Monday, May 24, 2010

One of my customer's got a virus from a thumb stick and it's now a pest.?

The virus is called Kiamat Notepad, it registers itself in the System Registry, writes +-40 Notepads from endonasia. I have tried Norton, and Adaware on detects it, but cannot remove/clean it. Also the computer which i used got infected, but with the latest Symantec. To add salt to the fresh wound, i lost all my data, becoz i could not even manage to open any files or even C:\%26gt; Please help.

One of my customer's got a virus from a thumb stick and it's now a pest.?
If you have XP or Vista, try to use system restore, to go back to the day before the infection. That should also get you your files back.





This is a dangerous worm


http://www.greatis.com/appdata/d/k/kiama...


http://www.bitdefender.com/VIRUS-1000067...





Try an online scan from one of these free links.


http://support.f-secure.com/enu/home/ols...


http://www.ca.com/us/securityadvisor/vir...
Reply:Have you tried Kaspersky? it's about the best AV there is that's out there right now.


http://www.kaspersky.com





This can remove it.


http://www.greatis.com/security/
Reply:As i do not know if you are comfortable working in the Registry i recommend that you take the advice of Fred C. Other answers advocate downloading several programmes but, even though one or more of these programmes may, detect the malware this does not, mean that the malware can be removed.
Reply:Spybot.
Reply:get avg free version on cnet.com...good stuff...
Reply:Go to:


http://www.eset.com/onlinescan/





This is an online scan which will remove all known viruses and most if not all spyware from ESET (makers of Nod32). It requires an Active X compatible browser so use internet explorer. Make sure you select to 'Remove found items' and to 'Scan for unwanted programs'


Then go to www.ewido.com and download their free antispyware program. If your still infected then download Spybot Search and Destroy.
Reply:thats a *****, nowdays nobody uses destructive viruses


you could just reset you registry in dos with a boot disk


have to un-attrib the spare copy 1st and remove the part of the name like 'backup'


itll reset your pc as new, then you can run av etc, kill the virus and then reinstall your programs


unlucky


forgive the wooliness on the registry back up file but google some stuff and you should find some info, been years since ive done it, usually use it as an excuse to reinstall windows


which you could still do


you just lose the registry entries as per but with the long install process on your time





funny how many people saynig download stuff when youve said your pc is shagged =)
Reply:can you go to safemode, if so there are programs that will run there one is AVG anti spyware also for mal-ware, rootkits, the next one cost but is well worth it.XoftSpy SE download to a cd, once paid for keep up dated, its possible it may clean computer and if you run the paid program RegCure, you may recover data


Nortons is a joke, useing the above programs I have recovered many PC, do so with internet off


once done then use the following:


SIMPLE STEPS TO


DOWNLOADING


VIRUS %26amp; SPYWARE PROTECTION


For XP





AVG FOR VIRUS PROTECTION


AVG anti FOR SPYWARE, MALWARE, ROOTKITS


BOTH FOUND AT http://www.grifsoft.com or go to yahoo and enter in search box -


AVG


VIRUS PROGRAM





1. FIRST STEP GO TO YAHOO AND TYPE IN: AVG FREE DOWNLOAD





2. CHOOSE THE ONE THAT SAYS :AVG FREE ADVISOR - FREE ANTIVIRUS AND ANTI-SPYWARE DOWNLOADS (should be about the 3rd one down) CLICK IT





3. ONCE THAT PAGE OPENS YOU WILL SEE ON THE LEFT SIDE OF PAGE FREE BASIC PROTECTION AND A ORANGE BOX THAT SAYS DOWNLOAD, CLICK IT





4.NEXT PAGE OPENS YOU WILL SEE PRODUCT COMPARISON, GO TO THE ONE ON THE FAR RIGHT AT THE BOTTOM, SEE WHERE IT SAYS FREE AND ANOTHER ORANGE BOX, CLICK IT





5. CLICK CONTINUE TO DOWNLOAD ANTI-VIRUS DOWNLOAD ONLY, CLICK THOSE WORDS





6. NEW PAGE OPENS WITH DOWNLOADS ON IT, SEE THE ORANGE BOX AGAIN SAYS DOWNLOAD NOW AT DOWNLOAD.COM AND YOU ALSO SEE 5 RED STARS, CLICK THE BOX





7. LAST STEP, NEW PAGE OPENS, CLICK THE DOWNLOAD NOW BOX AND WHEN THE NEXT BOX OPENS CHOOSE SAVE TO DESKTOP AND LET THE DOWNLOAD BEGIN, SIZE IS 31.45MB





ONCE YOU DONE WITH THIS FILE MOVE IT TO A FOLDER IN MY DOCUMENTS IN CASE YOU NEED IT AGAIN





Now for your next layer of protection download the following also but remember you can only run one program at a time, but each of these will fine things the other didn’t.


Spybot search %26amp; destroy found at www.safer-networking.org


DOWNLOAD


SPYBOT


SEARCH %26amp; DESTROY





ONCE YOU HAVE TYPED www.safer-networking.org THE YOUR SEARCH BAR IN YAHOO





1. IT WILL LOOK LIKE:


SpyBot Search and Destroy (S %26amp;D) CLICK





2. CHOOSE YOUR LANGUAGE - EXAMPLE ENGLISH





3. AT THE TOP OF THE PAGE WHERE IT SAYS DOWNLOAD - CLICK





4. LOOK DOWN THE PAGE TO WHERE DOWNLOADS START, YOU NEED THE FIRST ONE IF YOU HAVE VISTA AND WORKS FOR XP AS WELL SpyBot-Search and Destroy 1.5.2 CLICK DOWNLOAD





***NOTE


(For those who are looking for version 1.4 it’s the 5th one down, it does not work on Vista, but does on XP) click download





5. NEXT PAGE OPENS CHOOSE A MIRROR SITE I TEND TO USE SAFER-NETWORKING LTD CLICK DOWNLOAD HERE





6. BOX OPENS CHOOSE SAVE AND DO SO TO YOUR DESKTOP OR TO YOUR DOCUMENT FILE AND OPEN AND RUN FROM THERE


FILE IS 9.27MB





Superantispyware found at http://superantispyware.com


SUPERANTISPYWARE


DOWNLOAD





ONCE YOU HAVE TYPED http://superantispyware.com YOUR SEARCH BAR IN YAHOO





YOU WILL SEE:


SuperAntiSpyware.com- AntiAdware, AntiSpyware, AntiMalware CLICK





1.LOOK FOR BIG BLUE BOX ON THE LEFT SIDE OF THE PAGE SAYS DOWNLOAD FREE VERSION HOME USERS - CLICK





2. NEXT PAGE SCROLL DOWN, AGAIN LOOK FOR THE BIG BLUE BOX SAYS DOWNLOAD FREE VERSION HOME USERS - CLICK





3. NEXT PAGE DOWNLOAD SHOULD START AUTOMATICALLY


5.64MB VERSION 3.9.1008





****NOTE


(if it doesn’t start at once look at the top of the page for a light yellow bar, its basically a security bar, click and choose allow, it usually has to do with Active X)


If still does not open look on the page under the words Download progress:


If the download does not begin shortly please (click here is in blue)


Click it





4. DO SO AND A BOX OPENS, SAVE TO DESKTOP OR MY DOCUMENTS, OPEN AND RUN FROM THERE





And finally go to this web site for this program to clean up your internet history, cookies, browser history, recycle bin, IE Explorer, etc all the boxes can be preset and basically in 4 steps you can clean computer. It does so well that disc clean usually only will find 32-100MB after its done


http://www.snapfiles.com go to the freeware section, look for Internet Cleanup, then look for the software called IE Privacy Keeper


IE PRIVACY KEEPER


DOWNLOAD





WHEN YOU TYPE WWW.SNAPFILES.COM IN YOUR YAHOO SEARCH BOX THIS IS WHAT YOU WILL SEE WHEN IT OPENS





Snapfiles - software reviews, download freeware and trial programs - CLICK





1. WHEN THE PAGE OPENS LOOK FOR A TAB AT THE TOP OF THE PAGE THAT SAYS FREEWARE - CLICK





2. WHEN PAGE OPENS SCROLL DOWN AND FIND INTERNET CLEANUP TOOLS - CLICK





3. WHEN PAGE OPENS SCROLL DOWN TILL YOU SEE THE PROGRAM SHOULD BE LIKE ABOUT THE 14TH ONE DOWN - CLICK THE BLUE DOWNLOAD BUTTON FILE SIZE IS 1128kb





4. NEXT PAGE OPENS IF DOWNLOAD DOESN’T START LOOK FOR A LIGHT YELLOW BAR AT THE TOP OF THE PAGE, CLICK THE OPTION TO ALLOW TO OPEN, USUALLY HAS TO DO WITH ACTIVE X





***NOTE


If for some reason still doesn’t start click the blue words click here they are in the middle of the page in tan box.





5. WHEN THE BOX OPENS SAVE TO DESKTOP OR MY DOCUMENTS, OPEN AND RUN FROM THERE.





Last but not least do Defrag at least 2 times in a row even if program says not needed, as XP Defrag program isn’t the best and needs to be run more often.





And also go to http://www.glaryulitilies.com for free registry repair programs


GLARYULITILIES


DOWNLOAD





GO TO www.pcworld.com





1. WHEN PAGE OPENS TYPE IN THE SEARCH BOX - REGISTRY REPAIR PROGRAMS - CLICK GO





2. LIST WILL OPEN, SELECT THE SECOND ONE - GLARY REGISTRY REPAIR (ITS FREE) CLICK IT





3. NEXT PAGE, YOU WILL SEE A RED ARROW AND DOWNLOAD NOW IN BLUE WORDS - CLICK 1.30MB





4. NEXT PAGE BLUE BOX DOWNLOAD FREE REGISTRY REPAIR NOW- YOU CAN CLICK HERE BUT REAL SLOW


(works on 98, XP, ME, 2000, 2003, Vista) just not 64 bit supported





5. For a faster download click where it says - mirror here





6. NEXT PAGE IF IT DOES NOT START IN 5 SEC LOOK FOR A SECURITY BAR, WHICH IS LIGHT YELLOW AT TOP OF PAGE, CLICK THE OPTION TO ALLOW





IF FOR SOME REASON IT STILL DOESN’T USE THIS OPTION:


LOOK FOR THE LINE THAT READS


CLICK HERE IF IT DOES NOT





7. BOX OPENS SAVE TO DESKTOP OR TO MY DOCUMENTS AND OPEN AND RUN FROM THERE








or to http://www.snapfiles.com and to their freeware section to find them also.


(need only one virus program but you may have as many spy ware programs as you wish as long as you run only one at a time, and only one firewall)


No comments:

Post a Comment