Results 1 to 15 of 15

Thread: HELP - system infected with spyware and can't remove it

  1. #1
    Nothing runs like a Deere cotswoldcs's Avatar
    Join Date
    Mar 2004
    Location
    Bang in the heart of the cotswolds
    Posts
    793
    Thanks
    40
    Thanked
    18 times in 18 posts
    • cotswoldcs's system
      • Motherboard:
      • Asus P4C800-E Deluxe
      • CPU:
      • Pentium 4 3.0Ghz Northwood (@3.4Ghz on water)
      • Memory:
      • 1.5Gb Corsair TwinX PC3200/PC3700
      • Storage:
      • 150Gb Raptor
      • Graphics card(s):
      • XFX 6600GT 128Mb (w waterblock)
      • PSU:
      • Seasonic S12-380
      • Case:
      • Antec Sonata I
      • Monitor(s):
      • 3 x Iiyama 19" LCD (5:4) on Comrac Tripple Mount
      • Internet:
      • PlusNet 1.6Mb ADSL

    HELP - system infected with spyware and can't remove it

    I'm used to dealing with spyware and virus infections but this one has me puzzled. It's a home machine running XP Home and is infected with something called XP security centre or similar. It enables a notification icon in the system tray telling me the system is infected.

    I can't install Spybot, AVG, HiJackThis v2, etc, etc. The programs either refuse to run or don't install and produce an error.

    I've tried running in Safe Mode but still have the same problems as above!!

    I've researched on Google and found removal instructions for WinX Security Centre. However, the spyware on the system must be different as the removal instructions don't apply (I don't have files installed where they say they are)

    Any suggestions?

  2. #2
    Senior Member
    Join Date
    May 2007
    Location
    London
    Posts
    347
    Thanks
    73
    Thanked
    6 times in 6 posts
    • KalC's system
      • Motherboard:
      • Gigabyte H55-UD2H
      • CPU:
      • i5 750 cooled by Corsair H50
      • Memory:
      • 4GB Corsair DDR3
      • Storage:
      • 1x500GB F3 + 2x1TB F3's
      • Graphics card(s):
      • XFX 4890
      • PSU:
      • 520W Corsair
      • Case:
      • Antec Mini P180
      • Operating System:
      • Windows 7 x64
      • Monitor(s):
      • BenQ G2220HD
      • Internet:
      • 8Mib Sky

    Re: HELP - system infected with spyware and can't remove it

    So it doesnt even let you run any spyware or anti virus programs?

    Have you tried terminating the process in task manager and then maybe trying to run the anti spyware programs?

  3. #3
    Banned
    Join Date
    Jan 2005
    Location
    Who Cares!
    Posts
    4,092
    Thanks
    8
    Thanked
    61 times in 52 posts

    Re: HELP - system infected with spyware and can't remove it

    You tried installing AVG8 in safe mode? What about online scanning? Some companies do that?

  4. #4
    Registered+
    Join Date
    Jun 2008
    Location
    West Sussex
    Posts
    33
    Thanks
    2
    Thanked
    7 times in 7 posts

    Re: HELP - system infected with spyware and can't remove it

    Have you tried System restore to get you to a point before the Virus hit and then try to install removal software?

  5. #5
    Senior Member
    Join Date
    Aug 2005
    Posts
    1,471
    Thanks
    18
    Thanked
    72 times in 59 posts
    • lodore's system
      • Motherboard:
      • Z87-GD65 GAMING
      • CPU:
      • Intel 4770k Haswell I7
      • Memory:
      • 16gb DDR3 1600mhz
      • Storage:
      • 2tb hard drive and 2X 120gb ssd
      • Graphics card(s):
      • 2X MSI nvidia 770 in SLI
      • PSU:
      • XFX 700 watt fully modular
      • Case:
      • CoolerMaster HafXM
      • Operating System:
      • Windows 10 pro 64bit
      • Monitor(s):
      • two 24inch hd monitors. one Asus and one Dell
      • Internet:
      • 50mb BT broadband

    Re: HELP - system infected with spyware and can't remove it

    have you tryed superantispyware? www.superantispyware.com or malwarebytes antispyware? http://www.malwarebytes.org/
    also try drweb cure it
    http://freedrweb.com/cureit/
    drweb cure it doesnt need install and is very good at removal.
    Last edited by lodore; 28-06-2008 at 04:50 PM.

  6. #6
    Senior Member
    Join Date
    Nov 2007
    Location
    Edinburgh
    Posts
    396
    Thanks
    70
    Thanked
    44 times in 30 posts
    • RoBe's system
      • Motherboard:
      • asus p5k premium
      • CPU:
      • q6600 g0 @ 3.4ghz 1.3v
      • Memory:
      • 4gb ocz reaper
      • Storage:
      • 1xmaxtor 250gb2xsamsung 500gb
      • Graphics card(s):
      • xfx gtx 260 (216 cores)
      • PSU:
      • corsair hx620
      • Case:
      • silverstone tj09 - silver
      • Operating System:
      • Vista Home Premium x64
      • Monitor(s):
      • samsung 226bw
      • Internet:
      • bt

    Re: HELP - system infected with spyware and can't remove it

    the kaspersky online scanner found infected files for my dad's pc when there was a notification that kept coming up trying to get you to buy some fake security program.

    Anyway, here's the link: http://www.kaspersky.com/virusscanner
    i just deleted all the files/reg keys that it picked up and all was fine and dandy afterwards

  7. #7
    Member
    Join Date
    Sep 2005
    Posts
    92
    Thanks
    1
    Thanked
    5 times in 5 posts

    Re: HELP - system infected with spyware and can't remove it

    You could also try making a different account on the machine and running spybot from there. Unless the spyware affects any account on the pc, in which case you may need to consider a format. It may not remove the spyware completely but at least get you started.

  8. #8
    Senior Member
    Join Date
    May 2008
    Location
    Bath Uni
    Posts
    1,140
    Thanks
    169
    Thanked
    71 times in 66 posts
    • Will404's system
      • Motherboard:
      • ASUS P5Q PRO
      • CPU:
      • Core2quad Q6600 @2.85GHz
      • Memory:
      • 4GB Corsoar Twin X XMS2 DDR2-PC2 6400 @ 900MHz, 5-5-5-18
      • Storage:
      • WD 320GB, Segate 320GB (Raid 0), 2* WD 1TB storage
      • Graphics card(s):
      • ATI Sapphire HD 4850
      • PSU:
      • Corsoar HX 520
      • Case:
      • Antec 900
      • Operating System:
      • Windows 7 Pro x64
      • Monitor(s):
      • ASUS MW221u 22"

    Re: HELP - system infected with spyware and can't remove it

    Are there any anti-spyware programmes you can run from dos, or before you boot windows, put a disk in and boot from it to run an anti - spyware scan??????

  9. #9
    Gentoo Ricer
    Join Date
    Jan 2005
    Location
    Galway
    Posts
    11,022
    Thanks
    1,008
    Thanked
    944 times in 704 posts
    • aidanjt's system
      • Motherboard:
      • Asus Strix Z370-G
      • CPU:
      • Intel i7-8700K
      • Memory:
      • 2x8GB Corsiar LPX 3000C15
      • Storage:
      • 500GB Samsung 960 EVO
      • Graphics card(s):
      • EVGA GTX 970 SC ACX 2.0
      • PSU:
      • EVGA G3 750W
      • Case:
      • Fractal Design Define C Mini
      • Operating System:
      • Windows 10 Pro
      • Monitor(s):
      • Asus MG279Q
      • Internet:
      • 240mbps Virgin Cable

    Re: HELP - system infected with spyware and can't remove it

    Not that I know of. Running in Windows safe-mode will work just as effectively though.
    Quote Originally Posted by Agent View Post
    ...every time Creative bring out a new card range their advertising makes it sound like they have discovered a way to insert a thousand Chuck Norris super dwarfs in your ears...

  10. #10
    Senior Member
    Join Date
    May 2008
    Location
    Bath Uni
    Posts
    1,140
    Thanks
    169
    Thanked
    71 times in 66 posts
    • Will404's system
      • Motherboard:
      • ASUS P5Q PRO
      • CPU:
      • Core2quad Q6600 @2.85GHz
      • Memory:
      • 4GB Corsoar Twin X XMS2 DDR2-PC2 6400 @ 900MHz, 5-5-5-18
      • Storage:
      • WD 320GB, Segate 320GB (Raid 0), 2* WD 1TB storage
      • Graphics card(s):
      • ATI Sapphire HD 4850
      • PSU:
      • Corsoar HX 520
      • Case:
      • Antec 900
      • Operating System:
      • Windows 7 Pro x64
      • Monitor(s):
      • ASUS MW221u 22"

    Re: HELP - system infected with spyware and can't remove it

    How about the UBCD for windows

    Seems to contain some anti spyware stuff

  11. #11
    Gentoo Ricer
    Join Date
    Jan 2005
    Location
    Galway
    Posts
    11,022
    Thanks
    1,008
    Thanked
    944 times in 704 posts
    • aidanjt's system
      • Motherboard:
      • Asus Strix Z370-G
      • CPU:
      • Intel i7-8700K
      • Memory:
      • 2x8GB Corsiar LPX 3000C15
      • Storage:
      • 500GB Samsung 960 EVO
      • Graphics card(s):
      • EVGA GTX 970 SC ACX 2.0
      • PSU:
      • EVGA G3 750W
      • Case:
      • Fractal Design Define C Mini
      • Operating System:
      • Windows 10 Pro
      • Monitor(s):
      • Asus MG279Q
      • Internet:
      • 240mbps Virgin Cable

    Re: HELP - system infected with spyware and can't remove it

    That'll do too, handy if your system has a nasty rootkit that you can't otherwise find/remove.
    Quote Originally Posted by Agent View Post
    ...every time Creative bring out a new card range their advertising makes it sound like they have discovered a way to insert a thousand Chuck Norris super dwarfs in your ears...

  12. #12
    Senior Member
    Join Date
    Aug 2005
    Posts
    1,471
    Thanks
    18
    Thanked
    72 times in 59 posts
    • lodore's system
      • Motherboard:
      • Z87-GD65 GAMING
      • CPU:
      • Intel 4770k Haswell I7
      • Memory:
      • 16gb DDR3 1600mhz
      • Storage:
      • 2tb hard drive and 2X 120gb ssd
      • Graphics card(s):
      • 2X MSI nvidia 770 in SLI
      • PSU:
      • XFX 700 watt fully modular
      • Case:
      • CoolerMaster HafXM
      • Operating System:
      • Windows 10 pro 64bit
      • Monitor(s):
      • two 24inch hd monitors. one Asus and one Dell
      • Internet:
      • 50mb BT broadband

    Re: HELP - system infected with spyware and can't remove it

    f-secure have a bootable rescue cd
    http://www.f-secure.com/linux-weblog/

  13. #13
    Nothing runs like a Deere cotswoldcs's Avatar
    Join Date
    Mar 2004
    Location
    Bang in the heart of the cotswolds
    Posts
    793
    Thanks
    40
    Thanked
    18 times in 18 posts
    • cotswoldcs's system
      • Motherboard:
      • Asus P4C800-E Deluxe
      • CPU:
      • Pentium 4 3.0Ghz Northwood (@3.4Ghz on water)
      • Memory:
      • 1.5Gb Corsair TwinX PC3200/PC3700
      • Storage:
      • 150Gb Raptor
      • Graphics card(s):
      • XFX 6600GT 128Mb (w waterblock)
      • PSU:
      • Seasonic S12-380
      • Case:
      • Antec Sonata I
      • Monitor(s):
      • 3 x Iiyama 19" LCD (5:4) on Comrac Tripple Mount
      • Internet:
      • PlusNet 1.6Mb ADSL

    Re: HELP - system infected with spyware and can't remove it

    Thanks for your help everyone. I tried various options without success but then discovered that I could install and run AntiVir Personal and this cleared enough off to allow me to run HiJackThis 2.02. I then ran Spybot & virus scans to make sure everything was eliminated.

    Thanks for the help.

  14. #14
    Senior Member
    Join Date
    Sep 2007
    Location
    NE-UK
    Posts
    533
    Thanks
    67
    Thanked
    22 times in 22 posts
    • s3ds's system
      • Motherboard:
      • PK5-WS
      • CPU:
      • E6850
      • Memory:
      • 4GB Kingston
      • Storage:
      • 15k Seagate SAS
      • Graphics card(s):
      • Nvidia Quadro
      • PSU:
      • 500W Enermax
      • Case:
      • Coolmaster Centurion
      • Operating System:
      • XP SP3 or Ubuntu
      • Monitor(s):
      • TWIN 22" NEOVO
      • Internet:
      • o2 LLU

    Re: HELP - system infected with spyware and can't remove it

    a bit late but i have used clamwin run from a USB
    http://portableapps.com/

    glad you got it sorted
    Experience is something you don't get until just after you need it.

  15. #15
    Seething Cauldron of Hatred TheAnimus's Avatar
    Join Date
    Aug 2005
    Posts
    17,147
    Thanks
    798
    Thanked
    2,151 times in 1,407 posts

    Re: HELP - system infected with spyware and can't remove it

    nuke it from space, the only way to be sure!

    (and by that aliens quote i obviously mean complete re-install.)
    throw new ArgumentException (String, String, Exception)

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •