Results 1 to 8 of 8
  1. #1
    Motherfucking
    NOSTRADAMUS

    Vamos los Perds!

    Join Date
    May 2006
    Posts
    10,582
    BG Level
    9
    FFXIV Character
    Wulfgang Amadeus
    FFXIV Server
    Hyperion
    FFXI Server
    Sylph

    Windows 7 Security 2012 Virus

    Have followed the instructions at the following link to the T:

    http://www.bleepingcomputer.com/viru...-security-2012

    Definitely helped but has not removed everything. Last time I had this virus on XP, I had to reformat my computer. Would love to avoid that this time. Part of the issue is that while Malwarebytes will prevent the popups and .exe virus intervention (e.g. won't let me run antivirus software) I continue to have weird issues in Firefox and Chrome.

    Basically it's like this virus combined with a redirect virus. For example, about 1/5 when I google something, it will go instead to some weird ghetto site that is obviously A) not what I searched for and B) a virus haven. About 1/30 of these redirections will lead to the same shitty Windows 7 2012 Security Virus being sneakily reinstalled on my comp.

    Has anyone dealt with this crap successfully?

  2. #2

    Sweaty Dick Punching Enthusiast

    Join Date
    Mar 2006
    Posts
    7,978
    BG Level
    8
    FFXI Server
    Ragnarok

    I have on my brothers PC, but it doesnt fully penetrate on 64bit OS's and was quite easy to remove.

  3. #3
    New Merits
    Join Date
    Sep 2006
    Posts
    207
    BG Level
    4

    Check your proxie settings are set right (likely automatic) Sometimes these change it, normally it just stops you connecting at all. It is worth running scans again from another user account. Are you saying it is still blocking AV running or that it did?

  4. #4
    Salvage Bans
    Join Date
    Jun 2008
    Posts
    955
    BG Level
    5
    FFXI Server
    Odin

    Quote Originally Posted by Crowort View Post
    Check your proxie settings are set right (likely automatic) Sometimes these change it, normally it just stops you connecting at all. It is worth running scans again from another user account. Are you saying it is still blocking AV running or that it did?
    ^this, it'll change it. Check your lan settings in your browser and make sure it's not using a proxy server. I had to clear this virus twice, one on my brothers laptop and the other my moms pc in the past week.

  5. #5
    Relic Weapons
    Join Date
    Jun 2006
    Posts
    321
    BG Level
    4
    FFXI Server
    Leviathan

    Can also try HiJackThis to remove browser redirects.

  6. #6
    CoP Dynamis
    Join Date
    Mar 2009
    Posts
    274
    BG Level
    4

    How are people getting this? A lot have been infected lately it seems.

    Is it bad ads from legit sites? Some Windows security exploit that can infect your computer as long as you're connected to the internet?

  7. #7
    New Merits
    Join Date
    Apr 2010
    Posts
    214
    BG Level
    4

    From what I hear it's been getting around from imgur somehow. I had it a couple days ago, downloaded Microsoft Security Essentials, that took care of it.

  8. #8
    Relic Shield
    Join Date
    Nov 2005
    Posts
    1,960
    BG Level
    6
    WoW Realm
    Akama

    2 people at my company got it this week, and 1 friend on wow :/

    Easiest way to get rid of it: (it's not actually only the antivirus thing, but it's a rootkit called rootkit.zeroaccess that's being spread, which downloads the AV thing as one of its many functions)

    Load into safemode, log into a different account than the one effected (an admin account or anything)

    Run combofix twice, let it reboot, run malware bytes, run super anti spyware. (All taken from that AV thread)
    Check your network settings in firefox, disable the proxy. Go into the firewall settings, turn the firewall on, delete any entries it made under exceptions. Check your internet settings(via controlpanel or IE), change all the levels back from "custom" to medium -> high.

    exe files most likely won't work (on the effected profile), they'll come up with some bullshit about what program to use to open them -> Go to www.dougknox.com -> win xp fixes -> file association fix -> exe fix. Run that registry entry, exe files work again. Combofix may fuck with your "maximum profile storage" or whatever, if it does, theres a registry fix for that too, not sure if it's on that site.

Similar Threads

  1. Windows 7 Firefox Security
    By Kajii in forum Tech
    Replies: 6
    Last Post: 2010-06-06, 00:24
  2. windower virus (false positive)
    By Skie in forum Tech
    Replies: 22
    Last Post: 2009-12-04, 23:10
  3. Windows Police Pro / Total Security Virus
    By Wulfgang in forum Tech
    Replies: 3
    Last Post: 2009-08-31, 13:35
  4. Security System Virus
    By keithleonard1992 in forum Tech
    Replies: 2
    Last Post: 2009-08-11, 04:23
  5. Replies: 9
    Last Post: 2009-02-19, 13:58
  6. Windows Server 2008: Anti-Virus?
    By Kohan in forum Tech
    Replies: 6
    Last Post: 2009-01-12, 14:01