Help with computer virus

Mr Kurt

Likes Bikes and Dirt
Goodmorning Gentleman and Women,

I require some help getting rid of a damn pop-up virus I managed to download over my University's Wifi. At first it took the form of AvticeCoupon, then Pricemeter, a few I can't remember and finally it's current form is EnormousSales. It keeps trying to sell me shit. For example right now, on my page I can learn the secret to becoming a celebrity, purchase a food blender, all while I have a video playing of people who became millionaires in the comfort of their own home. It only happens when connected to the internet.

I deleted all traces of it a few months ago in it's ActiveCoupon form, from the control panel/harddrive, cache, cookies, etc etc.
I have downloaded AntiMalware and it was gone for a little while. Now it has returned.
I also use TrendMicro as my normal virus protection, but it won't remove it either!

So, my question is, can a computer wizard out there recommend me a good free pop-up remover?
Cheers!
 

Ezkaton

Eats Squid
I use ESET Smart Security, myself.
Should be a free trial... give it a bash and see if it picks anything up.

Probably in the top 3 (well, 2 really - if not the best) scanners/firewalls you can get.

Also worth running MalwareBytes as a double check.
 

Ackland

chats d'élevage
Last time I had a popup style virus I googled the exact symptoms and it was a reasonably known bit of malware and there was a dedicated guide to removal which worked a treat.

I used to use seek and destroy which was fairly useful.

Another option is to use it as a chance to back up anything useful and do a reformat. Nothing runs so well as a clean installation
 

Comic Book Guy

Likes Bikes and Dirt
A lot of this shitty adware installs itself by a variety of methods. These arseholes are engaged in a war with the good guys. End result is the arseholes are often one step ahead of the good guys.

In my experience it can take cleaning by multiple applications to remove them. Malwarebytes is good but not perfect (in my experience). I'd suggest running both Malwarebytes and then something like Spybot - Search and Destroy. I've had good results doing this.

Also, do a search for "ActiveCoupon". Looks like it has been around for some time and there are guides on how to remove it.

The above suggestion to install adblockplus is a good one. I use it and it is great.

Cheers,
CBG.
 

nick82

Likes Bikes
These two free tools are good at finding bugs, they don't run all the time in the background, just when you run them. Must be run with an Admin account. Make sure anything you have open is either saved or closed or it will close everything without asking. If I was you I would backup my registry as well for shitz n giggles before you run them.

ADwCleaner
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/

JRT (Junk removal tool)
http://www.bleepingcomputer.com/download/junkware-removal-tool/dl/293/
 
Last edited:

Xavo.au

Likes Bikes and Dirt
Also starting your computer in safe mode will give the anti-virus software the best chance of finding the problem and fixing it, particularly if you start it with no networking.
 

Mr Kurt

Likes Bikes and Dirt
Thanks for the speedy replies all! I did the removal of Active Coupon as per the removal guide a few weeks ago. No more active coupo as such, it has a new name now!

I'll get to downloading a few that have been suggested. Thanks everyone!
 

slippy

Likes Bikes and Dirt
Malwarebytes is another bit of free anti-malware software that works. You often have to use multiple anti-malware programs multiple times before all traces of malware are gone.
 

Skydome

What's invisible and smells like hay?
Along with malwarebytes and spybot search and destroy, try scanning the rootkit as well (Assuming you haven't already)
 

link1896

Mr Greenfield
Ransomware is on the rise. Latest attack is via email promising windows 10 early for 1 dollar. Do NOT download. Your download will encrypt your whole hard drive, and request 100-200 dollars to unlock. Your payment goes to Russian mafia.
 

stirk

Burner
Right, you go rebuild your aunts pc and tell her all her photos are gone. In knuckles case, tell his uncle all his porn is lost
I wish, aunties photos are enjoyed through the slide projector and uncles porn is 1970's Playboy's in the shed.

Loving the 10/50 rule for bush management.
 

thatsnotme

Likes Dirt
Another option is to use it as a chance to back up anything useful and do a reformat. Nothing runs so well as a clean installation
Just rebuild. Nothing like a fresh OS.

Clouds have a silver lining.
This. Rebuilding is the only guaranteed way to get rid of infection, with the added benefit of cleaning out all the crap on your PC and getting that nice new 'damn this is running well!' feeling that only a fresh installation can give.

Ransomware is on the rise. Latest attack is via email promising windows 10 early for 1 dollar. Do NOT download. Your download will encrypt your whole hard drive, and request 100-200 dollars to unlock. Your payment goes to Russian mafia.
Can't recommend an offsite backup system enough. I use Crashplan - an agent runs on my PC, I specify which folders and drives I want to be backed up, and then any changes to the contents of those is automatically backed up for me. Importantly, unlike something like Dropbox which shows up as a drive on my PC, my backup is completely isolated from my system, so ransomware has no way to encrypt the backed up files. Yes, it takes a bit of setting up initially, but I know if I ever fell victim to ransomware now all I'd do is format and rebuild, then download all my backed up and clean files.
 

spoozbucket

Likes Dirt
For a quick check to see what is going on I use Hitman, if your system is messed up it can take a while, my scan take ~2 minutes, I used it on a friend's computer that had been running with the firewall off for months and later got the impressive AFP virus and a bunch of others and it took over 30hrs.

I used to run Spybot but I have found Windows 8 to be pretty awesome compared to XP that I was on previously in regards to viruses, I have disabled internet security and scan from time to time but I've only had one virus and I installed that by accident.

I do like an add on called Web of Trust, it displays a small red icon on potentially dodgy sites, very handy when looking for legit free software etc. I spend hours a day bouncing round voucher code sites and looking for things on sale to re-post to another site and WOT lets me know when I'm going somewhere dodgy.

I also keep a cloned drive of a fresh install that I can slot in to my DVD bay if everything goes pear shaped but I haven't had to use it yet.
 

Mr Kurt

Likes Bikes and Dirt
Well. After an entire day of me trying to get rid of it, I have succeeded. I also managed to lose all my data, during a botched back-up job :crazy:. I purchased a brand new 1TB harddrive, and tried to use the "Dell Backup and Recovery" tool. Took 4 hours, now I can't recover my back-up :tsk: . The good news is, my computer is clean. Thankyou fellas for the kind words of encouragement.
 

stirk

Burner
Well. After an entire day of me trying to get rid of it, I have succeeded. I also managed to lose all my data, during a botched back-up job :crazy:. I purchased a brand new 1TB harddrive, and tried to use the "Dell Backup and Recovery" tool. Took 4 hours, now I can't recover my back-up :tsk: . The good news is, my computer is clean. Thankyou fellas for the kind words of encouragement.
Redtube is still online, you can get your files back easily enough.
 
Top