Computer Hope

Software => Computer viruses and spyware => Topic started by: Aitch65 on July 27, 2010, 10:53:04 PM

Title: vista copyright malware
Post by: Aitch65 on July 27, 2010, 10:53:04 PM
My daughter has a computer that had the genuine Vista OS already installed.  She recently had to have it fixed due to a hard disk failure.  The repairer (also genuine and reliable) had to reinstall Vista using the key etc.

Everything worked OK but this week she has started to get a warning about copyright. 

I apologies at this point for inadequate detail but I am trying to get background before I go round there.
I haven't seen it yet but I am suspiscious because it does not ask her to input a key but threatens consequencies if she doesn't take action within 3 days.

I have come across this malware warning on the net and wondered if this cold be the problem

http://www.bleepingcomputer.com/virus-removal/remove-i-q-manager

Title: Re: vista copyright malware
Post by: Crush on July 27, 2010, 11:43:50 PM
Hello, and welcome to Computer Hope Forums!

I'm Crush but, you can call me Chris too :) and I will be helping you with your Malware issues

Please note the following information about the malware forum:



Reply to this topic with the word BUMP.


Now that we have that out of the way:

    We are going to be using a Windows Recovery Environment to help disinfect the system so it may boot again.

    Download the OTLPE Standard REATOGO Windows Recovery Environment.Note : If you do not know how to set your computer to boot from CD follow the steps here (http://www.hiren.info/pages/bios-boot-cdrom)
   
Title: Re: vista copyright malware
Post by: Aitch65 on July 28, 2010, 02:06:57 AM
BUMP
One problem I have at the moment is that I have to travel to my daughters where the offending computer is so I am copying your instructions ready but I may be sometime before replying.

Hopefully I will have access to the forum when I get there when I get there.

Title: Re: vista copyright malware
Post by: Aitch65 on July 28, 2010, 05:00:48 AM
Thanks Chris
Now that I have managed to get round to my daughters the problem was much simpler than I anticipated.

The messages she was getting were genuine Microsoft messages.  I just needed to enter the Product ID in and that validated the re-install.

I am sure they must do it, but it would be helpful if  when Microsoft promulgate these warnings if they could indicate what might solve the problem without trying to sell a new package.

Title: Re: vista copyright malware
Post by: Crush on July 28, 2010, 11:05:20 AM
Hi,

There is an infection which looks very similar to what you're describing. Did it look something like this?

http://www.computersecurityarticles.info/antivirus/windows-%E2%80%9Cactivation%E2%80%9D-ransomware/

I think you need to contact MS, and see if they are doing this. I have heard before of MS locking machines if they find you aren't using a real copy of Windows, or not using a validated copy anyway.

If you give MS your license key, they can track it on their end.
Title: Re: vista copyright malware
Post by: Aitch65 on July 28, 2010, 11:54:36 AM
You are right about the infection and that is what caused my concern before I checked.

Since then I have had chance to check the machine properely and have gone through all the correct validation procedures and I am sure now that everything is correct.

Microsoft was doing the job correctly, as I said I just wish they would tell one the more obvious solution rather than the marketing solution.



Title: Re: vista copyright malware
Post by: Crush on July 28, 2010, 01:07:47 PM
Ok. Glad it was resolved