Forum Home
Press F1
 
Thread ID: 118166 2011-05-22 14:38:00 Win 7 Home Security Trojan - Malwarebytes Digby (677) Press F1
Post ID Timestamp Content User
1204297 2011-05-22 14:38:00 Hi Guys

I just go attacked by that Win 7 Home Security trojan.

It was really nasty, I could not get on to my Firefox to get any help, and I could run run Malwarbytes to remove the trojan.

I tried to re-install Malwarebytes but when I clicked on the Run button nothing happened.

I did a System restore, but that would not complete.

I ran my Avira Anti-virsu full scan - it noticed nothing!

I ran Hi-Jack this - could not see anything.

I was staring to panic, as I could not get on here to get some help.

Then bu chance I looked at the options for Malwarebtyes and by right clicking there was a Run as Administrator option.
This let me open Malwarebtyes and I ran a quick scan and it found two trojans, which it removed.

Then my system was back to normal

So thanks Malwarebytes, and those of you on here the recommend it to me.
Digby (677)
1204298 2011-05-22 21:15:00 i would update it and run a full scan.

a quick scan will miss things
GameJunkie (72)
1204299 2011-05-22 21:30:00 Its fake / rogue software (www.bleepingcomputer.com) Speedy Gonzales (78)
1204300 2011-05-23 09:54:00 Its fake / rogue software (www.bleepingcomputer.com)

But it does look very official.

I knew it was fake right form the start.

But it throws up some convincing messages.
Then it start to throw up too many messages with bad English.

But as I said I would have struggled to get rid of it if I dd not have Malwarebytes installed.
Digby (677)
1204301 2011-05-23 09:56:00 Most rogue programs look official. But all they do, is annoy you Speedy Gonzales (78)
1204302 2011-05-25 03:29:00 Its fake / rogue software (www.bleepingcomputer.com)Hey,

i'm not sure what you mean by this.

The link to BleepingComputer. Is this site itself the fake / rogue software, or does this site detect (and remove?) other fake /rogue software?
rugila (214)
1204303 2011-05-25 03:32:00 Hey,

i'm not sure what you mean by this.

The link to BleepingComputer. Is this site itself the fake / rogue software, or does this site detect (and remove?) other fake /rogue software?

No the site is explaining what the software (trojan) is...!
SolMiester (139)
1204304 2011-05-25 03:48:00 Its fake / rogue software (www.bleepingcomputer.com)


Ex-customer got one:

This is what happened:
double-click on the eXplorer.exe icon in order to automatically attempt to stop any processes - gave No file or program is associated with this, you point to it and nah, still won't. Ditto with all executables.

I just did a repair install then ran MBAM, Spybot, HJT, and 2 rootkit checkers. Then checked for any leftover bits manually.

Much easier than their fix.
pctek (84)
1204305 2011-06-10 10:10:00 Ex-customer got one:

This is what happened:
double-click on the eXplorer.exe icon in order to automatically attempt to stop any processes - gave No file or program is associated with this, you point to it and nah, still won't. Ditto with all executables.

I just did a repair install then ran MBAM, Spybot, HJT, and 2 rootkit checkers. Then checked for any leftover bits manually.

Much easier than their fix.

Just borrowing this thread for a moment :-) My Acer Win 7 All in one, about a year + old, developed a very noisy fan. It was sent back to Acer where they decided to repair install it, as it was thought it was software related.

Trouble is the repair wiped the HDD clean and I lost some important stuff, didnt loose it all, as some was backed up. Do you think the lost stuff might still be on the HDD and possibly recoverable ? Just a best guess would do.
curly (6655)
1204306 2011-06-10 10:16:00 Just borrowing this thread for a moment :-) My Acer Win 7 All in one, about a year + old, developed a very noisy fan. It was sent back to Acer where they decided to repair install it, as it was thought it was software related.

Trouble is the repair wiped the HDD clean and I lost some important stuff, didnt loose it all, as some was backed up. Do you think the lost stuff might still be on the HDD and possibly recoverable ? Just a best guess would do.

Better to put this in a new thread, it is not relevant to this one.

LL
lakewoodlady (103)
1 2