Admin

Anti-Virus 2008 & 2009 - A Virus in Disguise

By
Services for Real Estate Pros with The Real Estate Tech Desk

Recently Download Anti-Virus Protection?  Think you are protected?

Well if you downloaded Anti-Virus 2008 or 2009 or XP Anti-Virus, then you are not protected.  In fact these three "Anti-Virus" software packages are actually very harmful viruses/spyware themselves. 

What is it?

  • Spyware/Virus
  • Rogue software disguised as legit anti-virus protection

How did I get it?

  • You can opt to download it from a harmful website
  • You accidently visited a harmful website and the software automatically downloaded without your consent.

How Do I know if I have it?

  • You can be overwhelmed with Pop-ups
  • Antivirus 2008 or 2009 will consistently open up and say that it has found multiple (or hundreds) of infections and prompt you to purchase the software to remove it
  • Balloon pop-ups by your clock will say that there is an infection on your computer, click here to remove
  • Your REAL anti-virus or spyware software has picked it up and either deleted it, or prompted you that it can't be removed

What harm does it cause?

  • Well there are several versions floating around, some can collect info and send it back the software maker
  • It can overtake your web browser and either not display the webpage you requested or will bring up another harmful website
  • Overwhelm you with pop-ups
  • Install other rogue software on your computer
  • Use your computer to infect other computers
  • Slows down your computer system
  • Renders your computer useless
  • Among other many ill effects

How can I resolve this?

  • It depends on the level of infection
  • Sometimes it can be removed by your Anti-Virus/spyware software
  • It possibly can be removed by following steps on the internet
  • Some PC repair companies can successfully remove it (without reinstalling windows)
  • But mostly the damage is done, and the infection can really only be 100% resolved by backing up your data and reinstalling windows.

How many people does this affect?

  • Thousands, probably more than that, I currently fix between 5-10 pc's with this infection a WEEK.

How can I protect myself?

  • Make sure your Anti-virus protection is up-to-date, if not renew your subscription or download free antvirus from AVG or AVAST!
  • Make sure windows is up-to-date by running windows update
  • Carefully type in the web address of websites you wish to visit.  Often times these harmful websites where you can contract the virus comes from common websites mispelled (such as mispelled myspace or facebook, and the such)
  • Use another web browser when possible.  When using Mozilla Firefox for example, you are at less risk for contracting the virus (or any virus for that matter) than when using Internet Explorer

I have this problem, but can't fix it myself!

  • Send us "The Real Estate Tech Desk" a message, we will be glad to give advice or remotely log in and see whether or not it can be fixed remotely or if you will need a complete windows reinstallation
  • If you are in the Baltimore or Washington Metro area's give us a call or send an email, we would be glad to assist on site, to resolve this issue for you
  • Contact your company tech support or visit a local repair shop  (we recommend not using best buy or circuit city or similar big box stores, because they do not have well trained techs and have long turn around times, not to mention very high costs to perform these services)

This is a major problem, and needs immediate action to protect you, your files, and your clients!

David Fox,  The Real Estate Tech Desk - Technology Solutions for Real Estate Professionals

Advertisement

Show All Comments Sort:
Ella Glover
Lubbock Homes - Lubbock, TX

Good information.  I have had this happen way to many times.  Thanks for the lead.

Nov 13, 2008 04:30 AM
Bill Gillhespy
16 Sunview Blvd - Fort Myers Beach, FL
Fort Myers Beach Realtor, Fort Myers Beach Agent - Homes & Condos

Hi David,   This is so frustrating.  The bad guys really are two steps ahead of us on this tech stuff !

Nov 13, 2008 04:36 AM
David Fox
The Real Estate Tech Desk - Crofton, MD
Real Estate Technology Specialist

LH,

Your welcome!  You may try using Mozilla Firefox...It will keep you from having problems liek this so often (and so fierce)

 

Nov 13, 2008 10:44 AM
Margaret Woda
Long & Foster Real Estate, Inc. - Crofton, MD
Maryland Real Estate & Military Relocation

It's about that Windows update.  Every time I try on my one computer, it develops start-up problems.  I finally just disabled my automatic updates and haven't had any trouble since then.  Hey, I like your image!

Nov 15, 2008 07:55 AM
John Conca
CENTURY 21 Select Real Estate - Placerville, CA
Century 21 Select Real Estate

A fellow office mate got infected with this malware.  It kept wanting him to purchase the program to remove the infection that it caused.  What a racket!  I managed to get most of it removed but I am still having problems with the machine.  It seems that most links, especially those from say Yahoo or Google redirect you to some random site.  It is very frustrating when you search in an engine for Lavasoft and end up at some unrelated site.  I have tried the following spyware; HiJackThis, CCleaner, RRAB, ADDSpy, MsConfig-Cleanup and nothinig seems to work.  I tried AdAware but it cannot uptae the DEFs, same with SPyBot Search and Destroy, it's like to ports are blocked for these program.  It also prevents me from going directly to lavasoft.com and ANY other valid antispyware site, it simply gives me a 404 type page. 

I uninstalled IE 7 and reinstalled it but that did not work either.  This thing even redirects when I run IE 7 in "safe mode".  I have spent two days with this machinie and I have a really bad headache.  Can you help me?  I downloaded your guide but I cannot get any of those links to work.  I downloaded the programs in your guide to an external drive but when I try to install them, they don't run properly on the infected machine.

PLease help!!

Thanks, John

Nov 17, 2008 03:06 PM
David Fox
The Real Estate Tech Desk - Crofton, MD
Real Estate Technology Specialist

John,

It's seems as though your associate has the worst type of infection that these viruses cause.  No matter what you do, it really can not be fully removed.  My recommendation is to backup data, and reinstall windows. At this point, it is the safest thing to do.  I will contact you via email in a minute to discuss further in detail.

Nov 17, 2008 11:50 PM
John Conca
CENTURY 21 Select Real Estate - Placerville, CA
Century 21 Select Real Estate

Thank Dave; I was afraid of just that.  Wish me luck.

 

John

Nov 18, 2008 02:20 AM
John Conca
CENTURY 21 Select Real Estate - Placerville, CA
Century 21 Select Real Estate
Well, I ran a program called AVast this morning and it found one problem; it said that the c:\System Volume Information\_restore{7B2FBBA1-9AE9-4909-A9A6-AB025CC0749B}\RP928\A0195489.exe was infected with some kind of WinTrojan-eng/Worm. So I clicked on repair ( the recommended option) but it could not, I then clicked on move and it moved it somewhere (it did not give me an option). Since then I have not been able to reboot.

I am thinking that the only option left is to reformat and reinstall Windows. Would you agree or do you have any other recommendations?

Thanks John
johnc123 is online now Report Post  
Nov 19, 2008 07:56 AM
David Fox
The Real Estate Tech Desk - Crofton, MD
Real Estate Technology Specialist

John, I would have to say that at this point, all hope is gone....its crazy to think how many people are dealing with this same exact issue. 

Yes the last thing to do is BACKUP data, My Documents, Desktop and Favorites folders (and any other places data may be stored)  also backup any accounting programs and management software, as well as OUTLOOK or the email program that they use.  Then format  quick NTFS, then reinstall windows, run windows update, then install anti-virus, then data and programs.

Once windows is reinstalled if you need assistance, please let me know---I can remote login at that point.

 

 

Nov 19, 2008 02:59 PM
John Conca
CENTURY 21 Select Real Estate - Placerville, CA
Century 21 Select Real Estate

David,

 

Thank you so much for the help that you have given me, I appreciate that you are willing to help.  I will be attempting to reformat and re-install as soon as Norm (my officemate) finds his original Windows Installation CD. 

One question though.  Since the computer will not boot up, how do I get to a C:\ prompt to access DOS commands?  Can you give me a little guidance there?  It will not boot up in "Safe Mode" either.  It just kind of sits there and does nothing for a very long time.  I can still acces the boot set up, but don't know how to get to the C:\ drive itself for commands.

Let me know if you can help, other wise I guess I will just have to wing it.

John

Nov 19, 2008 03:17 PM
David Fox
The Real Estate Tech Desk - Crofton, MD
Real Estate Technology Specialist

John, I am assuming you are trying to access the command prompt so that you can copy directories for backup reasons?  If so, you can make a boot disk by going here:  http://www.bootdisk.com/bootdisk.htm

Download the windows 98 SE boot disk, extract and burn to a cd and then boot in the computer, this will get you to the command prompt.  

The normal way to get to the command prompt though, is to press F8 when the pc comes on, until a menu appears, then click on COMMAND PROMPT

-----------------

if you DON'T need to backup data, just put in the windows XP cd, and boot to the CD ROM drive,  if the PC is a DELL, you can press the F12 key repeatly as soon as you turn on the computer, it will give you boot options, and just choose the cd rom drive.  The cd will begin to initialize, press ANY KEY (when prompted) and the installation will begin

 

I hope this helps...good luck

Nov 20, 2008 03:40 PM
John Conca
CENTURY 21 Select Real Estate - Placerville, CA
Century 21 Select Real Estate

David,

I have successfully re-formatted the hard drive C:\ and have successfully re-loaded Windows XP Home on the machine.  I am now in the process of updating Windows to service pack 3 and at the same time running AVF Free to make sure that I got the bug.  After which I will reload his software.  Thank you for the help.

John

Nov 21, 2008 05:16 AM
John Conca
CENTURY 21 Select Real Estate - Placerville, CA
Century 21 Select Real Estate

David,

How do you feel about AVG Free anyway?  Some people say that it slows down the computer too much.  Do you have a recommendation for another Free AntiVirus software?  Perhaps one that will run in the background but not use too much CPU?

Let me know what you think.

Thanks,

John

Nov 21, 2008 05:31 AM
David Fox
The Real Estate Tech Desk - Crofton, MD
Real Estate Technology Specialist

John, your welcome!  I'm glad its back up and running.   I personally like AVG alot.    I believe its a lot more "light weight"  compared to McAfee and Norton by a LONG SHOT.  If you turn off the Daily Scan it will run much better....the daily scan basically does a full scan each time the computer is turned on...slowing down the PC while running.   I don't enable this feature simply because it is not needed.  Each email is scanned automatically when downloaded, files are automatically scanned, and it detects viruses as soon as they are opened, ensuring that you are protected.   However if you want to try another anti-virus software you can try AVAST!  I like that package as well.

 

 

Nov 22, 2008 09:17 AM
Virginia Hepp - Mesquite NV REALTOR
Desert Gold Realty - Mesquite NV Homes For Sale - Mesquite, NV
Mesquite NV Homes and Neighborhoods - Search MLS

David - Margaret Woda recommended you - subscribed, and glad I know who to call should I need help.

Jan 07, 2009 02:33 AM