Spyware Dectected Blue desktop with yellow box

N

nikonuser

I am using windows xp, a message recently appeared saying spyware dectected
download a spyware removal tool, it then changed my desktop picture, i ran a
scan which found changes to the registry, now my computer logs off as soon as
it logs on, will not allow me to log in on safe mode (f8) at all, i have left
my recovery disc in my apartment 200 miles away and i am pretty much stuck as
to what to do know, i have a basic knowledge of computers.

this virus has blocked system restore
safe mode
and log on with instant log off after flashing the blue/yellow message
any ideas anyone?
 
E

Engel

Hello Nikonuser,

Submit it via the process noted in Windows Defender Help, or here:
Report a possible spyware problem to Microsoft Vendor Dispute Report False
Positive Report


<http://www.microsoft.com/windows/products/winfamily/defender/resources.mspx>


First try Ewido and see if that can detect the problem and then try some
online Virus scanners and see whats revealed, This may be connected to Trojan
Vundo but you will need to use some scanners first to get a name for whatever
is causing you problems:

<www.ewido.net/en/onlinescan>
-=-
<http://uk.trendmicro-europe.com/consumer/housecall/housecall_launch.php>


Here's a few incase you have problems with any of them:

Trend Micro

<http://housecall.antivirus.com/>

Panda

<http://www.pandasoftware.com/activescan/>

Bitdefender

<http://www.bitdefender.com/scan8/ie.html>

Trojan Scanner

<http://www.windowsecurity.com/trojanscan/trojanscan.asp>

Kaspersky

<http://www.kaspersky.com/virusscanner>

Spyware Scanner

<http://www.trendmicro.com/spyware-scan/>


You could also try these rootkit apps:

<http://www.f-secure.com/blacklight/>


<http://www.sysinternals.com/utilities/rootkitrevealer.html>

Has your desktop wallpaper changed to a spyware warning and do you have
icons in the system tray that say you are infected with malware and need to
download some rogue remover such as SpySheriff to clean it. This is just a
couple of signs of this Trojan Infection

If you cannot remove this through Add/Remove screen Id suggest using Hijack
This and posting back the log it produces to show if this is a Trojan
Infection. The Trojan drops files all over the place and most scanners will
not remove this, Last time I checked all the main scanners (MS
Antispy,Ewido,Adaware,Spybot) were failing to find the main parts to this
trojan so it kept coming back, its also hooked into explorer.exe so it starts
with windows so it can be a pain if you miss some of the entries for this as
it will just download anything that gets removed when your system restarts

Download Hijack This if needed :

<http://www.trendsecure.com/portal/en-US/tools/security_tools/hijackthis>
-=-

<http://computercops.biz/HijackThis.html>

Save it to desktop or c:/drive, Run Hijack This and choose to do a system
scan and save the logfile, when its finished it will open the results in
notepad, please do not fix anything using Hijack This as most will be
harmless or essential files.

You could post the results over at spywareinfo or tomcoyote or other Hijack
This forums

Send report from HijackThis to:

Ron Kinner
(e-mail address removed)

He will tell you what to do next. Put Hijack in the subject so he will know
it's not spªm.

Alternatively you can post it on the Dell Forum ªt:

<http://forums.us.dell.com/supportforums/board?board.id=si_hijack>

(if it wraps you can go tº:

<http://tinyurl.com/ckuzq> instead.)

You do not need to have a Dell to post but you will need to register.

Ron Kinner
Microsoft MVP 2004 & 2005
(e-mail address removed)

Feel free to mention that I sent you.


I hope this post is helpful, let us know how it works ºut.


Let us know whats found

Good luck


Engel
-=-
 
B

Bill Sanderson

You need to call Microsoft support--1-866-pcsafety.

This is a free call in the U.S. and Canada, and the help will be free.
 
N

nikonuser

Thanks for these links, i will use them when i can, however, this virus will
not allow me to log into my computer to do anything, as soon as i log on and
windows starts to load my settings it logs off straight away, it will not
allow safe mode startup either, it just blocks it from starting.
i might be able to operate in mos dos mode but have never used mos dos in my
life, so i am pretty much stuck at present, i have removed my broadband
server /disconnected from the pc to prevent any internet access and the
system is currently shutdown/disconnected.
i am replying via my laptop & a dail up modem as i work away from home a
lot, so trying to gather info for when i get home again, regards mark
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top