Software
Houzz Logo Print
gale_tx

System Danger from Microsoft

16 years ago

I'm getting a pop-up from Microsoft that says I might have spyware, keyloggers or trojans working in the background. They automatically ran a scan and found 26 such threats.

When I click on "remove all", I get forwarded to Microsoft web page stating for the mere sum of $49.95 I can have 6 mo. protection.

I ran my updated AVG scan and everything's ok. This popup is driving me nuts!

Anybody else getting this?

Comments (29)

  • 16 years ago

    that is NOT from microsoft it is one of the rogue fake antivirus infections. You never want to click on anything one of those pops up and definetely never give them money or your credit card that is what they want. What you are seeing when it shows those infections is not really your computer at all it is simply a picture they are showing you everyone sees the same exact thing you are being scammed.
    You need to download malwarebytes free immediately and update it and run a full scan let it clean what it finds reboot and post a copy of the log here so we can see what needs to be done next.
    How to download and install Malwarebytes' Anti-Malware application for Windows computers
    Be sure you run the FULL scan.
    If it does not allow you to install malwarebytes let me know right away.

  • 16 years ago

    Something does not sound right there, Sounds like a rouge Anti Virus. Try running Malwarebytes and most of all don't buy anything,

    Make sure you up date Malwarebytes before scanning with it here are instructions, this is the free version so download that one.

    Please download Malwarebytes' Anti-Malware to your desktop. Click here
    Double Click mbam-setup.exe to install the application.
    Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
    If an update is found, it will download and install the latest version.
    Once the program has loaded, select "Perform Full Scan", then click Scan.
    The scan may take some time to finish,so please be patient.
    When the scan is complete, click OK, then Show Results to view the results.
    Make sure that everything is checked, and click Remove Selected.
    When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
    The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
    Copy&Paste the entire report in your next reply.
    Extra Note:
    If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediately.

  • 16 years ago

    I had something similar for 89.95 and 99.95. There was no way to close it and all my buttons on the desktop were gone while this was up. Every time I clicked on something it would direct me to the pay up site.

    I wound up doing a hard shutoff and going in safe mode and then resetting the computer to an earlier check point date by two days before this showed up. Now it's gone.

    I think it said PCDefender, real nasty stuff.

  • 16 years ago

    Good advice on the two posts while I was typing, but, there is no way to download or run anything till this thing is gone. It blocks the whole computer.

  • 16 years ago

    Well we should get the user to Malware forum if that turns out to be the case. Right now lets see if it will run..

  • 16 years ago

    IE is susceptible to a lot of these (some very convincing I must admit) exploits, which is why I recoomend Opera or alternate browser, or the tightening up of IE configuration settings.
    Try resetting IE to default (Tools, internet options, advanced, reset, assuming IE 8 which I hope everyone has by now.)
    One thing I explain to clients which brings home the point, is "how long does your antivirus take to scan your pc?" The answer of course is in the "long time" category. My next question is, "so how does any alleged software claim to tell you your machine is infected with many, multiple exploits, immediately you visit aweb page?"
    Point taken.

  • 16 years ago

    hendricus doing what you did does not fully remove the infection from the computer, in those cases it is highly recommended to go to one of the malware removal forums for help with cleaning the system.

    It would be a very good idea for you to go there and run a few of the scans they will suggest to make sure your pc is not still infected.
    Analysis and Malware Removal
    much better to be safe than sorry, you do need to register then begin your own thread in the area I linked to.

  • 16 years ago

    I have Malwarebytes on my computer and run it frequently, evidentally not often enough. It won't open now. I tried to download it again @ cnet and download.com and it wouldn't save to my computer like it should.

    Went to IE and I get to Google to find the download sites and get a warning: IE is infected with the same song and dance routine.

    Help! I'm getting scared now.

  • 16 years ago

    Forget to mention I use Firefox as my browser.

  • 16 years ago

    Gale you will need to go to the forum I mentioned above and register then start a thread there in that same area I am linking you to. Tell them what happened just like you did here and you will get assistance, you will be led step by step through the process.
    Analysis and Malware Removal
    go there, register, post a thread in that area.
    Then please follow the directions from that forum so there are no miss-communications. I will watch for you there, let me know if you need any help posting.

  • 16 years ago

    I'm no computer expert but just curious if you have tried doing a system restore to an earlier time? Sometimes in the past that has helped me with pc issues. My girfriends Dad had the exact same thing on his PC this past weekend and he has no virus protection at all but did have Windows Defender on & it was hidden behind the rogue pop ups & once I clicked them out then I hit remove on Windows Defender and it was gone. Actually I was surprised it was that easy. Good luck I know how frustrating these issues can be. There are some smart folks that should be able to help you out on this board.

  • 16 years ago

    ravencajun, I can't get the anti-bot question right. Duh!

    I forgot to thank each of you for your time & expertise. I really do appreciate it.

  • 16 years ago

    It really is not that easy, those infections often leave behind rootkits and other nasty stuff when tried to remove that way, which is why it is extremely important to go to one of the specialty forums that deal with exactly that type of infection and get them to help run some scans with tools that can find those left behind nasties.
    Many of these rogues now come with a rootkit, the recent problem with the MS update which caused many people to have an unbootable pc was because some of them unknowingly had one of those rootkits hidden in their pc.

  • 16 years ago

    ravencajun,

    Better send to landz.forum.

  • 16 years ago

    Just try it again ask for another one, take your time. I tell you what I will go ahead to the area I linked to and start the thread for you so just look for a thread with your name in it ok.

  • 16 years ago

    Worth a shot if the exploit isn't overly sophisticated. Caveat, many exploits can and do reside in system restore.

  • 16 years ago

    zep, I'm trying to get to the landz forum, but can't get the anti-bot question right when trying to register there.

  • 16 years ago

    OK, thanks. I'll head over there.

  • 16 years ago

    Gale here is the direct link to your thread.
    Thread for Gale_Tx

    just copy and type what it shows for the question you are having problems with.

  • 16 years ago

    RC, Not sure what you mean by copy and type what it shows for the question you're having problems with. I can't register, so, I can't reply to the thread. I feel like such a dunce.

    I'll keep watching the thread and perusing the loads of info they have there.

    On the anti-bot question: What's the code? The color that matches its name is Orange, right? Number of letters that's repeated in the recording is 5, right? Sorry if I shouldn't be mentioning this here, but I know it's simple. I guess I'm even more simple because I can't figure it out.

  • 16 years ago

    Hi, Gale.

    I know the anti-bot measures are difficult. They give me problems too. :) Note that they are all letters, no numbers included. As ravencajun indicated, keep clicking the "Request another image" link until you can read the letters. You can also download a wav file to hear the letters.

  • 16 years ago

    Hi, Corrine! Tks for stopping by. I can read the letters without a problem. The anti-bot measures question is what's giving me fits. I've heard the letters, read the letters, typed them in all correctly, I assume. When I accept the terms, etc. and click 'register', it tells me my antibot question is wrong. Grrrrrr!

  • 16 years ago

    It's your texas accent maybe. I hate those things too.. I'm forever clicking to get a group I can read. Then it says your page has times out when I click submit. Re-enter and confirm your password.. I get so angry I forget my password and say two simple words before closing the browser window - and they are not 'bless it.

  • 16 years ago

    Gale,

    There is a second anti-bot measure below the letters. It will either be a math question (What is the sum of...) or a word question (Which word matches its color where a bunch of color names are listed but only one name matches).

  • 16 years ago

    Tks a lot, Corrine! Not sure what I did differently, but, I DID IT! Be afraid, be very afraid, lol.

  • 16 years ago

    That did it! She made it. :)

  • 16 years ago

    woo hoo way to go Gale! Thanks Corrine!!
    You are now in excellent hands at LzD Gale.

  • 16 years ago

    Since I've reset the computer to an earlier time than the virus I've run Malware, AVG, Spybot and CCleaner and nothing shows as infections or problems. Hopefully the problem is gone and gonna stay gone.

    Been good for two days now.

  • 16 years ago

    It's definitely a SCAM!

    I get that pop-up on my computer and it claims to fine a gazillion Windows viruses ... when I am running Linux!

Sponsored
Pristine Acres
Average rating: 5 out of 5 stars57 Reviews
Leading Northern Virginia Deck/Patio Specialist- 10X Best of Houzz!