View Full Version : Net Sky
Witchdoctor
01-31-2010, 11:04 PM
Just got a machien in that someone brought to me ...
XP is totaly infected with netsky ...... anyone heard of this. Tried using the removal tool on Symanic with no luck ..... anyone know a way to kill it or just better off wipping it clean
Brutal Virus
if this is in the wrong section please move to right location
Thanks and as always any help would be appreciated
DrNip
02-01-2010, 01:13 AM
Viruses lately have become retarded. I use to be able to clean them up with no problem but lately I found it easier just to reload. "Aboutblank" virus is the one that kicked my ass. They prolly have work arounds now for it now.
Witchdoctor
02-01-2010, 01:18 AM
yea I hear ya bro. it is not my machein and has a lot of crap on it
guess I need to back it all up and slap a new OS on ..... sucks ....
They should lock these dudes up and throw away the key
Neuromancer
02-01-2010, 02:57 AM
I have had to clean a few bugs lately on other peoples computers
I used to go through carefully. Now I just take their hdd and scan it in my PC in 30 minutes and done.
Mostly cleaning up that antivirus virus
Witchdoctor
02-01-2010, 03:11 AM
yea this is nasty ..... you can find it and when you reboot it runs system restore and replaces it self .... won't let you turn it off, but it does appear to let you shut it off it still runs at start up ..... changed a lot of valeus in the boot sequence in the registry ... and the values are so close to what they are supposed to be you have have to be in that stuff everyday to see the subtile changes like \ instead of / that type stuff. It is by far the most devistating virus I have seen
reading more on this it seems they caught this dude .... 30 years in prison
should have been life
Buckeye
02-01-2010, 03:45 AM
I have not heard of that one, but had a friend a few weeks ago pick up one call Fraudpack something. It was extremely nasty.
Of course he wanted files saved on the HD LOL
I ended up taking the C drive out and connecting it up to another machine, scrubbing the heck out of it with Kaspersky. Installing back on his rig and cleaning it again. It worked but was not easy to do and who knows what else is still on it, root kit or what.
punx223
02-01-2010, 04:34 AM
witchdoctor... try opening the run command and running MRT
that is thw windows malicious removal tool. You would be suprised how much that will actually remove
Witchdoctor
02-01-2010, 04:59 AM
Thanks for the tip I will give it a whirl when I get home form work
This is the nastiest one I have ever seen ......
Buckeye
02-01-2010, 05:11 AM
Good tip Shannon
The Fraudpack one I posted about would not let you run anything, on boot up it would get almost to the desktop, with no icons on the background, and a pop up would show its nasty face. No matter what I did I could not get past that dam pop up. Safe mode would do the same freaking thing. It really locked the computer down by a root kit I believe.
I tried many things from booting from a DVD, to almost throwing it out the window, that didn't even scare it :)
Booting from a second machine with the C drive from that one attached to a SATA port did the trick tho. At least the machine is now running with out to many problems, besides it being a old HP machine LOL.
Nothing like wasting 2 whole days fixing something like this, all because a user could not resist clicking on some stupid pop up and BAM.
I did look over the machine pretty good after I got it up and running, he was pretty clean in his use. Just had WoW and a few small apps. Browser history showed no bad websites visited that I could see. He was just using crappy virus protect call Bit-Defender that did basiclly nothing. Kaspersky is the only one I use and it seemed to have cleaned him up good.
ocgmj
02-01-2010, 05:12 AM
Use Dr. Web live CD bootable ISO that runs on linux. Can you found here: Link (http://www.freedrweb.com/livecd/?lng=en)
Witchdoctor
02-01-2010, 05:23 AM
Thanks OC I will give that a go as well
never messed with Linux though ???
ocgmj
02-01-2010, 05:31 AM
It's super easy to use. No linux knowledge required. It will boot into a point and click OS which all you do is click the start button on the virus scanner.
Buckeye
02-01-2010, 05:49 AM
Use Dr. Web live CD bootable ISO that runs on linux. Can you found here: Link (http://www.freedrweb.com/livecd/?lng=en)
Very nice, Thanks :)
Another tool to use in this battle :)
Witchdoctor
02-01-2010, 05:51 AM
Awsomness OC you DA man bro
Kal-EL
02-01-2010, 07:54 AM
You get it sorted WD?
If not, majorgeeks has a nice clean up procedure I always use.
Witchdoctor
02-01-2010, 08:58 AM
Will do .............. Thanks
Kal-EL
02-01-2010, 09:03 AM
Thought u had it squared, heres the linky for instructions: http://forums.majorgeeks.com/showthread.php?t=139313