A friend of mine has Windows7. He opened some email and it has caused
his computer to not work properly. He's not very computer literate
and lives too far away to personally go and help him. Besides that, I
know nothing about Win7. I run XP, 2000, and 98 on different
computers. I have never played with Vista or Win7. (who needs that
bloated crap anyhow).
Anyhow, maybe someone can tell me what to email him to try to fix the
problem. Don't microsoft have some sort of virus software he can use?
He has some sort of AV software installed. I think it's Avast. It
will not fix the problem and keeps telling him he has to pay $49 to
get it to work. I told him to try to disable it. Maybe its that
thing causing all the problems.
I know you dont have much to go on. I dont know anymore. But maybe
some of you might suggest what virus may be going around in emails
this week, and some possible fix he can try. I'll forward this to
him, and guide him thru it. He deleted the email so there is little
more to go on. He said he tried to run the REPAIR CD for Win7 and it
failed. Thats all I know. I have never used Win7 which makes it hard
to suggest anything. I only know it's similar to XP but much more
complicated (from watching someone use it).
Thanks
Your friend probably has one of the "rogue spyware" problems like the
bogus "MS Removal Tool".
It's possible that it wasn't an email that caused it, the crap is
delivered also by hi-jacked 'legitimate' websites as well.
As other have said, MBAM (Malware Antibyte's Anti-malware) is excellent
at fixing these issues. Been Dere, Dun Dat just last weekend with a
(remote) friend.
(FWIW, I run Avast6 "free", MBAM "paid", and the Win7 firewall on this
win7 machine. Sometimes they fight with each other, but I'll deal with it)
Avast itself is pretty good at catching this, but the freeware version 5
is now pretty lame. I*f your friend hasn't upgraded to Avast 6 (free),
this could be how the crap got there.
What usually happens with "rogue spyware" infestations is that they
block access to legitimate "good fixes' (as even updating the present
AVAST). Same crap also will block programs unless in "SAFE" mode, so
that's why the following is needed. I've seen some of these let a "good
fix" program start in "normal" Windows, then crash said program. See below.
There's other fixes available, (and I hope some of the other regulars
will add their ideas as well.. hint/hint..)
But this is the way "We" (friend and I) handled "MS Removal Tool"
(and a lot of others as well from previous experience)
Can your friend receive emails with attachments now? Or have access to
another *infested* computer that will?
For you, go to
http://www.malwarebytes.org/products/malwarebytes_free
and download the setup file for the free MBAM.
Save it where you know where it's at, then rename it to something like
'slammer.exe'. (MBAM setup doesn't care 'what' name it uses, in fact
that's one of their own recommended tricks)
Then email it to your friend. Tell him to just "save the file" (to
somewhere easy to remember), not run it yet. If it has to be done via a
different pooter, have friend save it to a USB stick or burn to a CD.
However you can get the renamed MBAM to your friend, do it.
When your friend has the "renamed MBAM" on hand, it's time to slay the
dragon.
The KEY item is starting Windows in "SAFE Mode". (Win XP thru 7's safe
mode is a little funky, but it works for this)
Getting to SAFE mode is sometimes tricky, it's a boot timing issue.
(to explain to friend)
Have your friend re-start his pooter. As soon as the BIOS splash screen
appears, start tapping the "F8" key as fast as possible. It may not work
at first, it may bounce you into BIOS. "Learning Experience" I guess. It
may take a few tries. On some pooters, going the "F8" machine-gun tap as
soon as the pooter beeps is the key.
Eventually, you'll get to the Windows "Boot Menu".
It's not mouse-able, use the arrow keys to select.
"Safe mode with networking support' is best, but just "Safe Mode" will
probably work. Have your friend select one of those and hit the Enter key.
There will be a lot of text-crap flying past, but finally it will open
into a "lousy-looking" Windows screen. Accept the "SAFE mode" warnings
and move on. (Don't worry about the lo-res screen or the strange way the
desktop icons show, it's jut the way it is)
Just accept it via the dialog box and move on.
Now have your friend install MBAM from the saved email, the USB stick or
the CD. Remember, it's with the name you renamed it as.
There may be some 'funky windows' about permissions, if worst case,
'right-click" > run as administrator.
After installing MBAM, run it. (still in safe mode).
I'll bet it nukes the crap~
But after, you'll have to set up some kind of better security on said
friend's pooter.
I've kept many folks "free" with just Avast 6 "free" and MBAM and the
Windows firewall, but all of the above need "user updating". If your
friend can't do that reliably, you'll probably have to force them into a
paid 'security suite". It saves hand-holding
But now, you have to do some 'preventative' stuff for your friend
Right now, I do recommend the Avast "avast! Internet Security 6"
(
http://www.avast.com/internet-security) It may take some game-playing,
but there's a 3-year plan for $70 running right5 now.
As much as I like MBAM, (and my own homebrew security suite), it takes
some skills to make this work. For cl00bies (your friend ?), a suite is
the best answer.
As a final, have you ever tried a 'remote assistance' app?
It saves the hassle of (remote) eye-mouth to (you) ear-mouth--whatever
condufuation.
I've done the Windows "Remote Assitance' app, but (as usual) M$ makes it
a hard thing to use. It doesn't work thru even the lamest firewalls
without severe tweaking.
My present favorite for that is "TeamViewer'
(
http://www.teamviewer.com). I've had good luck with that.
Hope this helps....
--
"Shit this is it, all the pieces do fit.
We're like that crazy old man jumping
out of the alleyway with a baseball bat,
saying, "Remember me motherfucker?"
Jim “Dandy” Mangrum