New virus that Norton doesn't see!

Duis mollis, est non commodo luctus, nisi erat porttitor ligula, eget lacinia odio sem nec elit. Sed posuere consectetur est at lobortis. Vestibulum id ligula porta felis euismod semper. Donec ullamcorper nulla non metus auctor fringilla. Aenean lacinia bibendum nulla sed consectetur. Cras justo odio, dapibus ac facilisis in, egestas eget quam. Cras mattis consectetur purus sit amet fermentum. Morbi leo risus, porta ac consectetur ac, vestibulum at eros. Sed posuere consectetur est at lobortis. Etiam porta sem malesuada magna mollis euismod. Cum sociis natoque penatibus et magnis dis parturient montes, nascetur ridiculus mus. Duis mollis, est non commodo luctus, nisi erat porttitor ligula, eget lacinia odio sem nec elit. Cras justo odio, dapibus ac facilisis in, egestas eget quam. Aenean eu leo quam. Pellentesque ornare sem lacinia quam venenatis vestibulum. Curabitur blandit tempus porttitor. Sed posuere consectetur est at lobortis.

Hi catfish, what other security programs have you tried? It’s quite normal to have a an extra freeware program or two besides the main security software. I find that Malwarebytes sometimes offers a solution. F-secures online scanner can also be useful now and then.

MelodicWynd,

Well, that’s what I ended up doing. I just scratched it and installed Ubuntu. I’m just sick of getting malware/viruses. I can never really know that my banking info etc is safe if I’m running Windows. All I use at work is Linux so I don’t see why my personal laptop should be any different. I’m convinced it was a zeroday virus and I don’t really have time to wait on a fix. Good luck to all those that are gonna get this one! It’s a bear! :slight_smile:

Thanks for all your help!

-Cat

Message Edited by catfisch on 06-30-2008 06:26 AM
Message Edited by catfisch on 06-30-2008 06:27 AM

Epost,

Thanks for the input, however I couldn’t hit any of these sites when my laptop was infected. I tried numerous times.

Thanks,

-Cat

Message Edited by catfisch on 06-30-2008 06:26 AM

I’m just pleased you got it fixed. Happy surfing! :D

I have a virus or trojan on my laptop. I have been trying to clean it up for a week!

I was hoping someone here can help shed some light in it!

 

-I have Symantec AV Pro 2002 on my laptop andI always keep the definitions up to date.

-Notepad won't start, XP says it's terminating it to keep my computer safe.
-I can't hit any antivirus sites like AVG or Symantec.
-I had about 15-20 apps running called 1060.exe.
-If I turn on my wireless nic I start getting pop-ups that say something like "ATTENTION! Your computer is at risk.."
-Taskmanager was disabled "By the system administrator"
-Gpedit won't start
-uTorrent got installed somehow (I never installed it)
-It wouldn't let me install SBS&Destroy until I change the installers name
-At one point when I would try to ping any IP it would time out, noticed that the ip that each packet it printed in the screen was missing and was replaced with something like ?1 if I remember right. Figured the IP stack was in a hosed state
-Ran "netsh winsock reset" and the pings started working again
-some files and directories are hidden from explorer, they can only be seen from the cmd shell and even then you can't see them all


This is a bad one! I ran hijackthis and wrote down the paths for 1060.exe and some other strange stuff, booted off a knoppix cd and deleted them.
The 1060's are gone and so is utorrent but the popups are still coming and I still can't hit the security sites, oh and notepad is still crashing when I try to run it.

 

Thanks!

-Catfisch

hi catfisch... i'm sure you're on this one already, but your description leads me to believe that your admin account is no longer yours alone. you can likely get around a lot of this (like renaming notepad.exe to notepad.com, etc.) to get enough purchase on the system to back it up and then nuke 'n' pave. it's a lousy answer, but you'll never know for sure that you got everything and likely have a trojan that has a backdoor open that allows for freshly scripted payloads. i think any repair experience is likely to leave you vulnerable and will cost you a lot more cycles than biting the bullet now and doing the deed...  advice from USCERT for this scenario located here.

 

sorry not to have something better,

 

mel