G
Guest
Sorry in advance for the length of this
I got an email from a technically challenged friend in Australia with an attached zip file which I tried to open. I have it isolated. It was definitely the cause of my virus infection. It wasn't from him and the address was truncated (so reply won't work). The attachment looked like a zip file but wouldn't open. Properties also mentioned screen saver somewhere
The effect of the virus was to change the user ID picture at the login screen (first thing I noticed), rollup my My Documents and other files into similar Zip files and delete them, disable task manager, create executables and put some of these into my startup stream. I reloaded SOPHOS and it detected 2 occurences of Troj/Mendwar - A. Reading the net, this appears to be a relatively benign virus and may well be a red herring. I deleted the two ocurances
I've now gone back to a system restore point (by luck and planning, yesterday). This has given me back task manager and appears to have stopped the executables from getting started. I still have no My documents data and a pile of apparent zip files, rtf files (which I can't open) and application files. One of each for each missing set of files
Can anyone recognise a well known virus from these symptoms and direct me to a safe and well known web site which contains details of how to get my system sorted out again? At worst, I'll go back to backups but they are a little stale (It's a home machine - no vital data)
I have got a bit more info and data but I would think there's enough here for recognition purposes
Thanks in advance people.
I got an email from a technically challenged friend in Australia with an attached zip file which I tried to open. I have it isolated. It was definitely the cause of my virus infection. It wasn't from him and the address was truncated (so reply won't work). The attachment looked like a zip file but wouldn't open. Properties also mentioned screen saver somewhere
The effect of the virus was to change the user ID picture at the login screen (first thing I noticed), rollup my My Documents and other files into similar Zip files and delete them, disable task manager, create executables and put some of these into my startup stream. I reloaded SOPHOS and it detected 2 occurences of Troj/Mendwar - A. Reading the net, this appears to be a relatively benign virus and may well be a red herring. I deleted the two ocurances
I've now gone back to a system restore point (by luck and planning, yesterday). This has given me back task manager and appears to have stopped the executables from getting started. I still have no My documents data and a pile of apparent zip files, rtf files (which I can't open) and application files. One of each for each missing set of files
Can anyone recognise a well known virus from these symptoms and direct me to a safe and well known web site which contains details of how to get my system sorted out again? At worst, I'll go back to backups but they are a little stale (It's a home machine - no vital data)
I have got a bit more info and data but I would think there's enough here for recognition purposes
Thanks in advance people.