Hijack Malware?

Soldato
Joined
18 Dec 2008
Posts
6,681
Location
Liverpool
Hi Guys,

My apologies if this has been asked before but I couldn't find anything on the forums...

When my friend turned on his PC he was confronted by a white screen that he cannot minimize etc, a message is promptly displayed with a picture of a policeman asking him to pay £100 or he will be fined thousands which he has ignored; now however when the computer boots up and logs into Windows 7 it goes straight to this white screen and will not allow you to open up task manager etc etc

I'm pretty stumped to be honest, does anyone know how to deal with this type of Malware?

Its an Acer Aspire 64bit Windows 7 Desktop if that matters at all....
 
It will be an exe file somewhere in the appdata folder within the user account, set to open via the registry. You should be able to start up in safe mode (F8 before Windows logo comes on screen), to then find it and delete it.

There are some reg fixes to re-enable the task manager and such.
 
Download combofix.exe and and Hirens boot disk. Put combofix.exe onto usb drive.

Boot to your Hirens CD and then once this loads mini xp then use combofix.exe from usb drive.

That should do it.
 
If you are able to remove the hard disk and plug it in another PC, you can delete the file that way. Else as above you'll need to run a boot cd of some sort.
 
Thanks guys, in the end I was able to get Windows 7 to repair itself on boot up, it rolled back to a previous date and I was able to update the virus scanner and run a thorough scan which seemed to do the trick...

I've had it running a good few hours now, multiple reboots and scans with a multitude of AV software, it's all coming back clean!
 
Back
Top Bottom