Free Republic
Browse · Search
Bloggers & Personal
Topics · Post Article

Skip to comments.

Virus help- PTCH_ZACCESS.A downloaded and can't remove
August 24, 2012 | self

Posted on 08/24/2012 10:24:48 AM PDT by ncfool

Sometime on Tuesday I clicked on a link on this site to a Anti-Obama link or picture. I evidently get a virus and have not been able to clean it. Its called PTCH_ZACCESS.A My Office IT guy has tried to clean a couple of times and its buried in the registry. Anybody have any experience with this bad virus. A screen keeps popping up wanting you to down load their virus removal software SECURITY SHIELD.

My warning is to be very careful as its says it will get into your info and look for banking and credit passwords.

I have that computer offline unitil I get it cleaned out.


TOPICS: Computers/Internet; Weird Stuff
KEYWORDS: malware; virus
Navigation: use the links below to view more comments.
first previous 1-2021-33 last
To: America_Right; ncfool

do not use Combofix

It destroyed a computer I was using (borrowed) last year, it was a horrible experience


21 posted on 08/24/2012 11:26:34 AM PDT by GeronL (The Right to Life came before the Right to Pursue Happiness)
[ Post Reply | Private Reply | To 9 | View Replies]

To: ncfool

Boot into Safe Mode with Networking. Download Malwarebytes and run.


22 posted on 08/24/2012 11:29:38 AM PDT by AppyPappy (If you really want to annoy someone, point out something obvious that they are trying hard to ignore)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ncfool

You install it onto a thumdrive on an uninfected comnputer then start up your infected computer from the thumdrive.


23 posted on 08/24/2012 11:52:57 AM PDT by UB355 (Slower traffic keep right)
[ Post Reply | Private Reply | To 20 | View Replies]

To: ncfool

I see you are aware of bleepingcomputer.com. Good.

This page gives very clear, specific instructions on removing a similar nasty root kit virus, the first and only one I got since getting a PC in the early 1990’s.

http://www.bleepingcomputer.com/virus-removal/remove-antivir-solution-pro


24 posted on 08/24/2012 11:57:05 AM PDT by khelus
[ Post Reply | Private Reply | To 1 | View Replies]

To: GeronL; ncfool
do not use Combofix It destroyed a computer I was using (borrowed) last year, it was a horrible experience

Combofix, to me, is far and away the best virus cleaning, rootkit removing software. It's done the job for me at least a dozen times. $$$

I agree that it is not for the faint of heart. I usually use it when malwarebytes and microsoft security essentials are unable to repair.

I might also recommend that before scanning you attempt to do a system restore back to Monday. You won't lose any data, but your registry and startup settings will return to what they were before the virus occurred. If that succeeds, your antivirus scanner software of choice should then have an easier time of removing the residual files.
25 posted on 08/24/2012 11:59:26 AM PDT by mmichaels1970
[ Post Reply | Private Reply | To 21 | View Replies]

To: ncfool

Bump for a minute when I have a real keyboard.


26 posted on 08/24/2012 12:07:56 PM PDT by Roses0508
[ Post Reply | Private Reply | To 1 | View Replies]

To: GeronL; ncfool

Yes, use it. I am a computer systems engineer/technician. Have been for 15 years professionally. I wouldn’t steer a Freeper wrong. It is probably the ONLY thing that will work, unless there are instructions somewhere on how to manually remove every little piece of the nasty bugger. I would be willing to bet that even the manual removal involves ComboFix at some point!


27 posted on 08/24/2012 2:22:15 PM PDT by America_Right (Remember, Republicans have a lot more in common with Democrats than they do with Tea Partiers.)
[ Post Reply | Private Reply | To 21 | View Replies]

To: rarestia

How do you know that another computer is clean?

Why do you recommend that you download Malware Bytes to one computer and then transfer it to the infected computer via a thumb drive? What is the difference between a straight download and a transfer?

Thanks


28 posted on 08/24/2012 3:53:18 PM PDT by wildbill (You're just jealous because the Voices talk oMnly to me.)
[ Post Reply | Private Reply | To 4 | View Replies]

To: wildbill

I personally keep a “clean” PC by using Linux. I am a systems engineer, though, so my level of attention to my systems is a bit higher than most home users.

MalwareBytes is the bane of many virus/malware writers. It is exceptionally effective at cleaning PCs due to the heuristics algorithm they use and the open-source nature of the application. Downloading MBAM on an infected PC often leads to an infected MBAM installer at worst, or the inability to download and/or install the program at best. They will actually program viruses and malware today to immediately shutdown or prevent the startup of the MBAM.exe program file.

By downloading the installer and running the install from a thumb drive, you decrease the risk of compromising the installer and can oftentimes get the program installed, at a minimum, and rename the executable to something other than MBAM.exe to get it to run on an infected machine.

In worst-case scenarios, I recommend people boot into safe mode and run the MBAM.exe program to clean from a system that’s often “cleaner” than if booting normally.


29 posted on 08/25/2012 5:16:25 AM PDT by rarestia (It's time to water the Tree of Liberty.)
[ Post Reply | Private Reply | To 28 | View Replies]

To: America_Right; GeronL; ncfool

ComboFix is the nuclear warhead of virus cleanup utilities. It is generally my next-to-last resort (reformatting being the last) when it comes to stubborn viruses and malware. I’ve personally only used it twice, and I had no issues afterwards.

I have heard anecdotal evidence that ComboFix has permanently nuked machines, so its use should be sparing.


30 posted on 08/25/2012 5:41:02 AM PDT by rarestia (It's time to water the Tree of Liberty.)
[ Post Reply | Private Reply | To 27 | View Replies]

To: GeronL

Go Here http://www.bleepingcomputer.com/virus-removal/remove-win-7-internet-security-2011

Scroll down and follow the instructions in the section “Automated Removal Instructions for XP Anti-Virus 2011 & Win 7 Home Security using Malwarebytes Anti-Malware:”

There are three steps - run from safemode of course.
1, FixNCR.reg fixes the registry
2. Rkill - stop the rogue program from running
3. Malwarebyte - does the final clean up.

I have used this method several times to fix different version of this virus on work and friends computers. Works every time.


31 posted on 08/25/2012 7:14:26 PM PDT by w1andsodidwe (Barrak has now won the contest. He is even worse than Jimmah.)
[ Post Reply | Private Reply | To 21 | View Replies]

To: ncfool

Malwarebytes did the trick along with the Microsoft product defender.


32 posted on 08/26/2012 11:00:43 AM PDT by ncfool (OMG 2012)
[ Post Reply | Private Reply | To 1 | View Replies]

To: UB355

This worked. Thank you.


33 posted on 08/26/2012 11:09:28 AM PDT by ncfool (OMG 2012)
[ Post Reply | Private Reply | To 17 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-33 last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
Bloggers & Personal
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson