I have a virus on my aim




















Log in. For a better experience, please enable JavaScript in your browser before proceeding. You are using an out of date browser.

It may not display this or other websites correctly. You should upgrade or use an alternative browser. AIM virus help please. Thread starter Chelsie Start date Jun 15, Status Not open for further replies.

A friend of mine was on my computer and got a link on my AIM name from a buddy on my list saying "Hey, is it okay if I post this picture of us on facebook? It sends this link to everyone else on my buddy list and wont let me IM anyone. Basically, it just goes haywire. Now, I've run AVG virus scan and it hasnt found anything yet my AIM is still going haywire and though I've un-installed it and re-installed it it still does the same thing.

Basically, I'm stuck because I have no idea how to get rid of this virus and I'm afraid, even though I can find no evidence of anything, that its done other things to mess up my computer. Any help would be much appreciated. Or not. I guess AIM fix didnt do anything because it began going haywire again. Someone, please, help. Hello and welcome to Techspot. Your version of HJT is out of date. The current version is 1. Go HERE and follow the instructions exactly.

Post a fresh HJT log as an attachment into this thread, only after doing the above. Regards Howard :wave: :wave:. Did everything I was supposed to, now heres the fresh HJT log. Anything else I need to remove or fix, would be much appreciated if told me. Otherwise, if alls clear, please let me know. Thank you very much. Also, my McAfee firewall apprently isnt started. When I try to hit "start firewall" this is the message I get "McAfee Firewall encountered an error attempting to start the Firewall service.

The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Go to add remove programmes in your control panel and uninstall anything to do with if there.

Close HJT. Locate and delete the following bold files and directories if there. Regards Howard. As far as your McAfee problem is concerned. Once McAfee is completely uninstalled, reboot your computer. Install the Zonealarm firewall, followed by AVG and reboot your computer. Reconnect to the net and run the AVG updates.

Alright, did it all. Everything seems to be running perfectly fine, clean and everything. The only other issue I'm having is with my McAfee Firewall.

I get that message everytime I try to click start McAfee firewall because apparently its been disabled. Awhile back I got a MSN virus much like this and it did the same thing though I was able to re-start my firewall, I just dont remember how. Your e-mail address itself cannot be infected. If the account is just being spoofed but not actually used to send emails that seem to be coming from you, then fixing the problem becomes more difficult as it's somewhat like locking the barn door after the cows are all gone.

The first thing to do is change ALL your passwords and password recovery information ASAP to see if it can be stopped if it isn't already too late - especially email. Next contact your e-mail provider's technical support department or forum or whatever they use to provide support and discuss the situation with them.

They usually have procedures for such situations and can help you and offer advice. First, try the following programs if you haven't as they may help. After an initial free consultation, a fee will be charged for assistance, based on the details of the case.

If the above is too expensive and you'd like some free options though they can take days or a week or so before getting a response and then more days going back and forth in a forum environment - and though the quality of help you get is generally good, the level of expertise of the person assigned to your case is pretty much the luck of the draw - but that's the "price" of free options , here are some free malware-removal forums:.

In the meantime, I'd contact the bank or credit card company and dispute the charge to try and get my money back if you actually paid anything - otherwise skip ahead to the P. Canceling the card is not enough to remove prior transactions that were charged to it without disputing them — and there may be more than just this one company if they installed products that cost money that will separately charge you or already have.

That may be simpler than asking the company or companies for a refund - but if the banks can't help you at this point, then of course try to get the refund from the company or companies and keep asking to talk to the person's manager until you get as high as you can and tell them if they refuse you'll notify the authorities and the company that hosts their website and take legal action even if we know you won't because it's too much of a hassle, they won't be certain.

How far you want to go in terms of changing all your other passwords, pins, logon information, account information including all your financial data if on the computer and such is a decision you need to make for yourself. Then restart your computer. As a general point, each service listed has a gear icon to the left of them, make sure you scroll down to the L section.

Once you've located the Local Security Authority Subsystem, double click it. Once the dialoge box has opened select 'disable' from the start-up type drop down menu. I reccomend posting a HiJack this log in the appropriate forum if this is the case.

Ah yes, wow I am very suprised to see this post. Many, and I mean seriously many, of my friends got this virus. It's a variant of the SDBot. Let me tell you, it's not a pretty virus. We spied on the botnet for a while before it was shut down, and we were ready to report it to the authorities since it seemed to be unkown, until we found it.

I'm glad to see this was all taken care of. Who's laughing now, bot masters? That's right! You see, the whole structure of a botnet simply doesn't work anymore. A little packet sniffing gives away everything about it, and so it can easily be discovered and reported. Good thing too! All of my friends were getting it, and it was hard for me to figure out how to fix it over the phone, so I intentionally put it on my machine, to figure out how to get rid of it.

I have a exported list of all the standard services that should be running, and keep a vigilant eye on my Hijackthis logs, running proccesses, and kill those crappy adware spyware programs on the spot. I didn't seem to find any other viruses on my machine, however it was only on my machine for 15 minutes or so, and I was disconnected from the net during removal. If you happen to come across any please don't hesitate to ammend my post!! The only other thing it might have changed is a few registry entries to those who do not have SP1, but hopefully that isn't' too many people.

It may change a few registry entries in the auto updates section to those who have SP1! SP2 users are not affected as much! Yes, when we were tracking this virus, we discovered that it does change such things.



0コメント

  • 1000 / 1000