Computer Hope

Software => Computer viruses and spyware => Topic started by: Roca331 on July 21, 2010, 10:17:17 PM

Title: Fake anti-virus/anti-spyware attacks. Please help!
Post by: Roca331 on July 21, 2010, 10:17:17 PM
I have had a few problems with this. I will be on a completely harmless website, such as Youtube and suddenly Java 6 will start loading and then a fake anti-virus or a fake anti-spyware program will open up and I can't open any programs and it will tell me I have hundreds of viruses and that I have to buy their program, or some will even pretend to be from Windows Vista. What free progams can I use that will stop these from attacking me? I have Malwarebytes, AVG, and Spybot: S&D. What causes these? I don't even go on bad websites and I get these.
Title: Re: Fake anti-virus/anti-spyware attacks. Please help!
Post by: Crush on July 22, 2010, 11:55:17 AM
Hello, and welcome to Computer Hope Forums!

I'm Crush but, you can call me Chris too :) and I will be helping you with your Malware issues

Please note the following information about the malware forum:



Reply to this topic with the word BUMP.


Now that we have that out of the way:

Download OTL (http://oldtimer.geekstogo.com/OTL.exe)  to your Desktop

Code: [Select]
netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%SYSTEMDRIVE%\*.exe
%systemroot%\*. /mp /s
c:\$recycle.bin\*.* /s
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs
/md5start
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
sceclt.dll
ntelogon.dll
logevent.dll
iaStor.sys
nvstor.sys
nvstor32.sys
atapi.sys
IdeChnDr.sys
viasraid.sys
AGP440.sys
vaxscsi.sys
nvatabus.sys
viamraid.sys
nvata.sys
nvgts.sys
iastorv.sys
ViPrt.sys
eNetHook.dll
explorer.exe
svchost.exe
userinit.exe
qmgr.dll
ws2_32.dll
proquota.exe
imm32.dll
kernel32.dll
ndis.sys
autochk.exe
spoolsv.exe
xmlprov.dll
ntmssvc.dll
mswsock.dll
Beep.SYS
ntfs.sys
termsrv.dll
sfcfiles.dll
st3shark.sys
ahcix86.sys
srsvc.dll
nvrd32.sys
/md5stop
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles