Home General Discussion

Protecting your PC?

CJE
polycounter lvl 13
Offline / Send Message
CJE polycounter lvl 13
So, to make a long story short, recently I had to reinstall because I got a virus on my work PC. I resintalled Windows 7, and invested in Bitdefender 2010, supposedly the best Antivirus around.

I don't download much stuff, and I always leave my scanner running. I run a hardware firewall.

And now, I just got another virus, I can't run Bitdefender, I can't download anything, I can only run IE and no other programs.

So I'm wondering what more I need to do to protect my PC? Why and how could this have happened, I seemed to have taken all the steps to protect my PC, yet here I am in a bit of a situation having to reinstall once more, and lose alot of client work, since the virus prevents me from seeing external HDD's or burning to CD's.

Replies

  • CJE
    Options
    Offline / Send Message
    CJE polycounter lvl 13
    lol, not much Pr0nz watching on the work PC ;)

    And Bitdefender is pretty much regarded as the best AV for the past 3 years.

    http://anti-virus-software-review.toptenreviews.com/bitdefender-review.html

    Weird thing is, Bitdefender is still running.

    Ever minute I get popups saying X file is infected, and those files are like all my system files, my video driver files, everything
  • pior
    Options
    Online / Send Message
    pior grand marshal polycounter
  • Yozora
    Options
    Offline / Send Message
    Yozora polycounter lvl 11
    CJE wrote: »
    And Bitdefender is pretty much regarded as the best AV for the past 3 years.


    Interesting, this is literally the first time I've ever heard of "BitDefender" :p Not saying it isn't good, in fact I dont really know how to tell what is a "good" or "bad" AV or whether it even matters.

    Personally I can't be bothered to find out what is the "best" of what myself, so I let lifehacker do it for me :p

    http://www.lifehacker.com.au/2009/11/stop-paying-for-windows-security-microsofts-security-tools-are-good-enough/

    Not saying I listen to their every word, if I try some software and it sucks, I'll know it sucks. But theres some really good apps or general PC workflow tips on there that I've learnt a lot from and helped me be more efficient.
  • PfhorRunner
    Options
    Offline / Send Message
    PfhorRunner polycounter lvl 18
    32 or 64 bit windows 7? if 32, check for rootkits...

    Bit Defender is most definitely not dodgy, just not the "best around" either.

    Check this out:

    http://www.av-comparatives.org/

    There are some good linux distros, or builds off of a windowsPE (vista or 7) that boot off CD and have some excellent scanners and removal utilities... Some of them are even automated, like they give to GeekSquad employee's ;).

    Other than that, if you're able to get into normal mode and install anything, run MalwareBytes and SuperAntiSpyware (how's that for a name that instills confidence?)
    They'll take care of it mostly, then use HiJackThis to remove any excess BHOs or Startups left behind.

    EDIT: Also, be sure that BitDefender is the one saying that your system files are infected, and not a Rogue AV:

    http://en.wikipedia.org/wiki/Rogue_security_software
  • PolyHertz
    Options
    Offline / Send Message
    PolyHertz polycount lvl 666
    I've used NOD32 for years, can honestly not remember the last time a virus caused me any problems.
  • CJE
    Options
    Offline / Send Message
    CJE polycounter lvl 13
    Yah I'm not sure how I picked up the virus.

    I'm on a fresh install of W7 64 now, running Bitdefender, MS Security Essentials, Super antispyware and Malware Bytes. Hopefully this time I won't pick up a virus :(
  • adam
    Options
    Offline / Send Message
    adam polycounter lvl 19
    I use Microsoft Security Essentials, works great.
  • Psyk0
    Options
    Offline / Send Message
    Psyk0 polycounter lvl 18
    Physical firewall + Comodo firewall + Avast + Primary partition image

    I havent had a problem in years, if shit happens, i just restore the partition and i'm ready to go in 5 minutes.
  • Racer445
    Options
    Offline / Send Message
    Racer445 polycounter lvl 12
    Personally I use NOD32 as it's very light and has superb detection rates according to the industry publication Virus Bulletin. (http://www.virusbtn.com) Other industry publications also often hold it to high regard.

    The biggest thing you can do for yourself is disable javascript. I highly recommend the Noscript addon for firefox as it allows you to toggle javascript on a per host basis. With that and smart browsing you should never have problems.
  • CJE
    Options
    Offline / Send Message
    CJE polycounter lvl 13
    Well I've already payed for a copy of BD 2010, so I don't really have the extrea cash to buy Nod32.

    Is there any problem running both Bitdefender and MS Security Essentials?

    I believe the virus I got is the FakeAlert Trojan going around.
  • Racer445
    Options
    Offline / Send Message
    Racer445 polycounter lvl 12
    I've had to deal with the FakeAlert trojan a couple times when fixing other people's computers and I've removed it by running MalwareBytes in safe mode, then after removal, running it again in normal mode to clean up residual.
  • Emil Mujanovic
    Options
    Offline / Send Message
    Emil Mujanovic polycounter lvl 18
    Definitely try booting in safemode and doing a clean up of your system that way. I've personally found it's the best way to get around viruses/malware/spyware.

    Good luck.
  • CJE
    Options
    Offline / Send Message
    CJE polycounter lvl 13
    I already reinstalled :(

    I kind of freaked out cause I got warning thats so many files were infected, I thought my whole system had a deep infection.
  • odium
    Options
    Offline / Send Message
    odium polycounter lvl 18
    I seem to attract those utter stupid "virus scanner" things. I had one the other day called XP Sexurity Center, would NOT piss off, everything I did "SORRY, thats not gonna happen!" even clicking the IE and FireFox icons...

    For some reason I always get them, and yet this was picked up while browsing legit sites, too...

    Sometimes, with add sites, the adds are fishy. I've had a few that have simply closed my window, opened another and presented a popup like "scan your computer?" you cant click either, or it will install god knows what. So you have to ctrl alt delete it away...

    What the hell do people even gain from making them :|
  • ZacD
    Options
    Offline / Send Message
    ZacD ngon master
    selling fake virus programs that claim to fix the computer?
  • PfhorRunner
    Options
    Offline / Send Message
    PfhorRunner polycounter lvl 18
    Real time protection doesn't stack...

    Choose one, and keep the others as "On-Demand". Run them ONLY when you get a virus. They conflict with each other if you use their real-time protection, and will most likely have a greater chance at infection.
  • JohnnyRaptor
    Options
    Offline / Send Message
    JohnnyRaptor polycounter lvl 15
    Get yourself a copy of kaspersky and all ur problems will be a distant memory :)
  • Racer445
    Options
    Offline / Send Message
    Racer445 polycounter lvl 12
    odium wrote: »
    For some reason I always get them, and yet this was picked up while browsing legit sites, too...

    Sometimes, with add sites, the adds are fishy. I've had a few that have simply closed my window, opened another and presented a popup like "scan your computer?" you cant click either, or it will install god knows what. So you have to ctrl alt delete it away...

    What the hell do people even gain from making them :|

    They use adspace to spread them through a javascript exploit. It's sadly very common. As I said the best way to protect yourself from them is by installing the Noscript firefox addon.

    Dumb people fall for it and pay them the money to "fix" the problem, and there are LOTS of dumb people in the world.
  • Sage
    Options
    Offline / Send Message
    Sage polycounter lvl 19
    dude that's not a virus per se

    I got that shit. and there is a way around it. it takes a few mins for this crap to start. it starts on load up. so if you are fast enough you can stop it from doing it's thing. do crtl opt delete right on start up. it's a program with a funcky name, end process. You might have to start in safe mode first and I suggest you do, run a virus scanner and hope it finds something. if it does doing the crtl alt delete thing might be easier to do. However I don't remember the process name. big help I am.

    This program is trying to force you a nice infection, which will really piss you off. They have up their game with the newest version. It doesn't let you right click or start any programs as you described, freaking annoying.
  • eld
    Options
    Offline / Send Message
    eld polycounter lvl 18
    firefox with noscript will get you quite far.
  • oXYnary
    Options
    Offline / Send Message
    oXYnary polycounter lvl 18
    CJE wrote: »
    I already reinstalled :(

    I kind of freaked out cause I got warning thats so many files were infected, I thought my whole system had a deep infection.

    Not a virus, you had a ad hack that was saying your system files are fubar. There are easier ways to remove it. I don't know if bitdefender looks for ad malware. You might need a separate ad malware protector like Lavasoft adaware.


    Best suggestion? STOP USING IE!
  • Divine Rage
    Options
    Offline / Send Message
    I've used nothing for years. Haven't gotten a virus since I was around 10 or something. I'm close to 17 now.
    My new laptop is using McAfee, but that's only because Dell preloads it. If the trial (I believe it is) runs out, it's out the window though. I don't need it, I never needed it.

    And yes, IE is a shoddy piece of software to be honest. Firefox is still an omnipotent ruler in my book.

    It shouldn't be that hard to stay away from dodgy websites, should it? I download plenty of things, but I just so happen to never open or execute dodgy files. Even if it means being stuck with problems for a long time.

    Oh, and use Adblock Plus on Firefox, I can guarantee you that you get less junk like that. Disable them for certain sites you deem worthwile enough to grant them the extra income from ads if you so wish. I rarely do to be honest.
  • CJE
    Options
    Offline / Send Message
    CJE polycounter lvl 13
    oXYnary wrote: »
    Not a virus, you had a ad hack that was saying your system files are fubar. There are easier ways to remove it. I don't know if bitdefender looks for ad malware. You might need a separate ad malware protector like Lavasoft adaware.


    Best suggestion? STOP USING IE!


    Heh, I've been using Chrome/Firefox for a whle now, However I was not running anti-spy/malware, so now I have super antispyware and MS SE running.
  • CJE
    Options
    Offline / Send Message
    CJE polycounter lvl 13
    Does anyone have any recommendations on good backup software?
  • Yozora
    Options
    Offline / Send Message
    Yozora polycounter lvl 11
    I use syncback

    It can auto backup on schedule, or when idle or you can make a shortcut that backs up to multiple drives in 1 click if you want. Does FTP too. I've set mine to backup to 3 hard drives (2 internal + 1 external, and I also use sycnplicity (online) as a 4th backup. I was using mozy as well but figured 1 online backup is enough.
  • Ben Apuna
    Options
    Offline / Send Message
    You can add another layer of protection to your system by using Sandboxie. Nice looks like it supports Windows 2000 - Windows 7, 32bit and 64bit, I think it used to be only XP 32bit.

    I also reccomend Malware Bytes it's simply awesome.

    Super Anti Spyware is another good anti malware app. It's real time protection will stack with whatever anti virus app you use but you need to pay for real time protection.

    Spyware Blaster is free and can help protect you from some ActiveX exploits for those rare times you might be forced to use IE, like Steam or other apps that launch IE by default. It's real time protection and does stack it's protection just fine with other apps.

    I think you should use a software firewall like Comodo, Zone Alarm, or Online Armor in addition to your hardware firewall.

    I never trust those anti virus reviews they are usually biased one way or another.

    Wilders Security Forums is a great place to find more info on various security related apps. I think they're run by the company that makes NOD32 but for the most part the forums remain bias free.

    I've heard of Bit Defender but never used it. You could always go with Avast! since it's free. I haven't had any problems while using Avast!.

    I used to run NOD32 but it wasn't very user friendly and had conflicts with Firefox at the time so I dropped my subscription when it ran out.
  • DarthNater
    Options
    Offline / Send Message
    DarthNater polycounter lvl 10
    I use avast! And malwarebytes. I also run spybot search and destroy about once a month, just to immunize my system. Been ok for years... I have heard great things about MS security essentials too.
  • Martin Henriksson
    Options
    Offline / Send Message
    Martin Henriksson polycounter lvl 9
    After googling bitdefender it does seem like a very nice program so i dont think you need to get another. It seems to place #1 in almost all the tests i saw etc. You really shouldnt be so quick to reinstall whenever you think you have a virus however ;p Like others have said just start in safe mode and google the symptoms. There is usually removal tools for the specific virus and such.
  • cw
    Options
    Offline / Send Message
    cw polycounter lvl 17
    PolyHertz wrote: »
    I've used NOD32 for years, can honestly not remember the last time a virus caused me any problems.

    +1 for nod32. Not too expensive and for me it is worth it compared to faffing about with free equivalents.
  • [Deleted User]
    Options
    Offline / Send Message
    [Deleted User] polycounter lvl 18
    Loads of banner ad hosts used by totally legit sites end up delivering commercial malware through JavaScript. Since contracting and (supposedly) removing Vundo, my laptop now does nothing but connect to a long list of affiliate marketing websites through IE5 in a background process running as an alternate data stream of a system file, telling them to send money to whoever referred me from my searches for a long list of random crap (none of which is anything I've searched for, obviously). The thing is, the scanners don't find it. I only even know it's happening because I started reading through the .dat files it was using as its URL list, and started comparing the IPs to the ones showing up in netstat at any given time. When the processes allegedly connecting to them didn't make sense, I started checking for the alt streams, and voila! Unfortunately, the alien dll at the heart of it is, so far, undeletable, even with Unlocker in safe mode.

    Point being: Back up your files on something other than an NTFS drive, and don't believe the scanners when they say your system is clean.
  • soulstice
    Options
    Offline / Send Message
    soulstice polycounter lvl 9
    I've not run a anti virus program for years now, never ran into any serious virus problems since. Firefox + noscript and keeping up to date with windows patches has been relatively good for me. Oh and the obvious....download from only sites you trust.
  • eld
    Options
    Offline / Send Message
    eld polycounter lvl 18
    soulstice wrote: »
    I've not run a anti virus program for years now, never ran into any serious virus problems since. Firefox + noscript and keeping up to date with windows patches has been relatively good for me. Oh and the obvious....download from only sites you trust.

    That exactly, the easiest way to protect yourself from that kind of stuff is just preventing it from happening, noscript is just the best way out there.

    Almost all people will get viruses from either running software that hasn't been patched in 10 years, or clicking links or have the browser run some bad stuff, which in most cases will end up with you clicking OK to some "run this exe".

    Noscript will prevent just about all those cases.

    Except for the messenger links, which if you click those, then you only have yourself to blame.
  • NyneDown
    Options
    Offline / Send Message
    NyneDown polycounter lvl 11
    I've used Norton in the past, Trend Micro PC-cillin and now I use AVGfree. Trend Micro worked great, but I got tired of having to pay for something that you shouldnt have to pay for in the first place. AVGfree has been doing a great job so far and havent had any issues as of yet.
  • Elhrrah
    Options
    Offline / Send Message
    Elhrrah polycounter lvl 8
    I run the free version of Avira Antivir and Comodo Firewall, with a shot of malwarebytes if I know I've ran into something serious.

    I've also memorized most of my important documents, so that if both my main system and my backups are destroyed I can fall back on mild OCD and a partially photographic memory.
  • Slum
    Options
    Offline / Send Message
    Slum polycounter lvl 18
    3 steps to having a clean PC

    1) Don't click on ads that sound too good to be true. Hell, use an ad blocker and ignore them all.
    2) Stop downloading porn.
    3) Lay off the pirate software. If you're downloading legit files from filesharing networks, scan the SHIT out of them.
  • hawken
    Options
    Offline / Send Message
    hawken polycounter lvl 19
    Racer445 wrote: »

    The biggest thing you can do for yourself is disable javascript. I highly recommend the Noscript addon for firefox as it allows you to toggle javascript on a per host basis. With that and smart browsing you should never have problems.

    Disabling javascript on your browser might stop a few hacks from porn / warez sites but suggesting it as good idea is a little... skewed. Javascript is used more and more these days for website design, the majority of sites you visit probably use it, from polycount to the onion to youtube.

    Viruses come from 3 places mainly: warez. spam. pron.

    If you can make sure your email is safe, then you need to worry about infected websites. I wouldn't be surprised if chrome has a plugin to block access to infected websites much like google does.

    Viruses and their ilk are one of the major reasons I stopped using windows. It seems once you plug one hole, another one opens up.

    Another suggestion is to get a network monitoring tool. Little snitch works wonders for the mac, there has to be various programs like this for windows.
  • FAT_CAP
    Options
    Offline / Send Message
    FAT_CAP polycounter lvl 18
    Hey CJE,

    Not sure if you have seen this but it seems that BitDefender's update on Saturday at around 5:00pm GMT left it thinking that a tonne of programs were trojans and placing them in quarantine when infact they were not. I got hit by the same thing and, after watching it pop up repeated trojan.fakealert.5 warnings for an endless list of .dll and .exe files, reset my computer only to not be able to boot windows up, even in safemode. It looks like it has placed some essential Windows boot up files in the quarantine and without my Vista64 installation/ recovery disc I can't get in to clean anything up (all my discs are in storage as I have just moved across the country for a new job).

    You can read about what has happened here:
    http://forum.bullguard.com/forum/15/TrojanFakeAlert5-Update-issue_84115.html

    It looks like, getting into Windows, turning BitDefender/ Bullguard off, and getting the files from quarantine should fix the problem although people are saying that there systems are still FUBAR afterwards and needing to reinstall a tonne of software.

    I am waiting for a PC repair guy to come back tonight and try and get everything working (hopefully he has the right version of Vista disc this time ...grrr)

    Hope this helps! :)
  • CJE
    Options
    Offline / Send Message
    CJE polycounter lvl 13
    FAT_CAP wrote: »
    Hey CJE,

    Not sure if you have seen this but it seems that BitDefender's update on Saturday at around 5:00pm GMT left it thinking that a tonne of programs were trojans and placing them in quarantine when infact they were not. I got hit by the same thing and, after watching it pop up repeated trojan.fakealert.5 warnings for an endless list of .dll and .exe files, reset my computer only to not be able to boot windows up, even in safemode. It looks like it has placed some essential Windows boot up files in the quarantine and without my Vista64 installation/ recovery disc I can't get in to clean anything up (all my discs are in storage as I have just moved across the country for a new job).

    You can read about what has happened here:
    http://forum.bullguard.com/forum/15/TrojanFakeAlert5-Update-issue_84115.html

    It looks like, getting into Windows, turning BitDefender/ Bullguard off, and getting the files from quarantine should fix the problem although people are saying that there systems are still FUBAR afterwards and needing to reinstall a tonne of software.

    I am waiting for a PC repair guy to come back tonight and try and get everything working (hopefully he has the right version of Vista disc this time ...grrr)

    Hope this helps! :)


    Darn I wish I would have known about that before I reinstalled Windows lol, Thanks for the info tho!
  • NoisyMonk
    Options
    Offline / Send Message
    I've been using BitDefender for a couple years now. Pretty happy with it. I've downloaded my fair share of crap on the internet and BD always does a good job of keeping it at bay.

    Although, that Trojan.FakeAlert.5 problem was a fucking disaster. Ruined my weekend.

    http://news.bitdefender.com/NW1431-en--Faulty-Update-for-64-bit-Operating-Systems.html
  • Lamont
    Options
    Offline / Send Message
    Lamont polycounter lvl 15
    I've been using Nod32. Moved to Windows MSE. It's free and it's low on system resources, updates are daily.

    http://www.microsoft.com/security_essentials/
  • FAT_CAP
    Options
    Offline / Send Message
    FAT_CAP polycounter lvl 18
    CJE wrote: »
    Darn I wish I would have known about that before I reinstalled Windows lol, Thanks for the info tho!

    No probs!

    I've just sent my computer off for a fresh install after trying in vain to get it working after that disaster so it might not have helped anyway. Even thoguh I knew about the problem nothing that Bullguard told me would fix the problem actually worked and I am sick of trying to fix it myself What's more is mas my original Vista DVD is in storage I am going to have to pay to get a new version (may as well take the chance to updgrage to 7)... total ballache!
Sign In or Register to comment.