
Google redirect to licosearch
#31
Posted 05 May 2011 - 04:08 PM
NINA - Proud graduate of the WTT Classroom
Member of UNITE
The help you receive here is free but if you feel I have helped, you may consider making a Donation.Register to Remove
#32
Posted 07 May 2011 - 04:36 AM
#33
Posted 07 May 2011 - 09:42 AM
Unfortunately, even though you couldn’t send the result of the full scan, the partial scan showed the presence of a serious viral infection known as Ramnit..
At this time Ramnit can not be cleaned and the only option is a reformat, not just a windows repair install.
Infection information
Win32/Ramnit is a file infector which infects .exe, and .HTML/HTM files, and opens a back door that compromises your computer. Using this backdoor, a remote attacker can access and instruct the infected computer to download and execute more malicious files.
Why the only sure way to remove it effectively is to reformat and reinstall the OS.
The malware injects code in legitimate files similar to the Virut virus and in many cases the infected files (which could number in the thousands) cannot be disinfected properly by your anti-virus. When disinfection is attempted, the files often become corrupted and the system may become unstable or irreparable. The longer Ramnit.A remains on a computer, the more files it infects and corrupts so the degree of damage can vary.
In most instances it may have caused so much damage to your system files that it cannot be completely cleaned or repaired. Security vendors that claim to be able to remove file infectors cannot guarantee that all traces of it will be removed as they may not find all the remnants. If something goes awry during the malware removal process there is always a risk the computer may become unstable or unbootable and you could loose access to all your data.
Here's a write-up:
Because your computer has likely been compromised by the backdoor Trojan and there is no way to be sure the computer can ever be trusted again. It is dangerous and incorrect to assume the computer is secure even if your anti-virus reports that the malware appears to have been removed.
I would suggest you do this: • use another, uninfected computer to change all your internet passwords, especially ones with financial implications such as banks, paypal, ebay, etc. You should also change the passwords for any other site you use.
• call your bank(s), credit card company or any other institution which may be affected and advise them that your login/password or credit card information may have been stolen and ask what steps to take with regard to your account.
• consider what other private information could possibly have been taken from your computer and take appropriate steps
When you’ve done the above, reformat the system partition and reinstall Windows – it is the only 100% sure answer.
• When should I re-format? How should I reinstall?
• Where to draw the line? When to recommend a format and reinstall?
I'm sorry not to have better news but the fact that you had a Virut infection is probably the reason that you have become re-infected.
Please let me know if you have any more questions or if I can close this thread.
Thanks
Satchfan
NINA - Proud graduate of the WTT Classroom
Member of UNITE
The help you receive here is free but if you feel I have helped, you may consider making a Donation.
#34
Posted 07 May 2011 - 10:19 AM
#35
Posted 07 May 2011 - 03:53 PM
NINA - Proud graduate of the WTT Classroom
Member of UNITE
The help you receive here is free but if you feel I have helped, you may consider making a Donation.
#36
Posted 07 May 2011 - 04:32 PM
#37
Posted 08 May 2011 - 02:28 AM
Formatting and re-installing Windows is relatively straightforward. However, after re-installation, Windows updates and driver updates will have to be applied.
There is an excellent tutorial here which shows you step-by-step and also shows how to save all your settings.
I would not advise saving emails as most of your personal files are infected. Because of this, I would strongly suggest that you start a topic here as they have much more expertise in this field than I have and will help you through the process.
Explain that you have a file-infector on your system so that the helper is aware of what you can/cannot transfer.
Good luck
Satchfan
NINA - Proud graduate of the WTT Classroom
Member of UNITE
The help you receive here is free but if you feel I have helped, you may consider making a Donation.
#38
Posted 08 May 2011 - 08:08 AM
#39
Posted 08 May 2011 - 08:28 AM
You are welcome - I'm sorry I couldn't give you better news.Thanks again for sticking with me Satchfan, it's good of you to give your time, I appreciate it a lot.
Saving your correspondence to disk is OK if the disk is "closed". If a disk autoruns with infected files (emails). you will be back to square one.
I would suggest you ask for help before you do anything. The Tech team will advise you on the best way to proceed.
Best wishes
Satchfan
NINA - Proud graduate of the WTT Classroom
Member of UNITE
The help you receive here is free but if you feel I have helped, you may consider making a Donation.
#40
Posted 08 May 2011 - 10:19 AM
If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.
Everyone else please follow the instructions here http://forums.whatth...ed_t106388.html
and start a New Topic.
NINA - Proud graduate of the WTT Classroom
Member of UNITE
The help you receive here is free but if you feel I have helped, you may consider making a Donation.Register to Remove
1 user(s) are reading this topic
0 members, 1 guests, 0 anonymous users