Wow, I never even thought of using that little lock key, in fact I didn't really like them at all until you posted this. Thank you. lol
Wow, I never even thought of using that little lock key, in fact I didn't really like them at all until you posted this. Thank you. lol
Update every machine's avast definitions.
Shut down/disconnect all the computers.
Run the avast "boot time" scan while they are disconnected from the network.
Delete/move/etc as necessary.
Repeat til all machines are cleaned.
Smack customer and make a policy restricting/removing USB drive usage.
1995 VR4 Coupe
Wow, I'm glad I'm not the only one. I infected our entire network a couple of weeks ago with the same virus. We had to disconnect all of the computers from the network, do a full AV scan, then there are a couple of system settings that have to be changed before it's safe to put them back on the network.
2010 Toyota Camry SE
1998 Honda Accord EX
--------------------------
2005 Jeep Grand Cherokee Limited 5.7L Hemi - Sold (Good riddance!)
2007 Mazda CX-9 Grand Touring - Sold
2001 Ford Explorer - AWD 5.0L V8 lifted w/ 32" BFG AT K/O's - Sold
2004 Mazda6s - Sold
1994 Stealth RT/TT Pearl Yellow - Sold
1993 Stealth ES Twin Turbo - Sold
1981 Audi 4000 4E "The Tank" - R.I.P.
1984 Toyota Corolla Hatchback - Sold
Noobs and your infections.
July 2014 COTMWe follow the earth. The earth follows the stars. The stars know their way and though the body dies. The stars will remain, like the waves of the sea and restless slate.
Got it fixed and it wasn't too bad.
Every computer is logged into a domain so I just logged them in locally on each machine and ran the Microsoft Removal Tool from a USB drive while they were disconnected. Then I installed Microsoft Security Essentials and the newest Avast before connecting them to the internet. This seemed to work for every infected computer. Any time the worm would try and reinfect a machine while installing Windows updates, Security Essentials would detect it and block it. So, we were able to update every machine to SP3 and all corresponding updates without a problem.
I did try running ComboFix once but it seemed stuck on the create restore point for about 30 minutes so we reverted to the above plan. Thanks for all the advice, especially running the software from the USB drive.
I really hate being the guy at work who gets stuck doing all the computer stuff.
3000gt.com 3000GT / Stealth International WWWboard Archive Jim's (RED3KGT) Reststop |
Team 3S 3000GT / Stealth / GTO Information daveblack.net |
Michigan 3S MInnesota 3S Wisconsin 3S Iowa, Nebraska, Kansas 3S |
North California 3000GT/Stealth United Society of 3S Owners 3000GT/Stealth/GTO Forums 3000GT/Stealth International |
3S National Gathering East Coast Gathering Upper Mid-West Gathering Blue Ridge Gathering |
Bookmarks