Democratic Underground Latest Greatest Lobby Journals Search Options Help Login
Google

My computer has been rendered completely useless by "Vista Antispyware 2010" Help.

Printer-friendly format Printer-friendly format
Printer-friendly format Email this thread to a friend
Printer-friendly format Bookmark this thread
This topic is archived.
Home » Discuss » The DU Lounge Donate to DU
 
DuaneBidoux Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Mar-06-10 03:37 PM
Original message
My computer has been rendered completely useless by "Vista Antispyware 2010" Help.
I got it yesterday afternoon. I immediately ran the software that I had BitDefender, which seems to have found one problem and removed it. But now my computer is unusable (seriously unusable).

I am unable to run any software except explorer. Any program I try to use it asks me what software I want to use to run it and it doesn't give me an option to actually do anything--so nothing works.

I can't even get in the registry or attempt to go to the restore system function because when I click on those icons it also asks me what I want to use to run the software. It is a disaster. Anyone struggled with this problem before? This is a particularly inconvienent time as I am in midterms which are all given online at my school.
Printer Friendly | Permalink |  | Top
EvolveOrConvolve Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Mar-06-10 03:43 PM
Response to Original message
1. Try this
http://www.winhelponline.com/articles/165/1/Restore-the-exe-file-association-in-Windows-Vista-after-incorrectly-associating-it-with-another-application.html

If you can get executables working again, install Spyware Search & Destroy and run it. Normally I recommend Malwarebytes, but another DU poster recently had this problem and Spyware S&D did the trick.
Printer Friendly | Permalink |  | Top
 
MicaelS Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Mar-06-10 04:08 PM
Response to Original message
2. You may have to do a repair install of Vista
Printer Friendly | Permalink |  | Top
 
City of Mills Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Mar-06-10 05:08 PM
Response to Original message
3. I've dealt with this one a number of times
Edited on Sat Mar-06-10 05:16 PM by City of Mills
Go to http://www.kellys-korner-xp.com/regs_edits/exefix.reg If it prompts you to save the .reg file, save it to your desktop then double-click to import it. If it comes up as text, copy/paste the text into a notepad document (if you can) and rename it exefix.reg and double-click it to import. I've used this to fix a few computers after they got the Vista Antivirus 2010 virus.

By the way, to get rid of the virus executable, open a browser window and edit folder options to show all files and folders, and also hidden/system files.

Then, go to c:\users\<your username>\AppData\Local\av.exe Before you can delete av.exe, you have to terminate any of its running processes, so bring up Task Manager and click on the process tab. End any process named av.exe, then quickly delete this executable.

FYI, Microsoft Security Essentials and Symantec Antivirus both let this virus slip through (so far, anyway). Good luck!

Printer Friendly | Permalink |  | Top
 
HopeHoops Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Mar-06-10 05:33 PM
Response to Original message
4. Should be a simple fix. Follow these instructions (using MalwareBytes AntiMalware)
Reboot in safe mode with network enabled. If you don't know how to do that, pardon the details. As the machine begins to reboot, start hitting F8 about once a second until you get a menu. One of the options is "safe mode with network" or something close to that - select it. Open your browser (hopefully Firefox, but others will probably work). Go to malwarebytes.org and download the free version of AntiMalware.

Run it while you are still in safe mode. It should report back that it has found some infected files (probably 4) two of which will have the same name which is a completely random string of characters and numbers (which is why AntiVirus/Antispyware 2010 hides so well).

When it is finished fixing the problem, you should be able to reboot normally and life should be good again.

What the malware does is to bypass the .exe extension so you can't run things like TaskManager or Windows Explorer. It also completely takes over IE (any version) and some variants use it to abuse you with fake porn sites. If it put up normal-looking Windows message boxes telling you your computer is infected and you need to enable virus protection, don't click on ANY of them. You can't move or close some of them. The purpose is to get you to give up a credit card number (with expiration date and security code) after which it will REALLY hose your machine. Meanwhile, your credit card is available to the criminals who unleashed these. The names and details keep changing, but the general theme is the same and AntiMalware should knock it out.

Printer Friendly | Permalink |  | Top
 
petronius Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Mar-07-10 02:50 AM
Response to Original message
5. I've been 'dealing' with this one too, albeit the XP version
For me, registry editing is disabled, .exe files can't be installed or run, and no internet. At this point, my plan is to boot into linux from a USB drive, copy the file I want to preserve, and do a clean install of windows. Fortunately, I have other computers so it can all wait until spring break.

Hope you get yours cleaned up; can you do exams from a lab on campus?
Printer Friendly | Permalink |  | Top
 
DuaneBidoux Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Mar-07-10 01:28 PM
Response to Reply #5
6. Thanks--yea, I'm actually working on a borrowed laptop today. Decided to come here
and see if there were any more posts. Looks like it isn't anything i'm going to want to work on until after my important stuff (read, school), is taken care of.

At least the question has been answered: "I am not alone." I suspected as much.
Printer Friendly | Permalink |  | Top
 
darkstar3 Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Mar-07-10 06:16 PM
Response to Reply #6
7. I have had remarkable success with the BitDefender 2010 Rescue CD.
You'll find info on it here: http://forum.bitdefender.com/index.php?s=514d7d311408b9a94c704439f9b73667&showtopic=16602

Make SURE you have an internet connection so that it can download the necessary signature updates. Make SURE you let it completely finish, no matter how long it takes. Finally, never assume that a single AV provider gets your system completely clean. After the BitDefender Rescue CD runs, install your own choice of antivirus software (AVG and Avast! both have free versions), and run a full system scan immediately.

IMPORTANT NOTES:
DON'T DO ANYTHING ELSE UNTIL YOU RUN A SECOND SCAN. SOMETIMES, EVEN AFTER YOU GET THE EXECUTABLES, DORMANT DLL'S CAN HANG AROUND AND BE ACTIVATED BY RUNNING OTHER PROGRAMS, ESPECIALLY INTERNET EXPLORER.
Be sure to download all of your necessary software from your borrowed laptop. USE CDs FOR TRANSFER OF FILES TO YOUR INFECTED SYSTEM.
Printer Friendly | Permalink |  | Top
 
DU AdBot (1000+ posts) Click to send private message to this author Click to view 
this author's profile Click to add 
this author to your buddy list Click to add 
this author to your Ignore list Wed Apr 24th 2024, 06:03 PM
Response to Original message
Advertisements [?]
 Top

Home » Discuss » The DU Lounge Donate to DU

Powered by DCForum+ Version 1.1 Copyright 1997-2002 DCScripts.com
Software has been extensively modified by the DU administrators


Important Notices: By participating on this discussion board, visitors agree to abide by the rules outlined on our Rules page. Messages posted on the Democratic Underground Discussion Forums are the opinions of the individuals who post them, and do not necessarily represent the opinions of Democratic Underground, LLC.

Home  |  Discussion Forums  |  Journals |  Store  |  Donate

About DU  |  Contact Us  |  Privacy Policy

Got a message for Democratic Underground? Click here to send us a message.

© 2001 - 2011 Democratic Underground, LLC