I Got CONFICKER and I need your help!

31 replies
Hey I woke up this morning and my computer wouldn't open up internet expleror. The apllication kept getting terminated, so I restored my computer, but it still wouldn't load anything. So I got smart and accessed the internet through my computer search.

I tried to download the conficker removal software from microsoft.com and other various sites but the bug keeps terminating it. So I got unto another site and found some tips which says to get a friend to download the removal software and send it to you through the web. So that is where hopefully you come in...can someone please send me the removal software so I can download it through my email, my email is jakeeechane88@yahoo.com

This has so much to do with Internet marketing, well not really but I cant market on the internet withought the internet, so please help!
#conficker
  • I sent you Malwarebyte's Anti-Malware. Install it, start it and check for updates. Then run it.

    HTH
    Signature
    "The will to prepare to win is more important than the will to win." -- misquoting Coach Vince Lombardi
    {{ DiscussionBoard.errors[658920].message }}
    • Profile picture of the author sevenish
      Originally Posted by Vince Runza Online View Post

      I sent you Malwarebyte's Anti-Malware. Install it, start it and check for updates. Then run it.

      HTH
      Malwarebytes Anti-Malware combined with SuperAntiSpyware has been a good recipe for me.
      Signature

      100% atrocity-free! No annihilations, assasinations, explosions, killers, crushers, massacres, bombs, skyrockets or nukes.

      {{ DiscussionBoard.errors[658943].message }}
  • UPDATE: I had to resend this as a ZIP file, since it's an EXE file that was rejected by your email delivery software...
    Signature
    "The will to prepare to win is more important than the will to win." -- misquoting Coach Vince Lombardi
    {{ DiscussionBoard.errors[658950].message }}
  • Profile picture of the author Hililuud
    Vince thanx for trying to help but I didn't get your email, you should resend it to carllisjames@yahoo.com
    {{ DiscussionBoard.errors[659085].message }}
  • Profile picture of the author jestershaw
    Conficker is not supposed to mess up your computer. It is a virus that embeds itself and allows the hackers to access your computer and store information on it. It also uses your computer as a proxy to conduct malicious activities on the internet. It is supposed to be undetectable to the user therefore the hackers can do their business without being noticed. This is a huge part of my 9-5 job. I work in IT (information technology) for a large printing company.
    Signature

    Shawn Tester
    Site: www.zenzyn.com

    {{ DiscussionBoard.errors[659100].message }}
    • Profile picture of the author Hililuud
      Originally Posted by jestershaw View Post

      Conficker is not supposed to mess up your computer. It is a virus that embeds itself and allows the hackers to access your computer and store information on it. It also uses your computer as a proxy to conduct malicious activities on the internet. It is supposed to be undetectable to the user therefore the hackers can do their business without being noticed. This is a huge part of my 9-5 job. I work in IT (information technology) for a large printing company.
      I know...my computer isn't really messed up for I'm talking to you right now. It just terminates everything that I download and won't let me open internet explorer.

      Since this is your 9-5 job can you send me something to fix it?
      {{ DiscussionBoard.errors[659150].message }}
  • Profile picture of the author Michael Motley
    conflickr isnt that kind of virus. it doesnt slow you down, it gives a person the ability to MAYBE turn your computer into a zombie computer.

    If you dont know much about the internet, there is a section of the net called IRC (Internet Relay Chat) and it is as old as the internet itself. Think of it as the basement of the internet. Its basically a free chat service with hundreds of thousands of servers and millions of users. This virus gets on your machine and makes an IRC zombie. You dont know its on your machine, but your machine will basically connect to irc through a program called telnet that is a default program on your machine and log to a specific server, go into a specific room on that server. In that room there will be 1000's of zombies, and the admin of the room (the guy who made the virus) will be able to send commands to the other 'users' in the rooms to make them carry out tasks.

    So your machine can be used to do things like mass mail, or be involved in DNS attacks and you will never know it and if somehow the mail is discovered or the dns attack is tracked. the trail will lead back to the zombie computer (you) and not the actual instigator of the attack.

    I also understand that this is directed at countries that do a lot of pirating because a microsoft update was put out to fix this issue and the pirated version of the o.s. dont have the update.

    Microsoft has a malicious software removal tool that apprently cleans it right up but if you have it on your machine, you wont be able to get to microsoft, or places that have the fix, so someone will have to email it to you
    {{ DiscussionBoard.errors[659162].message }}
  • Profile picture of the author Hililuud
    I know, so can you please send it to me?
    {{ DiscussionBoard.errors[659169].message }}
  • Profile picture of the author Hililuud
    Ive already been to the microsoft ste and tried to download the microsoft milacious removal tool but of course it won't let me. Please send it to carllisjames@yahoo.com
    {{ DiscussionBoard.errors[659172].message }}
  • Resent to new address. Hope this works...
    Signature
    "The will to prepare to win is more important than the will to win." -- misquoting Coach Vince Lombardi
    {{ DiscussionBoard.errors[659232].message }}
  • Profile picture of the author Hililuud
    I got it vince, but unfortunetly the damn conficker wouldn't let it download it just terminates it before it does anything.

    I can only open things in my computer, any window outside of that is terminated. So if I could only get a download inside of the same (my computer) window then I could beat it, I just need to keep searching for a solution. Thanks for the help man..
    {{ DiscussionBoard.errors[659259].message }}
  • Profile picture of the author Barbara Wilson
    Excuse me while I side-track a moment - Michael, very interesting post! IRC was the internet before there was the WWW, wasn't it? I remember there was internet and chats and bulletin boards before the WWW and the internet as we know it today. I wasn't very involved in it at the time -but I remember a little. I didn't know that IRC still existed though - so I enjoyed your post very much.

    OK - sorry.

    Hililuud - You have something - no doubt - but it is not Conficker. Conficker doesn't terminate things. And - you wouldn't be able to access microsoft.com or norton.com or any other security-related site. As I understand, the worm blocks access to these sites. I'm not an IT and no expert on removing various trogans or worms. Michael will be more help to you. But if you can't install the Malwarebyte's Anti-Malware that Vince sent you (I've never had this trouble. I've installed that software to computers that have been infected with trojans and successfully cleaned them.) then the only option left may be to reformat your drive and reinstall everything. Look for other solutions first of course - personally, I hate wiping a drive and rebuilding it!
    Signature
    {{ DiscussionBoard.errors[659296].message }}
    • Profile picture of the author Janet Sawyer
      Originally Posted by Barbara Wilson View Post

      Excuse me while I side-track a moment - Michael, very interesting post! IRC was the internet before there was the WWW, wasn't it? I remember there was internet and chats and bulletin boards before the WWW and the internet as we know it today. I wasn't very involved in it at the time -but I remember a little. I didn't know that IRC still existed though - so I enjoyed your post very much.

      OK - sorry.

      Hililuud - You have something - no doubt - but it is not Conficker. Conficker doesn't terminate things. And - you wouldn't be able to access microsoft.com or norton.com or any other security-related site. As I understand, the worm blocks access to these sites. I'm not an IT and no expert on removing various trogans or worms. Michael will be more help to you. But if you can't install the Malwarebyte's Anti-Malware that Vince sent you (I've never had this trouble. I've installed that software to computers that have been infected with trojans and successfully cleaned them.) then the only option left may be to reformat your drive and reinstall everything. Look for other solutions first of course - personally, I hate wiping a drive and rebuilding it!
      Just thought that this information needed to be read an not bypassed in PANIC MODE!
      [/quote]

      Thanks Barbara, I hope people stop by and read your post, assimilate it (understand it - take time to read it- .//whatever!)

      If they don't and they choose to reformat - hopefully they will have a backup....
      {{ DiscussionBoard.errors[659524].message }}
    • Profile picture of the author Hililuud
      Originally Posted by Barbara Wilson View Post


      Hililuud - You have something - no doubt - but it is not Conficker. Conficker doesn't terminate things. And - you wouldn't be able to access microsoft.com or norton.com or any other security-related site. As I understand, the worm blocks access to these sites. I'm not an IT and no expert on removing various trogans or worms. Michael will be more help to you. But if you can't install the Malwarebyte's Anti-Malware that Vince sent you (I've never had this trouble. I've installed that software to computers that have been infected with trojans and successfully cleaned them.) then the only option left may be to reformat your drive and reinstall everything. Look for other solutions first of course - personally, I hate wiping a drive and rebuilding it!
      I used the word terminate but I meant errors. Errors on all applications is a sign of conficker also. But I hope that you are right.
      {{ DiscussionBoard.errors[659670].message }}
  • Profile picture of the author jcoolbaugh
    Use a flash drive to download the file from your yahoo email on another computer (think library, internet cafe, even kinkos, etc...); then transfer it to your computer via USB port. That should do the trick.

    HTH
    Signature
    veni, addidicī, vici.
    {{ DiscussionBoard.errors[659455].message }}
  • Profile picture of the author mmurtha
    Hey Hililuud,

    either do this:
    Use a flash drive to download the file from your yahoo email on another computer (think library, internet cafe, even kinkos, etc...); then transfer it to your computer via USB port. That should do the trick.

    HTH
    Or create a disk on another computer, then put the disk in the infected PC and run it while rebooting. The disk should automatically start and open the program before the booting process completes.

    This way you don't have to do what I did to get rid of the darn thing - that's if it was the same. I wiped out my drive and reinstalled.

    Btw if you guys think you can fool this trojan by renaming virus scanning software exe files to something else, and expect them to open, think again. I tried that one too. I was able to email a zip file by naming it as a virus, and it went thru my email client just fine, but when I opened it to run the app, the trojan quickly shut it down. Plus the file was automatically deleted from my system.


    Mary
    {{ DiscussionBoard.errors[659479].message }}
    • Profile picture of the author Hililuud
      Originally Posted by mmurtha View Post

      Hey Hililuud,

      either do this:


      Or create a disk on another computer, then put the disk in the infected PC and run it while rebooting. The disk should automatically start and open the program before the booting process completes.

      This way you don't have to do what I did to get rid of the darn thing - that's if it was the same. I wiped out my drive and reinstalled.

      Btw if you guys think you can fool this trojan by renaming virus scanning software exe files to something else, and expect them to open, think again. I tried that one too. I was able to email a zip file by naming it as a virus, and it went thru my email client just fine, but when I opened it to run the app, the trojan quickly shut it down. Plus the file was automatically deleted from my system.


      Mary
      This is the route that I have chosen to take, I got a friend to save microsoft's malation virus removal tool on a cd and I'm going to pick it up later on today, I hope this works.
      {{ DiscussionBoard.errors[659680].message }}
      • Profile picture of the author mmurtha
        Originally Posted by Hililuud View Post

        This is the route that I have chosen to take, I got a friend to save microsoft's malation virus removal tool on a cd and I'm going to pick it up later on today, I hope this works.

        Oh that's great!

        Just a thought , but you might want to see if they can get a copy of "hijackthis", and put it on the disk too. You'll have to do a search to find out how it exactly works though. I just heard about it after I lost everything, and found out what the trojan was. From what I've read, if you use it first, you can boot with it, and try to extract the virus files before doing anything else, then go in and do a full sweep or two with your anti virus/spyware app if you need to to heal the system files back up if that's possible.

        Whatever you decide to do, good luck with it.
        {{ DiscussionBoard.errors[660009].message }}
  • Profile picture of the author danielmcclure
    Just as a further warning, if you decide to go the route of using an external hard drive then make sure that it is free of any sensitive files or preferably any at all as depending on the nature of the virus it may spread. I once had a virus that wiped out all my back up installers as well, not a happy day.
    {{ DiscussionBoard.errors[659496].message }}
  • Profile picture of the author sevenish
    Damn that sounds nasty! I've not had issues like that. I use Zone Alarm Pro + Node 32 and a few other apps, all paid and up-to-date.

    Nothing guaranteed in any case. Good luck to you and please let us know how you vanquished the beasts.
    Signature

    100% atrocity-free! No annihilations, assasinations, explosions, killers, crushers, massacres, bombs, skyrockets or nukes.

    {{ DiscussionBoard.errors[660022].message }}
  • Profile picture of the author Hililuud
    My comp won't even play the disk! This is saddddddddddddddddddddd..........................b ut still I think you guys for trying.
    {{ DiscussionBoard.errors[660054].message }}
    • Profile picture of the author Floyd Fisher
      Originally Posted by Hililuud View Post

      My comp won't even play the disk! This is saddddddddddddddddddddd..........................b ut still I think you guys for trying.
      Set your computer to boot off the CD in your bios.
      {{ DiscussionBoard.errors[664499].message }}
  • Profile picture of the author Jasmine_Hawkins
    I heard alot of bad news about this today. I think bitdefender, Kaspersky, and a few others are on high alert for this.

    I believe BitDefender has a free cleanup tool.

    I'm only using my mac for safety today.
    {{ DiscussionBoard.errors[660077].message }}
    • Profile picture of the author MeTellYou
      Originally Posted by Jasmine_Hawkins View Post

      I heard alot of bad news about this today. I think bitdefender, Kaspersky, and a few others are on high alert for this.

      I believe BitDefender has a free cleanup tool.

      I'm only using my mac for safety today.

      I use BitDefender and am pretty happy with it. Not very expensive and their free version is awesome. It does have a clean up tool

      Sebastian
      Signature
      [UPDATED] FREE 1-ON-1 MENTORSHIP: Student Makes $12,000 His First Week Of Running Ads
      Skype Me! Skype: yourebookwriter
      {{ DiscussionBoard.errors[660192].message }}
  • Profile picture of the author mhuktar
    Banned
    [DELETED]
    {{ DiscussionBoard.errors[660396].message }}
    • Profile picture of the author rosetrees
      First - stop panicking!! You don't know for certain that you have the conficker worm. The press have hyped it up so everyone thinks they have it. Chances are you just have a lot of other infections.

      Get someone to download Avast antivirus for you. If your computer will let you, install this.

      The FIRST time that Avast starts it runs a scan of your computer BEFORE Windows loads. Often this will remove enough infections to allow other applications to run.

      When the computer has restarted, uninstall any other antivirus software.

      Then install Malwarebytes and scan with that. (As others have already said). Superantispy is also good.

      Hth

      Carol
      {{ DiscussionBoard.errors[660485].message }}
  • Profile picture of the author archer29
    Damn nasty bugs! I just got rid of winpc defender and while I could get to microsoft, it wouldn't allow me to run malwarebytes or AVG. Avast didn't pick up this malicious file

    gaopdxserv.sys.

    but root repeal did. It's a very simple program and this file usually shows up in the hidden or stealth scan. Just right click on the file and wipe it and then immediately run malwaware bytes quick scan to clean up the registry. Then run a full scan and another scan with AVG and another with superantispyware. One program does not get it all.
    Also, it's a good idea to boot up in safe mode.

    My husband is an IT guy and we keep these programs on a jump drive because most of the time you're unable to access antispyware programs from C drive. Hopefully, you'll be able to access rootrepeal and gain enough leverage to wipe the rest of it and then go to microsoft and download the removal tool.

    Good luck!
    {{ DiscussionBoard.errors[660534].message }}
  • Profile picture of the author MichaelHiles
    +1 on HijackThis. Trend Micro bought it from the original developer, but it's still free. Be careful with it. You can toast stuff in your registry that you actually need if you don't know what you're doing.

    You do realize that the hole the Conficker worm uses was patched by Microsoft back in October of 2008, right? If you ran Windows Update since then, you wouldn't have even been bothered with it. This whole Conficker nonsense in the media was a bunch of hype over literally nothing. It's no more of a media event than any other virus. Some moron reporter got ahold of it, and of course, the rest of the idiot mainstream media lemmings got it off the wire and turned it into some sort of flash mob over nothing.
    {{ DiscussionBoard.errors[661253].message }}
    • Profile picture of the author xiaophil
      There is an elegant test available from the Conficker Working Group which uses a simple graphical chart.

      It tests whether your machine will load images from particular domains which are known to be blacklisted by the Conficker worm (such as security and antivirus companies).

      Conficker Eye Chart

      The easiest way I have seen yet to test for Conficker infection and it only takes a few seconds.
      {{ DiscussionBoard.errors[663523].message }}
  • Profile picture of the author jimbobo2779
    Malwarebytes is unbeatable, especially for such a lesser known software.

    Jim
    Signature
    {{ DiscussionBoard.errors[664126].message }}
  • Profile picture of the author anth.elias
    System restore is on by default if you have Windows XP, see if you can load last weeks or a few day ago restore point.

    1.Click Start.
    2.Point to All Programs.
    3.Point to Accessories.
    4.Point to System Tools.
    5.Click System Restore.
    {{ DiscussionBoard.errors[665246].message }}

Trending Topics