rogue virus leading to antispy-guide.net
My wife's computer was infected by a rogue virus. It's constantly asking to buy anti-virus software from antispy-guide.net. And it blocked the execution of other program by saying they are infected.
The only exception is browser. You can still open a browser. Apparently, they don't want to block the way so that the infected user can purchase their software.
Here is how I dealt with it:
In explorer, copy \windows\system32\taskmgr.exe to some other place. Then rename it as firefox.exe and run it. Now the task manager appears. In the task manager find and kill a process with a very strange name which unfortunately I forgot what exactly it is. And I also deleted the corresponding .exe file from the file system.
Now everything is back to normal. I am not sure this is a permanent fix. But so far so good.

34 Comments:
I also have this virus on my computer but I am confused by your instructions on how to fix the problem. You said In explorer, copy/windows/system32/tackmagr.exe and put it someplace else. I am unable to "copy" that program, the virus software seems to block that abilty. Also, where do I need to copy the program to?
The damn thing got me too. Panda Antivirus has been fighting it for hours to no avail. Your trick definitely worked to get in to task manager but if you could remember what to look for itwould be a big help.
JFowler, I just typed it in explorer like it was a website then hi-lighted it and it asked to save it. I saved mine to desktop for easy access.
Asam is one of them
Everything described kernel verifier
Thanks for your idea, it worked. I am able to run system restore now and trying it now. Time to get a Mac I think.
In my case the spyware file was located in C:\Documents and Settings\YOUR_USER_NAME\Local Settings\Application Data\bqvhvdkud\nvfhtbctssd.exe
Folder "bqvhvdkud" may be different on your PC. Make sure you have changed your Windows settings to show hidden files.
If you are not sure, You can boot up the PC in safemode (F8) and browse to the above folder and rename the file or folder to nvfhtbctssd.exe-old .
This comment has been removed by the author.
This comment has been removed by a blog administrator.
hello~ nice to meet u..............
first catch your hare, then cook him. ..................................................
Lets cross the bridge when we come to it............................................................
good post..................................................
來幫你衝一下人氣,幫你推推推......................................................................
生存乃是不斷地在內心與靈魂交戰;寫作是坐著審判自己。......................................................................
Poverty is stranger to industry.....................................................................
It takes all kinds to make a world.............................................................
人生是故事的創造與遺忘。............................................................
這麼用心的經營你的文章, 當然值得我們留連拜訪的!..................................................
Quietude is the crown of life.............................................................
一個人的際遇在第一次總是最深刻的,有時候甚至會讓人的心變成永遠的絕緣。............................................................
blog有留言互動才好玩~~希望留言能支持您的更新動力!!!............................................................
Riches serve a wise man but command a fool.............................................................
鞋匠能作好鞋子,因為他只做鞋,不做別的。..................................................
道歉是人類一定必要的禮節..................................................
時間就是塑造生命的材料。......................................................................
「仁慈」二個字,就能讓冬天三個月都溫暖。..................................................
好的blog值得一推再推,要愈來愈好哦!!!!..................................................................
Learning makes life sweet.......................................................................
這一生中有多少人擦肩而過?而朋友是多麼可貴啊!......................................................................
你的努力我們都看見了--支持你..................................................................
好文不寂寞~支持!!!!@@a 搞錯了,這不是論壇推文 XDDD............................................................
拒絕冒險和成長的人,終將被生命的潮流陶汰。..................................................
Judge not a book by its cover.. . . . . . . . . . . . . . . . . . . . . . . . . . . . . .
時間就是塑造生命的材料。......................................................................
在莫非定律中有項笨蛋定律:「一個組織中的笨蛋,恆大於等於三分之二。」............................................................
Post a Comment
<< Home