Continually finds VX2 trojan, ABetterInternet

  • Thread starter Thread starter Norm Schaeffer
  • Start date Start date
N

Norm Schaeffer

Hi all:

About every other day MS Antispyware finds VX2 and
ABetter.... on my work computer, puts them into quarantine
then waits for me to remove them.

Isn't there an "Always Remove" function?

Thanks,
Norm
 
Please restart the machine in safe mode by pressing the F8 function key
before the first Windows screen appears. Do Full, deep scans, until one
comes though clean.

I know Microsoft Antispyware can remove this one, but there are confounding
situations where combinations of bugs, or perhaps a known one coupled with
an unknown one, are resistant. If that doesn't do the job, write back.
 
I would also make sure to run antivirus while you are in safe mode. Also,
make sure that you are up to date on patches, enabled firewall, have strong
user account passwords, etc.

--
-steve

Steve Dodson [MSFT]
MCSE, CISSP
PSS Security

--

This posting is provided "AS IS" with no warranties, and confers no rights.
Use of included script samples are subject to the terms specified at
http://www.microsoft.com/info/cpyright.htm

Note: For the benefit of the community-at-large, all responses to this
message are best directed to the newsgroup/thread from which they
originated.
 
Be sure to disable your network connection before
restart. It seems this nasty critter downloads itself
after startup and you get into a remove-restart-reload
loop.
-----Original Message-----
I would also make sure to run antivirus while you are in safe mode. Also,
make sure that you are up to date on patches, enabled firewall, have strong
user account passwords, etc.

--
-steve

Steve Dodson [MSFT]
MCSE, CISSP
PSS Security

--

This posting is provided "AS IS" with no warranties, and confers no rights.
Use of included script samples are subject to the terms specified at
http://www.microsoft.com/info/cpyright.htm

Note: For the benefit of the community-at-large, all responses to this
message are best directed to the newsgroup/thread from which they
originated.
Please restart the machine in safe mode by pressing the F8 function key
before the first Windows screen appears. Do Full, deep scans, until one
comes though clean.

I know Microsoft Antispyware can remove this one, but there are
confounding situations where combinations of bugs, or perhaps a known one
coupled with an unknown one, are resistant. If that doesn't do the job,
write back.


.
 
Back
Top