A Windows Vista forum. Vista Banter

Welcome to Vista Banter.

You are currently viewing our boards as a guest which gives you limited access to view most discussions, articles and access our other FREE features. By joining our free community you will have access to ask questions and reply to others posts, upload your own photos and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact contact support.

Go Back   Home » Vista Banter forum » Microsoft Windows Vista » Performance and Maintainance of Windows Vista
Site Map Home Register Authors List Search Today's Posts Mark Forums Read Web Partners

Performance and Maintainance of Windows Vista A forum for performance and maintenance tasks in Windows Vista. (microsoft.public.windows.vista.performance_maintainance)

Fake anti-virus infection



 
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old November 22nd 09, 02:54 AM posted to microsoft.public.windows.vista.performance_maintenance
Questor[_2_]
external usenet poster
 
Posts: 262
Default Fake anti-virus infection

My granddaughter, running her laptop on Vista Home Premium SP2, with all
the updates managed to get infested with a fake A/V scanner. The
"scanner" runs for a bit, then tell you that it has found somewhere
between 5 and 15 "infestations" and tells you that you have to pay to
get rid of them. Every 5 seconds a pop-up appears telling her that
'whatever'.exe is infected and cannot run. All sorts of executables
will fail to run - including AVG. I cannot start Task Manager either -
I'm told I don't have enough priveleges and 'not enough permissions' (sic).

I tried all the normal methods to get this pesky thing, but none will
work. I ended up pulling the HD and hooking it up to my desktop and
scanning it with AVG there. Didn't find a thing. Malwarebytes I
scanning now, but it is not finding anything (yet).

I can start the computer in safe mode, but AVG will only run it's
commandline interface. Didn't find anything that way either.

I figure it has to be coming out of the registry and kicking off a
couple of hidden executables. Where would be the best place for these
to come from; HKLM\Software\Microsoft\Windows\Current_Version... or
somewhere else?

Questor
 




Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 12:46 PM.


Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.Search Engine Optimization by vBSEO 3.0.0 RC6
Copyright ©2004-2012 Vista Banter.
The comments are property of their posters.