy list Click to add 
this author to your Ignore list Wed May 08th 2024, 04:17 AM
Response to Original message
Advertisements [?]
 Top

Home » Discuss » The DU Lounge Donate to DU

Powered by DCForum+ Version 1.1 Copyright 1997-2002 DCScripts.com
Software has been extensively modified by the DU administrators


Important Notices: By participating on this discussion board, visitors agree to abide by the rules outlined on our Rules page. Messages posted on the Democratic Underground Discussion Forums are the opinions of the individuals who post them, and do not necessarily represent the opinions of Democratic Underground, LLC.

Home  |  Discussion Forums  |  Journals |  Store  |  Donate

About DU  |  Contact Us  |  Privacy Policy

Got a message for Democratic Underground? Click here to send us a message.

© 2001 - 2011 Democratic Underground, LLC