MS Removal Tools Virus Attack

Discussion in 'malware problems & news' started by mbjoer, Apr 3, 2011.

Thread Status:
Not open for further replies.
  1. mbjoer

    mbjoer Registered Member

    Joined:
    Apr 3, 2011
    Posts:
    4
    I am a new member here, and found this forum because.....My laptop is paralysed!!

    This morning all I get is a message that there are critical problems and something called MS Removal Tools offering to clean it up.

    It all smells of a phishig programme, but never the less I cannot use it.

    It looks like it has attached itself to the AVG antivirus programme, but I really know nothing more about it.

    Any ideas what to doo_O
     
  2. Dermot7

    Dermot7 Registered Member

    Joined:
    Dec 20, 2009
    Posts:
    3,196
    Location:
    Surrey, England.
  3. TheKid7

    TheKid7 Registered Member

    Joined:
    Jul 22, 2006
    Posts:
    3,469
  4. Cudni

    Cudni Global Moderator

    Joined:
    May 24, 2009
    Posts:
    6,956
    Location:
    Somethingshire
  5. mbjoer

    mbjoer Registered Member

    Joined:
    Apr 3, 2011
    Posts:
    4
    Hi Guys,


    MANY thanks for this!!

    I will start working on it today, and report back on my experiences.
     
  6. Meriadoc

    Meriadoc Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    2,642
    Location:
    Cymru
    @mbjoer,

    you've probably removed it by now but if your having trouble I can give you a code to unlock the rouge (fakeav)
     
  7. mbjoer

    mbjoer Registered Member

    Joined:
    Apr 3, 2011
    Posts:
    4
    Almost success....

    I followed Dermot7's links and it seems that I am back in business. Only issue now is that I cannot get out of the Windows Safe Mode.

    How do I get it to boot up in full mode??
     
  8. Dermot7

    Dermot7 Registered Member

    Joined:
    Dec 20, 2009
    Posts:
    3,196
    Location:
    Surrey, England.
    Hi mbjoer, glad to hear you've been able to make some progress. :)
    This might help you, hopefully :

    http://answers.microsoft.com/en-us/...afe-mode/e38f2212-fc59-e011-8dfc-68b599b31bf5

    Or else some other folks here might suggest a remedy.
     
  9. mbjoer

    mbjoer Registered Member

    Joined:
    Apr 3, 2011
    Posts:
    4
    I did manage to sort it out.

    What happened was that in msconfig I (following the instructions) had saved the Safe Mode. By going back into msconfig and undo that, it all went OK.

    Thanks again. You have been a great help!!!
     
  10. Meriadoc

    Meriadoc Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    2,642
    Location:
    Cymru
    For anyone else that comes across MS Removal Tools rouge (FakeAV) here is activation keys that work atm, start with WNDS - thanks to Xylitol who posted them all at kernelmode.info.
     
Loading...
Thread Status:
Not open for further replies.